This discussion has been locked.
You can no longer post new replies to this discussion. If you have a question you can start a new discussion

User able to bypass web policy via IP address

I am still very new to a UTM Firewall so pardon me if this question is too basic.

I recently setup a XG firewall for my home network and added a web filter policy to block explicit sites.

While it appears to work as expected (e.g. opening up an explicit website say http://xxx.com ) and resulted in a page blocked message

However, it appears really easy to bypass :

1) Ping xxx.com to obtain IP address say a.b.c.d

2) open a.b.c.d on your browser which is not blocked

 

I guess the question I have is if bypassing the XG firewall webpolicy is so easy?

Or is there something i am missing out on ?



This thread was automatically locked due to age.
Parents
  • Hello  

    To block website by IP, you have to add the IP Address catogery in your web filter policy block list. I will also suggest  block few other All Web traffic category.

     

    In addition, also configure application filter policy and block all "proxy and tunel"  by which user can bypass the firewall.

     

    Regards, Ronak.

Reply
  • Hello  

    To block website by IP, you have to add the IP Address catogery in your web filter policy block list. I will also suggest  block few other All Web traffic category.

     

    In addition, also configure application filter policy and block all "proxy and tunel"  by which user can bypass the firewall.

     

    Regards, Ronak.

Children
No Data