- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
Bloqueio de arquivos por extensão no whatsapp
I'm having difficulty blocking the sending and receiving of files on WhatsApp by extension such as .pdv, .doc and .xlsx
- Labels:
-
FortiGate
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
Hi Felipe
Could you explain what you have done on your FGT? How is the firewall rule configured?
Created on
10-15-2024
04:32 AM
Edited on
10-15-2024
05:37 AM
By
Anthony_E
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
Create a single-host rule to test and enable application control, file filter, and SSL inspection security profiles.
In the control app I added the signatures of "Whatsapp_Web.File.Download", and "Whatsapp_Web.File.Upload" in monitor mode and also tested in block.
In File Filter, I indicated the types of files I want to block: "msoffice", "pdf" and "msofficex".
No SSL inspection uses the profile: "deep inspection".
The rule is in Proxy-based
I wanted to block only office files, PDFs and images, however, in these settings it ends up blocking everything including audio.
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
Hi Felipe,
You don't need the file filter for that, also quic protocol must be blocked. We have an article that describe the procedure. https://community.fortinet.com/t5/FortiGate/Technical-Tip-Block-WhatsApp-file-uploads-action-by-usin...
Remove the file filter from the firewall rule and confirm that it is similar to the article. Give it a try and update us.
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
Okay but I want to block only some file extensions like .doc .pdf and .xlsx
I've already tested this configuration but it blocks everything including audio
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
If you can share the firewall rule settings we can check it. In case you cannot share it here, raise a case to Fortinet TAC Brazil and they will check it for you.
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
This is current policy
