Dear all,
Let me ask some helps from you all, i'm facing some case that i'm trying to block vpn application at our fortigate firewall, cloudflare and psiphon vpn apps:. It does not work using p2p and proxy to deny these apps:. Cloudflare is ok to deny by blocking cloudflare used ip address and ports. But, psiphon is not ok to block by choosing psiphon at application.
Anyone have ever been? or could you pls anyone help that problem to solve? Thanks much!
Solved! Go to Solution.
Try to find this specific application by name, not as part of some category, seems like Fortiguard have a signature for this app: https://www.fortiguard.com/appcontrol/32642
Pay attention to the notes - you have to block QUIC protocol altogether, and to reach 100% identification use SSL Deep inspection as well.
Try to find this specific application by name, not as part of some category, seems like Fortiguard have a signature for this app: https://www.fortiguard.com/appcontrol/32642
Pay attention to the notes - you have to block QUIC protocol altogether, and to reach 100% identification use SSL Deep inspection as well.
It is not work that you say!!
even with SSL Deep inspection!!
i tried the above setting in Deep SSL and the Psiphon is not connecting anymore
without deep SSL inspection its not possible to block psiphon VPN.
thanks for your help, @Khsajid . Let me test in my lab with this setting.
best way to bypass the original file name with a classic firewall system and then restart the VPN its works
https://gadgetssai.blogspot.com/2017/02/psiphon-app-download-psiphon-app-for.html
Select Forum Responses to become Knowledge Articles!
Select the “Nominate to Knowledge Base” button to recommend a forum post to become a knowledge article.
User | Count |
---|---|
1740 | |
1108 | |
752 | |
447 | |
240 |
The Fortinet Security Fabric brings together the concepts of convergence and consolidation to provide comprehensive cybersecurity protection for all users, devices, and applications and across all network edges.
Copyright 2024 Fortinet, Inc. All Rights Reserved.