cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
3195
Views
0
Helpful
1
Replies

URL filtering with regex

newton.travis
Level 1
Level 1

Hello,

In an ongoing cat and mouse game, we're trying to filter out using proxies and sites that bypass web filtering. Since it's impossible to block everything, I'd like to do some regex filtering to look for keywords like "bypass", "proxy", "youtube", etc.

Does Firepower have the ability to do regex on policies?

Thanks!

1 Reply 1

lupingyao
Level 1
Level 1

Manual URL Filtering

  • You can override URL Categories and Groups by configurating manual URLs
  • Wildcard isn't support
  • For example, if you block a URL category which contains a single URL to be whitelisted, you can configure a rule with the whitelisted URL added manually before the blocking rule
  • When configuring Manual URLs, any match of the URL string will trigger action.

https://community.cisco.com/t5/security-documents/ftd-url-filtering-how-it-works/ta-p/3347292

 

it seems not work with regex...

Review Cisco Networking for a $25 gift card