Hello there.
I am currently doing a PoC of IAG in my environment. Configured some users for the Internet, Blocked QUIC from IAG Firewall rules.
When sending the media from Desktop App of WhatsApp, it produces an error. If I bypass the traffic, it is sent successfully.

Any one have the answer to this specific use case?

By solving this question, you may help 631 user(s).

Posting a reply earns you 2 coins. An accepted reply earns you 20 coins and another 10 coins for replying within 10 minutes. (Expired) What is Coin?

Enter your mobile phone number and company name for better service. Go

Newbie517762 Lv5Posted Aug-22-2025 11:01
  
HiHi,

WhatsApp Desktop is built on Chromium, which commonly uses the QUIC protocol to optimize media transfers. When QUIC is blocked via Sangfor IAG firewall rules, WhatsApp may not reliably fall back to HTTPS/TCP, resulting in upload failures.
To resolve this, you can either allow QUIC traffic or configure the application to force HTTPS/TCP if possible. Allowing QUIC is the simplest fix and ensures smooth media sharing.
Newbie932063 Lv1Posted Aug-22-2025 12:25
  
"QUIC protocol has to remain block/rejected" says the Tech resources.
Eiko Lv1Posted Aug-22-2025 16:08
  
normally i will check the Blocking log and it will tell you because what type of traffic they will block you.

1 more. : "Configured some users for the Internet"
i might will seperate Vlan / segmentation. to do blocking or allow access.
then add on another rule that allow whatsapp application to WAN Access.
Sheikh_Shani Lv2Posted Aug-24-2025 03:20
  
The Chromium platform on which WhatsApp Desktop is based frequently optimizes media transfers using the QUIC protocol.Upload errors may occur when WhatsApp is unable to consistently switch back to HTTPS/TCP when QUIC is banned by Sangfor IAG firewall restrictions.
You can fix this by either enabling QUIC traffic or, if it's feasible, setting up the application to require HTTPS/TCP.The easiest solution to guarantee seamless media sharing is to permit QUIC.
Newbie932063 Lv1Posted Aug-26-2025 16:23
  
I tried allowing the QUIC protocol through IAG firewall and creating a specific policy for QUIC service and application explicitly. but it still didn't work.
Anyhow, i will try again. Thanks for the reply.
Viktor Lv1Posted Aug-29-2025 14:07
  
When we deny the use of QUIC Protocol, it will automatically deny all the applications or services that uses it such as Skype, Google Chat, Zoom, etc. The reason why WhatsApp gets denied is because it uses that protocol.

In your case, it would be better to specify which service should be blocked instead of blocking the whole QUIC protocol as it will hit a lot of other applications and services.

I Can Help:

Change

Moderator on This Board

908
182
94

Started Topics

Followers

Follow

Board Leaders