Hi everyone,
I am ruuning firmware 5.2.3,
i am configure DLP to deny .exe, .elf,.....
but it deny me to download .xlsx , please if someone has idea to solve this issue will be appreciate him.
Thanks
Nominating a forum post submits a request to create a new Knowledge Article based on the forum post topic. Please ensure your nomination includes a solution within the reply.
Hi ActiveNew,
Just an idea but do you have it configured to block ZIP files/compressed archives.
Office files post 2007 are actually XML files that are compressed into ZIP archives.
Here is the KB on identifying these archives.
http://kb.fortinet.com/kb/documentLink.do?externalID=FD31117
http://msdn.microsoft.com/en-us/library/aa338205.aspx
Regards, Craig
Thanks for reply,
yes , i am Blocked .zip
do you there is no other solution?
Thanks
Hi,
Yes it is possible to create the rules to allows Office Formats but still block regular zip archives.
This has come up before so here are the forum links for you
https://forum.fortinet.com/tm.aspx?m=94058
https://forum.fortinet.com/tm.aspx?m=135043
Hope this helps.
For remote file downloads (not emails) where users usually cannot change the file extensions, I think a 2-step DLP filter should work:
seq #1 - file name pattern: *.xlsx, *.docx, *.pptx, ... - action: none
seq #2 - file type: Archive (zip), Executable (exe), ... - action: block
for emails (unless explicitly needed) I would always use a a content check (regex or file type) but not a name pattern, since users can change the file extension - and they _will try it_ with renamed attachments.
sorry,The file i have tried to download is .zip not .xlsx
thanks for your help
Select Forum Responses to become Knowledge Articles!
Select the “Nominate to Knowledge Base” button to recommend a forum post to become a knowledge article.
User | Count |
---|---|
1662 | |
1077 | |
752 | |
443 | |
220 |
The Fortinet Security Fabric brings together the concepts of convergence and consolidation to provide comprehensive cybersecurity protection for all users, devices, and applications and across all network edges.
Copyright 2024 Fortinet, Inc. All Rights Reserved.