I've setup minemeld to gather all URLs for All - Office365 apps.
I have in the FW two rules.
1. Allow office-apps + Dest: any + EDL URL from Minemeld
2. Allow office-apps + Dest: any (to catch traffic not matchig the #1) this one should be removed later
By reading the blog, I thought that by using EDL-URLs I could spare the EDL-IPs story. But here we are, my rule #2 catchs some connections like:
app: ms-onedrive-base , dest-IP: 22.214.171.124, but not matching any URL from minemeld.... I wonder why...
app: ms-lync-base, dest-IP: 126.96.36.199, but not matching any URL from minemeld... I wonder why again....
Is it because the EDL-URLs list is incomplete, or is it because the FW cannot see the URL inside the packets?
THanks for any explanation,
... View more