Jump to content

Block a website via Policy [ERA]


karanik

Recommended Posts

Hello,

I had block some websites with policies successfully. 

My query is if it is possible  when I open a website which is in the block list then to redirect in specific webpage instead of error on browser "ERR_NAME_NOT_RESOLVED"

 

To avoid 

ERR_NAME_NOT_RESOLVED-min.png.d5e1af96e6dac2c907d6df274a988197.png

 

Edited by karanik
Link to comment
Share on other sites

  • Administrators

What version of Endpoint do you have installed? Do you have SSL filtering enabled? What browser and version do you use?

What website did you attempt to block and how did you block it in a policy? Did you block it via Web Control or Web access protection -> URL address management ?

Link to comment
Share on other sites

23 minutes ago, Marcos said:

What version of Endpoint do you have installed?

Mostly 7.02.21100.4

Do you have SSL filtering enabled? What browser and version do you use?

SSL?Where?  Browser Mostly Chrome Version 74.0.3729.131 (Official Build) (64-bit)

What website did you attempt to block and how did you block it in a policy? Did you block it via Web Control or Web access protection -> URL address management ?

Blocking Via Web access protection

1632054126_blockedaddress1.thumb.jpg.94471a3c93d4f21a9cd93086122f7965.jpg

 

 

23 minutes ago, Marcos said:

 

 

542860351_blockedaddress3.jpg.f09d01f638d057016fd16ccd2cde0082.jpg

Link to comment
Share on other sites

  • Administrators

In order to block facebook, do the following:

- add *facebook.com* in the list of blocked addresses
- make sure that SSL filtering is enabled
- make sure that communication with trusted domains is not excluded (by default it is)
- in order for filtering to work in Chrome, QUIC protocol needs to be disabled as per https://support.eset.com/kb6757/
image.png

 

Link to comment
Share on other sites

23 minutes ago, Marcos said:

In order to block facebook, do the following:

- add *facebook.com* in the list of blocked addresses
- make sure that SSL filtering is enabled
- make sure that communication with trusted domains is not excluded (by default it is)
- in order for filtering to work in Chrome, QUIC protocol needs to be disabled as per https://support.eset.com/kb6757/
image.png

 

 

I think you don't understand me. 

I have already block for example facebook.

My first query in post this post was 

Quote

My query is if it is possible  when I open a website which is in the block list then to redirect in specific webpage instead of error on browser "ERR_NAME_NOT_RESOLVED"

ERR_NAME_NOT_RESOLVED-min.png.27ea4dc28f0d90002dbcc20e1d570289.png

This is my policy

2.thumb.jpg.5fabc1d4a5ee8cb664c60d2c500b3c91.jpg1.thumb.jpg.7841394e40e3320ae6045114df95a8be.jpg

 

Edited by karanik
Link to comment
Share on other sites

  • Administrators

I'm trying to simulate the error but so far I was only able to get this one with SSL filtering disabled:

image.png

Normally you should get this notification:

image.png

Link to comment
Share on other sites

5 minutes ago, Marcos said:

I'm trying to simulate the error but so far I was only able to get this one with SSL filtering disabled:

image.png

Normally you should get this notification:

image.png

 

Yes i take and this error on browser.  Also same of ESET notification.

Now in my query .... is it possible to redirect this error "ERR_SSL_PROTOCOL_ERROR" to my custom webpage with 

Access-Restricted-Websites.png.1190661ac1adb49136f57decd7b12b97.png

 

Link to comment
Share on other sites

  • Administrators
Quote

Now in my query .... is it possible to redirect this error "ERR_SSL_PROTOCOL_ERROR" to my custom webpage with 

To get rid of this error, you must have SSL filtering enabled. Then you should get the yellow notice that I posted above. The error is displayed by Chrome so we cannot do anything about it until protocol filtering is enabled in Endpoint. Please provide me with logs collected with ELC from the client so that I can check if everything is set up correctly in Endpoint.

Link to comment
Share on other sites

  • Administrators

One more thing, if you want to use a custom message with graphics, you will have to block access via Web Control and not via URL management:

image.png

In Web Control wildcards are not supported so just create a URL-based blocking rule for facebook.com.

image.png

Link to comment
Share on other sites

18 minutes ago, Marcos said:

One more thing, if you want to use a custom message with graphics, you will have to block access via Web Control and not via URL management:

image.png

In Web Control wildcards are not supported so just create a URL-based blocking rule for facebook.com.

image.png

That's it. That is what i want.

Thank you.

Link to comment
Share on other sites

  • 2 weeks later...
On 6/14/2019 at 3:32 PM, Marcos said:

One more thing, if you want to use a custom message with graphics, you will have to block access via Web Control and not via URL management:

image.png

In Web Control wildcards are not supported so just create a URL-based blocking rule for facebook.com.

image.png

 

I return because i have 2 question more about that.

First is why cannot view policy on Client ESET? (missing Web Control under WEB AND EMAIL)

eset_app.jpg.0e5685c713fa77b8ece5260b2a239c57.jpg

but on ERA is ok

eset_web_control.thumb.jpg.56b42f3201fdfde50b362bd60d6a1acc.jpg

 

Second is not only not appear on client but not applied also.

 

eset_web_control2.thumb.jpg.20a0576b14c42044bd6af00b9fec71a2.jpg

 

Edited by karanik
Link to comment
Share on other sites

  • Administrators

It appears that you have ESET Endpoint Antivirus. Web Control is included only in ESET Endpoint Security.

For blocking websites you can use URL address management, however, without the option to choose a custom note and graphics.

Link to comment
Share on other sites

7 minutes ago, Marcos said:

It appears that you have ESET Endpoint Antivirus. Web Control is included only in ESET Endpoint Security.

For blocking websites you can use URL address management, however, without the option to choose a custom note and graphics.

Yes is ESET Endpoint Antivirus.

In ESET Endpoint Security can i have only note or graphics or i have the ability to redirect it on my URL (that include custom access denied webpage)?

Link to comment
Share on other sites

  • Administrators

Only an image can be linked through a url. I think the main reason for this is to prevent situations when the url would be inaccessible and users would not get any information then. If the url to the image is inaccessible, it's not a big issue since the user gets a notice at least.

Link to comment
Share on other sites

14 minutes ago, Marcos said:

Only an image can be linked through a url. I think the main reason for this is to prevent situations when the url would be inaccessible and users would not get any information then. If the url to the image is inaccessible, it's not a big issue since the user gets a notice at least.

Thank you Marcos for all information.

 

Link to comment
Share on other sites

Guest
This topic is now closed to further replies.
  • Recently Browsing   0 members

    • No registered users viewing this page.
×
×
  • Create New...