Video Screencast Help
Search Video Help Close Back
to help
Not able to make it to Vision this year? Get a sampling in the Best of Vision on Demand group.

How can I block the FTP site using the SEPM firewall rule's

Updated: 22 May 2010 | 8 comments
kavin's picture
0 0 Votes
Login to vote
This issue has been solved. See solution.

I have tried to block the FTP site using the SEPM firewall rule & under the services I have blocked the FTP service & also enabled the Packet capture but I am not getting any luck with it. Have anyone tried this & does this works?

Comments

Vikram Kumar-SAV to SEP's picture
09
Dec
2009
4 Votes +4
Login to vote
Blenky's picture
09
Dec
2009
0 Votes 0
Login to vote

What type of control

What type of control do you have set on your client?

- Server Control, Mix or Client Control?

If you have client control, all server-based fw policy rules will be ignored. 

Ajit Jha's picture
09
Dec
2009
0 Votes 0
Login to vote

I guess you got u r answer

I guess you got u r answer from Faithtake's Article and thanks to Vikram for mentioning the direct access link.

Regards'

Ajit Jha

Technical Consultant

STS

AravindKM's picture
10
Dec
2009
0 Votes 0
Login to vote

Do you want to block all ftp

Do you want to block all ftp sites?
Then you can create a fire wall rule by selecting the network service
In the add rule wizard you can select network service and in the next screen you will get an option as ftp server. Select this and set the action as block
Note:You can add exceptions in this rule if req.
 

Please don't forget to mark your thread solved with whatever answer helped you : ) Thanks & Regards Aravind

kavin's picture
11
Dec
2009
0 Votes 0
Login to vote

I have already tried these

I have already tried these steps. But nothing has worked for me :(

Rafeeq's picture
11
Dec
2009
0 Votes 0
Login to vote

Hi

Should work,,,not sure why its not working.

Have you installed network threat protection and proactive threat protection.. :)  

Please don't forget to mark your thread solved with whatever answer helped you : ) Rafeeq

kavin's picture
11
Dec
2009
0 Votes 0
Login to vote

Yes I have installed NTP

Yes I have installed NTP & PTP infact all the features :)

It not even creating the traffic or packet logs on the client :(

AravindKM's picture
12
Dec
2009
0 Votes 0
Login to vote

Try by making it as server

Try by making it as server control
For this
Login to SEPM
Clients----------> <prefered group>--------->policies (right side) ------>client user interface control settings ( under location specific settings)---------->select server control and give ok

In the firewall policies keep the policy which you created as first policy.
If you want to get logs in the client  write to traffic log /write to packet log should be selected .This you can do by right clicking on that rule in logging column..

Please don't forget to mark your thread solved with whatever answer helped you : ) Thanks & Regards Aravind