I'm not too worried about users finding out about ultrasurf to bypass our firewall, but it got me thinking. Has anyone actually successfully blocked Ultrasurf? some quick googling didnt bring much up.
My Untangle firewall can easily block it with the application control module. Honestly, I didn't actually test it because I can't easily download Ultrasurf since my internet content filtering blocks the ultrasurf site, but I'm pretty confident the firewall does what it claims to do.
To completely block Ultrasurf traffic, you must create a layered defense strategy of Firebox services. The first step is to deny Ultrasurf web pages (*ultrasurf*/*) so that users cannot download the application. This is done via an HTTPS proxy with content inspection and WebBlocker.
760c119bf3