This discussion has been locked.
You can no longer post new replies to this discussion. If you have a question you can start a new discussion

Chrome browser facilitates proxy bypass?

I have been using Standard Mode Web Proxy for some time, and thought it was working pretty well.  Recently, I began adding Transparent Mode Web to catch the "crumbs" that bypass the standard proxy.   I have been surprised by the amount of non-browser traffic that bypasses the proxy. 

Some of the Transparent-mode traffic has been attributable to known fat-client applications, such as my AntiVirus, Skype, GoToMyPC, Adobe Auto-Update.   Some is traceable to Microsoft stuff by the UserAgent string - Microsoft Office, Microsoft BITS, Microsoft Crypto API.

The biggest surprise is that Google Chrome seems to be allowing traffic to bypass the proxy.  On a representative user, it was 25% of his total web traffic.   Many of the URLs appear to be tracking and advertising sites, none appear to be operating system overhead.

I have not yet repeated the tests for an Internet Explorer user (if there are any left...)

Has anyone else seen similar results?   Does anyone understand why I am seeing this result?



This thread was automatically locked due to age.
Parents
  • Google Chrome ueses its own "Quick" UDP based protocol to establish 443 connections.

    A known workarround is to create a firewall rule which blocks UDP traffic for the port 443.

     

    Have a try. [;)]

  • Thanks, I will pursue blocking UDP 443.   I was excited to see your answer because I knew Sophos Support would not be interested in explaining the odd workings of Google's browser, and attempts to find the answer with Google searches had been unsuccessful.

    It may be awhile before I can confirm your answer as correct.  I have many web filtering lock-down actions in process right now, and I am struggling to know which ones create which problems.

  • Hi,

    actually Sophos support is interested and from what has been published mr6 will have a fix for the chrome bypass.

    Ian

    XG115W - v20 GA - Home

    XG on VM 8 - v20 GA

    If a post solves your question please use the 'Verify Answer' button.

Reply Children
No Data