This discussion has been locked.
You can no longer post new replies to this discussion. If you have a question you can start a new discussion

Micro App Discovery per firewall policy

Hi guys,

Can I add exception for microapp discovery to selected firewall policy. I have turned on  microapp discovery to filter TOR browser, it is still connecting when turned off even if decrypt and scan https is enabled. I need to turn off microapp discovery for my servers and visitors/guest connecting to the wireless network.  I cannot/dont want to install firewall certificate to hundreds of guest at once.

Using SFOS 17.1.0 GA

 

Thanks,



This thread was automatically locked due to age.
Parents
  • Hi VJ,

    You may try to improve the detection by increasing the IPS packet size. 

    command in console

     set ips maxpkts 100

    to configure to default

     set ips maxpkts default

    You may try increasing from 8 to 100 to 200

  • Hi Aditya,

    Thanks for replying.

    Actually i already succefully blocked TOR browser by turning on microapp discovery and set ips maxpkts to 100. Want i want to do is to turn off microapp discovery to certain firewall policy. It seems that it is globally set. I am having problems with guest mobile devices connecting to the network. Is there a way?

    Thanks again,

Reply
  • Hi Aditya,

    Thanks for replying.

    Actually i already succefully blocked TOR browser by turning on microapp discovery and set ips maxpkts to 100. Want i want to do is to turn off microapp discovery to certain firewall policy. It seems that it is globally set. I am having problems with guest mobile devices connecting to the network. Is there a way?

    Thanks again,

Children