Hello
How to block Teamviewer Incoming request from Branch ([style="background-color: #ffff99;"]One-way only[/style]), so that Head Office user can still connect to remote Branch ?
TeamViewer consist of 3 signatures:
- Teamviewer Application
- Teamviewer CallReceive
- Teamviewer CallRequest
I created a policy Incoming: WAN, Outgoing: Internal LANs and Blocked "Teamviewer CallReceive" Only, it does not block !
I created a policy Incoming: WAN, Outgoing: Internal LANs and Blocked the above 3 signatures , it does not block !
Thanks
As I understand it the Teamviewer client installs (if told to) a service on a client device and periodical "calls home", so it makes an outbound connection (e.g. from LAN -> WAN). This link explains what ports are used by Teamviewer.
And if I understand this, the Teamviewer clients establishes a connect to each other via a server (management connection). So you may need to rethink your approach to blocking this traffic.
NSE4/FMG-VM64/FortiAnalyzer-VM/6.0 (FWF30E/FW92D/FGT200D/FGT101E/FGT81E)/ FAP220B/221C
Thank you Dave.
I should consider other approach to the One-Way only blocking as you said.
Guys, you input is still appreciated if someone come across similar need or would suggest a hint :)
Select Forum Responses to become Knowledge Articles!
Select the “Nominate to Knowledge Base” button to recommend a forum post to become a knowledge article.
User | Count |
---|---|
1742 | |
1113 | |
759 | |
447 | |
241 |
The Fortinet Security Fabric brings together the concepts of convergence and consolidation to provide comprehensive cybersecurity protection for all users, devices, and applications and across all network edges.
Copyright 2025 Fortinet, Inc. All Rights Reserved.