Solved

Sonicwall HTTPS filtering

Posted on 2014-03-06
4
429 Views
Last Modified: 2014-03-06
I recently acquired a sonicwall 250 NSA with most licenses but the DPI-SSL (at the time I did not know the impact this license had) and  I came across a problem when filtering content to my users.. well https is not filtered at all... and lots of sites use https. So I tried to create a firewall rule that would deny https to some users but, as it turns out . you cant do this so... does anyone know a workaround or a method to if possible filter https (yes I tried the Enable HTTPS Content Filtering checkmark)  and if not possible to deny traffic to some users at the https service and allow others...

Thanks!
0
Comment
Question by:xqualo
  • 2
  • 2
4 Comments
 
LVL 20

Expert Comment

by:carlmd
ID: 39909491
0
 

Author Comment

by:xqualo
ID: 39909617
Looks good however I'm looking to deny all https access to some users not to a special website.  the other 3 links are about how to use a blacklist and DPI-SSL license.. it does help but it doesnt solve the problem as a whole :)  Thanks!
0
 
LVL 20

Accepted Solution

by:
carlmd earned 500 total points
ID: 39909680
You should be able to do that by setting up a firewall rule. Depending upon which list is larger, the ones you want to block, or the ones you want to allow, would determine the best way to go. For example, assume you want to block 3 pc's (by ip or mac address), first define each one as an Address Object, then add all three to a Group. Now create a rule for the LAN to WAN zone that blocks are traffic on port 443 for the specific group. Make sure this rule is above (higher priority) then the permit all (any any) rule. That should do it.

If you need instructions to do this please advise.
0
 

Author Closing Comment

by:xqualo
ID: 39909779
Thanks!
0

Featured Post

PRTG Network Monitor: Intuitive Network Monitoring

Network Monitoring is essential to ensure that computer systems and network devices are running. Use PRTG to monitor LANs, servers, websites, applications and devices, bandwidth, virtual environments, remote systems, IoT, and many more. PRTG is easy to set up & use.

Question has a verified solution.

If you are experiencing a similar issue, please ask a related question

Suggested Solutions

Title # Comments Views Activity
Asa 5520 Configuration 3 69
Sonicwall Security Service questions 2 49
sonicwall can not login  ~URGENT~ 9 519
By pass website on ASA for Websense 4 52
Optimal Xbox 360 connectivity requires "OPEN NAT". If you use Juniper Netscreen or SSG firewall products in a home setting, the following steps will allow you get rid of the dreaded warning screen below and achieve the best online gaming environment…
Imagine you have a shopping list of items you need to get at the grocery store. You have two options: A. Take one trip to the grocery store and get everything you need for the week, or B. Take multiple trips, buying an item at a time, to achieve t…
This Micro Tutorial demonstrates using Microsoft Excel pivot tables, how to reverse engineer competitors' marketing strategies through backlinks.
With the power of JIRA, there's an unlimited number of ways you can customize it, use it and benefit from it. With that in mind, there's bound to be things that I wasn't able to cover in this course. With this summary we'll look at some places to go…

910 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question

Need Help in Real-Time?

Connect with top rated Experts

20 Experts available now in Live!

Get 1:1 Help Now