cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
3615
Views
5
Helpful
2
Replies

Custom headers X-GoogApps-Allowed-Domains

Does anybody was able to configure http header injection to block non corporate access to g-suite?

I went to cli , advancedproxyconfig -> customheaders, added the custom header X-GoogApps-Allowed-Domains: mydomain.com , specified the domain to include the header in the request to google.com, did the decryption but do not work at all.

Thank you

2 Replies 2

Soporteco
Level 1
Level 1

Hi Eduardo.

 

Do you ever managed to block non-corporate access to gmail? Could you do it by adding the custom header?

Yes i did,  you had to create a custom url categories with a regex like .google.com, or accounts.google.com and mail.google.com, then you create a decrypt police and include the custom url to the police and chose decrypt.

 

 

In the cli you use AdvancedProxyConfig then customheaders

 

Please enter the custom HTTP header (in the form field: value):
[]> X-GoogApps-Allowed-Domains: voffice.com.br (Domains you want to allow, can be more than one ,comma separated)

Please enter the list of suffix of domains which will be sent this header,
separated by commas:
[]> mail.google.com, accounts.google.com

 

In the access policies include the same custom URL and choose allow

 

Thats it

Getting Started

Find answers to your questions by entering keywords or phrases in the Search bar above. New here? Use these resources to familiarize yourself with the community: