Saturday, June 26, 2021

Anyone experienced with Cisco WSA? How do I detect and proxy "non-browser" traffic?

I have configured the policies to shape browsing traffic and it's working fine. Websites are blocked and allowed as per rules.

But I'm having a hard time detecting traffic from other agents. Meaning not Chrome or Mozilla but for example internet traffic from the Skype app. Or internet traffic from Autocad, VPN clients, command prompt etc.

Traffic is blocked (because users cant connect with VPNs, Autocad doesnt connect to the Adobe server to update) but there are no logs showing this blocked traffic.

Only HTTP/HTTPS logs from browser traffic are shown.

I checked L4Monitor traffic and has 0 data. Google didnt help.

Any help



No comments:

Post a Comment