Solved

On a WatchGuard Firebox X1250e v10.1how do you allow youtube but block all other streaming media?

Posted on 2008-06-25
1
2,899 Views
Last Modified: 2013-11-16
I need to allow youtube, but block all other streaming media with our WatchGuard Firebox X1250e v10.1 firewall. Any ideas?
0
Comment
Question by:knada242
1 Comment
 
LVL 32

Accepted Solution

by:
dpk_wal earned 500 total points
ID: 21873846
This is bit difficult to achieve but can be done in the following way:
Add a proxy HTTP Service and configure it as below:
Enabled and allowed; from any-trusted; to ANY

On above service configure it to deny all extensions which are related to media; this service would ensure that everything from anywhere on the internet would be blocked.

Now create another HTTP service [but from packet filters (historically called filteredHTTP)] as below:
Enabled and allowed; from any-trusted; to public-ip-address-of-youTube

Above service would ensure any traffic going out from any internal machine would not be restricted. The reason I say this is difficult is because to find all the IP address of the youTube website and mirrors would be a tedious task, on top of that the IP address/mirrors keep changing over time.
You can do nslookup from command prompt to know the current website/mirror IP addresses.

You would need to keep updating the service with all new IP addresses and delete the old ones as and when the changes are made.

Please implement and update if you need more details.

Thank you.
0

Featured Post

Is Your Active Directory as Secure as You Think?

More than 75% of all records are compromised because of the loss or theft of a privileged credential. Experts have been exploring Active Directory infrastructure to identify key threats and establish best practices for keeping data safe. Attend this month’s webinar to learn more.

Question has a verified solution.

If you are experiencing a similar issue, please ask a related question

Suggested Solutions

In this tutorial I will show you with short command examples how to obtain a packet footprint of all traffic flowing thru your Juniper device running ScreenOS. I do not know the exact firmware requirement, but I think the fprofile command is availab…
To setup a SonicWALL for policy based routing to be used with the Websense Content Gateway there are several steps that need to be completed. Below is a rough guide for accomplishing this. One thing of note is this guide is intended to assist in the…
This demo shows you how to set up the containerized NetScaler CPX with NetScaler Management and Analytics System in a non-routable Mesos/Marathon environment for use with Micro-Services applications.
When you create an app prototype with Adobe XD, you can insert system screens -- sharing or Control Center, for example -- with just a few clicks. This video shows you how. You can take the full course on Experts Exchange at http://bit.ly/XDcourse.

930 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question

Need Help in Real-Time?

Connect with top rated Experts

10 Experts available now in Live!

Get 1:1 Help Now