Guest User!

You are not Sophos Staff.

This discussion has been locked.
You can no longer post new replies to this discussion. If you have a question you can start a new discussion

Block XVPN servers

Good morning

We have an end customer (a school) where students use iPads.
It turns out that there are several students who have caught the bad habit of getting IPs from proxy servers thanks to the XVPN application. They do not use it on the iPads, but they use the mobile and get them there. Then in the iPad configuration they use them as a proxy server and thus circumvent the XG firewall.
The firewall is not able to detect those connections as proxy nor as VPN. I have followed the recommendations here:
support.sophos.com/.../KB-000038258
I also saw the thread already opened some time ago in this forum:
community.sophos.com/.../do-you-have-a-defence-against-vpn-applications-with-sophos-utm
The only thing I have been able to do is to install the program on Windows, connect and disconnect to the VPN and write down the public IPs I get. But I have seen that they were never repeated (so there must be an infinite number of them).

Can anyone give me a hand on this?

Thank you very much in advance



This thread was automatically locked due to age.
Parents
  • Hi,

    you can use application policies and web policies. You can also create an FQDN for xvpn.io, create rule at the top of your rule list that blocks/drops connections to the FQDN.

    Ian

    XG115W - v19.5.1 mr-1 - Home

    If a post solves your question please use the 'Verify Answer' button.

Reply
  • Hi,

    you can use application policies and web policies. You can also create an FQDN for xvpn.io, create rule at the top of your rule list that blocks/drops connections to the FQDN.

    Ian

    XG115W - v19.5.1 mr-1 - Home

    If a post solves your question please use the 'Verify Answer' button.

Children