This discussion has been locked.
You can no longer post new replies to this discussion. If you have a question you can start a new discussion

How to block VPN software from clients

Hi,
I have an Astaro ASG 420 at work, I have setup the rules to disallow certain applications (IM,Chat) and some non-work related websites (facebook, twitter, forums) but I discovered that some users are using VPN software (hotspotshield) to bypass the rules. 

How can I detect and/or block such traffic and applications ? 

regards,


This thread was automatically locked due to age.
  • Hi,

    1. what ASG/UTM version are you running?

    2. are you using the http / https proxy (Web Protection)?
    In transparent mode?

    3. what VPN technology does 'hotspotshield' use? e.g. SSL, IPSEC, L2TP, ...

    Barry
  • They dont mention it on their website, but according to internet sources it can use ssl, pptp, l2tp and ipsec. As far as I know, it doesnt work over a transparent proxy but its been a while since I used it...
  • What mode is Web Filtering in - Transparent?

    What Firewall rules do you have allowing traffic from "Internal (Network)" out?

    Cheers - Bob
     
    Sophos UTM Community Moderator
    Sophos Certified Architect - UTM
    Sophos Certified Engineer - XG
    Gold Solution Partner since 2005
    MediaSoft, Inc. USA