Video Screencast Help
Search Video Help Close Back
to help
Not able to make it to Vision this year? Get a sampling in the Best of Vision on Demand group.

Blocking applicaton using firewall rules

Created: 04 Jun 2010 | 7 comments
kalyan makkena's picture
0 0 Votes
Login to vote

trying to block yahoo messenger using firewall rules, but s not workng. Attaching a screenshot of firewall rules for analysis.

Comments

Rafeeq's picture
04
Jun
2010
0 Votes 0
Login to vote

hi

for any rules to work you need to have all the three components installed
av/as
ptp
ntp
try using application and device control to block messenger
all the rules are mentioned here; give it a try will work
https://www-secure.symantec.com/connect/forums/block-applications-yahooskypegtalk-etc-using-application-and-device-control-policy#comment-3317971

Please don't forget to mark your thread solved with whatever answer helped you : ) Rafeeq

kalyan makkena's picture
04
Jun
2010
0 Votes 0
Login to vote

Accept that application

Accept that application device control policy is effective, but i cannot block it according to particular time, say after office hours i cannot enable them back, so i am looking at firewall rules.

Prachand's picture
04
Jun
2010
0 Votes 0
Login to vote

Move the rule to the top and

Move the rule to the top and see if  that helps.

Prachand Kumar MCSE-2003 Symantec Technical Specialist (SCTS)

kalyan makkena's picture
04
Jun
2010
0 Votes 0
Login to vote

Still it remains the same.

Still it remains the same.

Hadi's picture
05
Jun
2010
0 Votes 0
Login to vote

Hi IPS policy is the better

Hi
IPS policy is the better way for blocking yahoo messenger. to do that please follow the instruction:
in the policies menu> Intrusion Prevention> Add an intrusion prevention Policy> enter a name for policy and then go to exceptions menu> Click on Add button> Find "Yahoo IM Login" and select it> Click next and select Block as action. then save the policy and assign it to the group.

curtiplas's picture
07
Jun
2010
0 Votes 0
Login to vote

Why may I ask do you want to

Why may I ask do you want to disable messenger during work hours, instead of at all times?

Moin_Sobhan's picture
07
Jun
2010
0 Votes 0
Login to vote

Blocking applicaton using firewall rules

Hello there,

The easiest way to do this using Firewall rule is as below:

1. Create a Blank Rule and name it as Block Yahoo
2. Double click on Host List (where Local/Remote option box is checked)
3. Under "Remote hosts that apply to the firewall rule:" click Add button
4. From "Type" dropdown list select "DNS domain"
5. Under "DNS Domain" test field type as below:

*.yahoo.com

6. Click OK and then click OK again
7. From the "Action" set it to Block
(You can also set the logging to traffic log so that you can check if the Firewall Blocked it)

8. Assign the policy to the desired Group.

Note: Your clients wouldn't be able to browse www.yahoo.com as well. But there is many other ways you can do it.

Should be all good.

Moin