Block upload files for all the HTTP/HTTPS traffic using Application Operation on ProxySG
search cancel

Block upload files for all the HTTP/HTTPS traffic using Application Operation on ProxySG

book

Article ID: 275757

calendar_today

Updated On:

Products

ISG Proxy ProxySG Software - SGOS Advanced Secure Gateway Software - ASG

Issue/Introduction

some customers would use this method in the following KB Block upload rule for all the HTTP/HTTPS traffic on ProxySG (broadcom.com) to Block upload files. 
but the issue here some sites also use the PUT method along with the POST method in order to upload files, secondly even if include the PUT method this is will not work for some cases, for example, some common Cloud vendors will use the binary format in order to upload the file, not the original format and this will prevent the proxy from blocking the file So this approach will not be practical.

Environment

ISG 7.3.9.2

Cause

Block all types of files to sharing/Cloud/storage site destinations. 

Resolution

What can be done:

 

You can use a dedicated method for such a scenario called Application Operation,

 

Note: in order to use Application Operation in the VPM you need to make sure that you have enabled the Application classification service in settings :

 

  1. Create a new Rule in the VPM and add a new object to the rule.

 

 

2. Choose the type of sites, for example, Google Drive, or use Any for all sites.

 

 

3. Choose Upload Files:

 

4. Use Deny action

 

5. Apply the Policy