This discussion has been locked.
You can no longer post new replies to this discussion. If you have a question you can start a new discussion

An issue with blocking ".exe" file extension downloads

sophos utm 9 still doesn't block some downloads with file extension ".exe" although we already blocked .exe in our policy in filter action>downloads>blocked file extensions.
Could anybody help

Thanks



This thread was automatically locked due to age.
Parents
  • Are you decrypting HTTPS with any rules that might apply to the session over which the .exe is downloaded? If the .exe is downloaded over HTTPS and you're not decrypting HTTPS the XG won't be able to "see" it. You can sort of test this on the Eicar test AV site. They give you their test virus files over HTTP and HTTPS.

Reply
  • Are you decrypting HTTPS with any rules that might apply to the session over which the .exe is downloaded? If the .exe is downloaded over HTTPS and you're not decrypting HTTPS the XG won't be able to "see" it. You can sort of test this on the Eicar test AV site. They give you their test virus files over HTTP and HTTPS.

Children