Guest User!

You are not Sophos Staff.

This discussion has been locked.
You can no longer post new replies to this discussion. If you have a question you can start a new discussion

Web Filter - Block clients by user-agent

Hello,

I am looking for a way to regulate internet traffic based on user agents. Unfortunately I don't have control over the devices in our network, so I would like to restrict access to the internet based on the operating system. I read in another post that this is not directly possible in the XG but you have to go through the IPS. Is this still correct?

If so, can someone provide me with a working example. Unfortunately I do not manage to create a corresponding rule.

Thank you very much.

Regards,

Michael



This thread was automatically locked due to age.
Parents
  • The main issue is the encryption. 

    Based on the client, if you look into the Web request, a request is encrypting the GET first. So the firewall cannot tell, which user agent is used. Therefore the feature does not make a difference without decryption. If you do not have access to decrypt the traffic, there is not much to do here. 

    __________________________________________________________________________________________________________________

Reply
  • The main issue is the encryption. 

    Based on the client, if you look into the Web request, a request is encrypting the GET first. So the firewall cannot tell, which user agent is used. Therefore the feature does not make a difference without decryption. If you do not have access to decrypt the traffic, there is not much to do here. 

    __________________________________________________________________________________________________________________

Children
No Data
Share Feedback
×

Submitted a Tech Support Case lately from the Support Portal?