URL FIltering

cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 
Announcements

URL FIltering

L1 Bithead

I was curious if anyone knows why even when traffic is flagged as a threat by URL filtering there are still packets being sent and received?  

2 REPLIES 2

L6 Presenter

Two reasons immediately spring to mind (as you didn't specify how many packets):

1) The HTTP/HTTPS session must setup and make the request before the PA can detect the URL being requested, so there will always be some packets before it is blocked. Additionally, multiple requests could be pipelined in an existing session, with the first allowed and a later request flagged.

2) The URL request is being alerted to, not reset/blocked. See whether the URL Filtering group it is detected under is set to Alert vs. Block.

Thanks for the response.  The URL category is set to block.

  • 1868 Views
  • 2 replies
  • 0 Likes
Like what you see?

Show your appreciation!

Click Like if a post is helpful to you or if you just want to show your support.

Click Accept as Solution to acknowledge that the answer to your question has been provided.

The button appears next to the replies on topics you’ve started. The member who gave the solution and all future visitors to this topic will appreciate it!

These simple actions take just seconds of your time, but go a long way in showing appreciation for community members and the LIVEcommunity as a whole!

The LIVEcommunity thanks you for your participation!