Topic Thread

Expand all | Collapse all

How to block other VPN software from the Enterprise

  • 1.  How to block other VPN software from the Enterprise

    Posted 07-19-2018 08:15
    Hi,
    I just went through an investigation of chasing down MAC address spoofing in our environment. In summary a client installed Avast VPN on their endpoint. It kept randomly changing the mac address of it's endpoint. We are a development shop so they all have admin/root access to their endpoints.
    How I can block VPN software like Avast on the FortiGate firewall? Their must be a list of their Avast VPN IP addresses listed somewhere but I cannot find it as that is what I was thinking of doing although that could change.
    I was thinking of a more global approach but I am unsure what to do.
    - FortiGate 500D
    Thanks
    Jeff

    ------------------------------
    Jeff Gover [Designation]
    IT Team Lead
    [CompanyName]
    [City] [State]
    [Phone]
    ------------------------------


  • 2.  RE: How to block other VPN software from the Enterprise

    Posted 09-11-2018 23:54
    Hello,

    Not easy.

    You can block standard VPN ports for  PPTP, IPSEC, L2TP
    But if your user use the version PRO, the VPN can be configured to use SSL.
    If you block  DNS names with words liek avast or VPN , there is an option in Avast Secure Line (VPN) to use IP addresses.

    regards
    José

    ------------------------------
    José

    ------------------------------



  • 3.  RE: How to block other VPN software from the Enterprise

     
    Posted 09-12-2018 04:37
    Hi,

    In your case, maybe you can consider creating a custom signature for that application and block it.

    Regards
    Rony

    ------------------------------
    Rony Moussa
    Fortinet NSE Certified: Level 8
    ------------------------------