FortiGate
FortiGate Next Generation Firewall utilizes purpose-built security processors and threat intelligence security services from FortiGuard labs to deliver top-rated protection and high performance, including encrypted traffic.
tino_p
Staff
Staff
Article Id 356048
Description This article describes the steps to configure the Application Control profile, to block Zoom login, upload, and download while still allowing to join the meeting.
Scope FortiGate, Application Control.
Solution
  1. In Firewall GUI, choose Security Profiles, and create a new profile. Choose 'Create New' in Application and Filter Override, select signatures for Zoom login, upload and download, choose Action is Block, and select OK.

1.png

2.png

  1. Create a new Firewall policy, choose the Application Control profile that was created in the previous step, and Select 'Deep-inspection' in the SSL/SSH profile.

     

    3-1.png

    3.png

     

    Remember to install the certificate of 'Deep-inspection' on users' computers.

     

     

  2. As a result, it fails to log in to the Zoom account but still can join the meeting (by ID/password). However, the upload/download functions were also blocked in Chatbox. All events were reflected in the Application Control log in FortiGate Firewall.

4.png

5.png

 

6.png

 

7.png

8.png