Solved

Block Skype Fortigate version 4 MR1

Posted on 2010-08-25
5
6,017 Views
Last Modified: 2013-11-09
Hi,

I am trying to configure a Fortigate 110C to block Skype traffic from exiting the LAN. All attempts to use application control to block P2p/Skype and apply that to a firewall protection profile have failed. The OS is 4.0 MR 1 Patch 6.

0
Comment
Question by:dlg654
[X]
Welcome to Experts Exchange

Add your voice to the tech community where 5M+ people just like you are talking about what matters.

  • Help others & share knowledge
  • Earn cash & points
  • Learn & ask questions
5 Comments
 
LVL 3

Expert Comment

by:sasi_kmr
ID: 33528530
check to which ips they get connected and block that ip.

0
 

Author Comment

by:dlg654
ID: 33528550
Alas that can change. I am looking for a more generic solution
0
 
LVL 3

Expert Comment

by:sasi_kmr
ID: 33528574
i easiest way to block is to block 80 port.

else change the port number to something else in all the skype installation.

which ever is easier.

thanks,
$a$i
0
 
LVL 4

Expert Comment

by:goyal_251
ID: 33528597
Block 5060 TCP and UDP port.it will block SIP port
0
 
LVL 4

Accepted Solution

by:
iworks-uworks earned 250 total points
ID: 33531875
Configure the application control to block skype. Assign it to the protection profile of the policy that you want to block.
You MUST clear all sessions of the policy before it will work. Disable and re-enable the firewall policy (make sure you won't be disconnecting yourself) OR restart the firewall. I tested on a Fortigate 80C 4.0 MR1 Patch 4 and confirmed it.
If that doesn't work let me know.
0

Featured Post

How to Defend Against the WCry Ransomware Attack

On May 12, 2017, an extremely virulent ransomware variant named WCry 2.0 began to infect organizations. Within several hours, over 75,000 victims were reported in 90+ countries. Learn more from our research team about this threat & how to protect your organization!

Question has a verified solution.

If you are experiencing a similar issue, please ask a related question

Suggested Solutions

Title # Comments Views Activity
jump server vs push server 6 193
Skype vs Skype for business 5 78
Setup another VLAN on Fortigate 3 45
Sonicwall SHA issue 4 55
We sought a budget ($5,000) firewall solution that would provide all the performance we needed with no single point of failure.  Hosting a SAAS web application in our datacenter, it was critical that we find a way to keep connectivity up and inbound…
Sometimes we have such a need to use two Skype accounts, for example, you may have a personal and a business account that you want to keep separate. By default, Skype can be run only once. Attempting to start it a second time fails. However, we …
The goal of the tutorial is to teach the user how to instant message and make a video call in Skype.
In a recent question (https://www.experts-exchange.com/questions/29004105/Run-AutoHotkey-script-directly-from-Notepad.html) here at Experts Exchange, a member asked how to run an AutoHotkey script (.AHK) directly from Notepad++ (aka NPP). This video…

738 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question