Restrict remote desktop applications ,Download managers

From Secure Web Gateway
Revision as of 17:55, 11 June 2018 by en>Samidha12
(diff) ← Older revision | Latest revision (diff) | Newer revision → (diff)

Overview

Some of the remote applications like remote desktop application,download managers,etc. are already categorized in the SafeSquid Application Signatures. First you need to check whether the Application is categorized or not.

  • If application is not categorized under default Application Signatures, find User-agent using SafeSquid's extended logs or any other traffic capturing tool.
  • Add that User-agent or hostname of websites under Custom Setting > Request Types section.
  • Bind that created user group and Request Type in Access Profile section and specify the action as per the requirement.

Access Remote Desktop Applications Through SafeSquid 

Prerequisites

HTTPS Inspection must be enabled on SafeSquid if not see our document - How to configure HTTPS inspection 

Remote applications like Anydesk and Teamviewer should blocked automatically if HTTPS inspection is enabled.You should not do any policy configuration for blocking purpose.

Note:

It is been observed that remote applications like Anydesk and Teamviewer get access to internet if not blocked on firewall. So to control these remote applications via proxy(Secure web gateway) first you should have to blocked it on firewall.

Configuration on Remote applications

 
  • Set proxy on anydesk application.
  • If authentication is enabled  you have to specify Username and Password on any desk application.
  • Anydesk should not take auto proxy settings : If you set proxy in IE browser or chrome browser and you select "Try to detect the proxy server" option on anydesk, it should not take proxy automatically. You must have to configure proxy on anydesk application.
 
After doing above configuration you should restrict  
  • Restrict Ammy admin
  • Restrict Team viewer
  • Restrict Webex
  • Restrict Splashtop
  • Restrict Anydesk
 

Note: To restrict single application from above list please refer link Restrict Anydesk

Follow link to Allow remote applications for particular users