We have a policy on our cisco umbrella setup that users cant download stuff, but i would like to allow one DLL ( -2.8.5.208.dll) is there a way within Umbrella that allows me to whitelist urls like these or it only domain level whitelist.
The users have been complaining that the internet has been unusable. Browisng seems fine but pretty much any webiste I go to to download a file it drops to a crawl nearly instantly. I've checked the local DNS and its using google 8.8.8.8 and 8.8.4.4. THE CATCH is that I can download from Microsoft downloads full out pretty much each time it test it. Download.com, apple, adobe all are essentially unusable. Is there anything in this config that catches anyones eye? My only though tis this line that may have been from the DSL, on the inside LAN interface "ip tcp adjust-mss 1400" How this doesn't affect microsoft I don't know.....
The rotuer is basically just doing internet NAT now. The rest fo the config is no longer applicable. FYI the ISP says there is no content filtering on their end and the only thing I haven't tried is goign direct in to the fiber transceiver as I am abotu 1.5hours away. Also, no cisco smartnet so a software update isn't in the works. We'd just change them to an ASA or something.
After a few years in use. We have seen Cisco 871 and 851 routers that would hang if you had a single download that was more than 100M large. It is intermittent. Sometimes the problem goes away, sometimes it happens on very small downloads (just a 10KB web page). It seems that the just about all the downloads eventually finish, but the bigger the download the longer the hang.
We recommend installing Duo Mobile from the Google Play store whenever possible to ensure automatic updates and full functionality. We provide Duo Mobile as an APK for distribution to users who are unable to access the Google Play store. Learn more about Duo Mobile downloads.
Note: If AMP enabled MX devices are not upgraded prior to the above mentioned dates, AMP will fail to connect to AMP Cloud and result in a fail closed behavior. This will cause all AMP inspected file downloads to be blocked unless AMP is manually disabled.
The MX Security Appliance will block HTTP-based file downloads based on the disposition received from the AMP cloud. If the MX receives a disposition of malicious for the file download, it will be blocked. If the MX receives a disposition of clean or unknown, the file download will be allowed to complete.
f448fe82f3