Rules for drop dns bypass, vpn, TeamViewer
Options
All Replies
-
Maybe look at it the other way if you can inserted of block only allow given access to URL and ports and block everything else?
VPN can be hard to block when using port 443.
You can use APP patrol to select tunnelling & Thin Client and drop all.
0 -
Hi @jyjoe,You can use DNS Content Filter to block Teamviewer. Go to Security Service > Content Filter > DNS Content Filter > General and click "Add" to create a new profile. In the profile, select "Remote Access" and click "OK".
You can also add your own block list. Then apply the profile to security policy rule from LAN1/LAN2 to Any and from LAN1/LAN2 to ZyWALL.0 -
Hi @jyjoe,To block OpenVPN and Wireguard, we suggest you use App Patrol to block VPN. In App Patrol, create a new profile and select "OpenVPN" and "Wireguard". Then apply the profile to security policy rule (outgoing rule). You can consider USG FLEX 100 or ATP100. Both models support App Patrol.0
Categories
- All Categories
- 385 Beta Program
- 2.1K Nebula
- 116 Nebula Ideas
- 80 Nebula Status and Incidents
- 5.1K Security
- 75 USG FLEX H Series
- 247 Security Ideas
- 1.3K Switch
- 70 Switch Ideas
- 908 WirelessLAN
- 34 WLAN Ideas
- 5.9K Consumer Product
- 211 Service & License
- 335 News and Release
- 71 Security Advisories
- 21 Education Center
- 5 [Campaign] Zyxel Network Detective
- 1.9K FAQ
- 886 Nebula FAQ
- 415 Security FAQ
- 228 Switch FAQ
- 200 WirelessLAN FAQ
- 46 Consumer Product FAQ
- 137 Service & License FAQ
- 34 Documents
- 34 Nebula Monthly Express
- 73 About Community
- 63 Security Highlight