Hey
I want to create a rule to block teamviewer and ANYDESK so that users cannot access the inside network from outside.
I want, the IT helpdesk be allowed to user these 2 APPs when is necessary to give support to end usersat local network.
I was thinking to give them a profile access to the firewall just to disable and enable the rule whenever they need to acess the network with teamviwer or anydesk.....any ideas?
Thanks
Solved! Go to Solution.
Have you tried this with two policies:
inside > outside - where app control blocks the use of these apps
ouside > inside - where the 2 apps are allowed, and the admin starts a session to these apps
If that fails, another idea may be to use webfilter override so that the user can temporarily bypass that with a user/password you provide, and which you change or disable after the session. This may be more complicated to implement than your idea to disable/enable of app control profile on a policy for that specific user IP (so you don't allow everyone the access during that time).
Have you tried this with two policies:
inside > outside - where app control blocks the use of these apps
ouside > inside - where the 2 apps are allowed, and the admin starts a session to these apps
If that fails, another idea may be to use webfilter override so that the user can temporarily bypass that with a user/password you provide, and which you change or disable after the session. This may be more complicated to implement than your idea to disable/enable of app control profile on a policy for that specific user IP (so you don't allow everyone the access during that time).
User | Count |
---|---|
143 | |
70 | |
64 | |
42 | |
37 |
The Fortinet Security Fabric brings together the concepts of convergence and consolidation to provide comprehensive cybersecurity protection for all users, devices, and applications and across all network edges.
Copyright 2023 Fortinet, Inc. All Rights Reserved.