Layer 7 functionality arrives
-
Dear All
if you please can any one support me of how to use snort + OpenAppID to block application like psiphon , ultrsurf ….etc
i have found that new announce from netgate with this links about this issuehttps://www.netgate.com/blog/application-detection-on-pfsense-software.html
https://doc.pfsense.org/index.php/Setup_Snort_Packageany tutorials for this
many thanks in advance
-
Your second link is a tutorial. Why not set it up and see if it picks up what you need? There's also this very nice video that covers the setup https://youtu.be/-GgqYq5-EBg
-
Hi,
this does not work when the explicit proxy is configured.
example, I configure the squid + sslbump on a vlan (ex: vlan10), i configure snort on the vlan10 with all appID = Result nothing is detected
without the proxy everything is detected by appID.Thanks
Best regards,
fred