Tek-Tips is the largest IT community on the Internet today!

Members share and learn making Tek-Tips Forums the best source of peer-reviewed technical information on the Internet!

  • Congratulations Rhinorhino on being selected by the Tek-Tips community for having the most helpful posts in the forums last week. Way to Go!

Blocking executables from being downloaded

Status
Not open for further replies.

southside

Technical User
Joined
Feb 9, 2004
Messages
46
Location
GB
Hi All,

Can anyone advise me how to block the downloading of executables through our internet connection. I am running a proxy with squid, protected by Checkpoint Firewall and Cisco Pixs on a large network. I need to block executable file downloads and archived executable file downloads from the internet for all users.
 
This doesn't help you with what you have in place (it is probably possible with what you have in place), but what we have is an IPS (Intrusion Prevention System) that checks the packets for signs of executable attachments through email. One such header it looks for (among others) is the "This cannot be run from DOS" message. Not much help I'm afraid, but maybe it'll get you started.

----------------------------
"Will work for bandwidth" - Thinkgeek T-shirt
 
Not familiar with squid, but most proxy server will allow you to block *.exe's, I guess you can't with squid. We've used Igear(Symantec's product), but now use websense. It works great, you can create different groups for different levels of access. strong reporting system even to the level of billing to the user/department.
 
Thanks for replies.....

In the end I managed to achieve this through Squid to block .exe's and archive files. It worked with great success.

 
Status
Not open for further replies.

Part and Inventory Search

Sponsor

Back
Top