Sangfor Community»Categories Cyber Security Athena Secure Web Gateway (SWG) Cant Block Site

Cant Block Site

views: 184123 | comments: 4 | added to Favorites 0
Lights on | 提示:支持键盘翻页<-左 右->
    组图打开中,请稍候......
Created: Jun-12-2025 12:17

Summary:

Hi, I'm currently dealing with an issue related to blocking specific websites and applications—especially gambling-related content. The blocking works as expected when using Firefox; however, when us ...

Reply

Syed ShahMir Posted Jun-13-2025 15:05
Sure, here's a bit more detail, still brief:

1. **Block QUIC (UDP/443):**
   Chrome uses QUIC (UDP-based) which bypasses normal web filters. Blocking it forces Chrome to use HTTPS over TCP, which your filters can inspect.

2. **Enable SSL Inspection:**
   This allows Sangfor to inspect encrypted HTTPS traffic, ensuring keyword/content filters work properly across all browsers.

With these two steps, website and app blocking will be consistent across Chrome, Firefox, and others.
firdhyprayogo Posted Jun-12-2025 13:16
hi Aiman, thanks for the suggest i will try to block Quic protocol
AimanHakim Posted Jun-12-2025 13:08
Hi there, in that case u should apply the QUIC protocol as well for blocking. When blocked, it will fall back using https for web serfing.
AimanHakim Posted Jun-13-2025 03:58
Last edited by AimanHakim Jun-13-2025 04:00.

How about trying to create a new policy dedicated for blocking QUIC? Sometimes when creating 1 policy with multiple protocols to block may have an issue. Try create a policy only with blocking QUIC. At the same time, during the test for surfing the web try empty the cache or using incognito. Cuz maybe previous sessions have not been cut off completely.
If it still doesn't work, u may need to contact sangfor support on this as the QUIC is quite tricky to block in some situations.