uOS 1.38-Blocking the QUIC Protocol for Enhanced Inspection

Options
Zyxel_Lynn
Zyxel_Lynn Posts: 183 image  Zyxel Employee
5 Answers First Comment Friend Collector First Anniversary
edited May 20 in Other Topics

Securing Encrypted Sessions: The Block QUIC Protocol Toggle

The H series firewalls now include a system-level toggle to block the QUIC protocol, ensuring all web traffic remains visible to UTM security scans.

The QUIC Challenge

QUIC is a modern protocol (UDP 443) used by browsers like Google Chrome that encrypts sessions deeply. This encryption can allow traffic to bypass traditional security features like web filtering.

System-Level Enforcement

The "Block Quick Protocol" toggle, located under System > Advanced settings, is enabled by default on firewalls running the latest firmware from a reset state. It acts as a system-level rule with higher priority than manual policy control rules. By blocking QUIC, the firewall forces client browsers to fall back to inspectable HTTP/S protocols.