This discussion has been locked.
You can no longer post new replies to this discussion. If you have a question you can start a new discussion

Can't block executable files

Hi everyone,

I want to block all executable file in my XG firewall.

As you can see in the below pictures.

I already created a firewall rule. Applied decrypt and scan HTTP/HTTPS.

Applied Web policy, Include Risky downloads(in here executable file is included) in web policy and import CA certificate.

 

 

Still can download every executable file in browser.



This thread was automatically locked due to age.
Parents Reply Children
  • Hi,

    with that firewall rule you block could be bypassed by an application that is smart enough to get around https scanning.

    Please post a copy of the logviewer file showing the details when a file is passed through.

    Ian

  • Do you know what logviewer file could i see that? I don't see it in the web filter logs. There's no executable file logs in there.

    Also i also block advertisements in the web policy.

    In the logs it says blocked, but ads is still showing in every website that i browse.

  • Hi,

    first thing is change the firewall rule services to http and https.

    Next is to block QUIC.

    CHange the Application to allow.

    Logviewer will show somethings in firewall, application (maybe), WEB.

    Finally you will not be able to block all ads, some are embedded in the displayed page and only show as ads if you click on them.

    Ian

    edited spelling error.

  • I tried other browser firefox and microsoft edge. and i was able to block most of the executable file.

    But in chrome most of executable file can't block. When i apply decrypt and scan https.

    Most executable file is being blocked and also advertisements. Thanks for the information  

    I was able to locate what needs to be applied.

    I think this is enough for now. Thanks a lot.