Important note about SSL VPN compatibility for 20.0 MR1 with EoL SFOS versions and UTM9 OS. Learn more in the release notes.

This discussion has been locked.
You can no longer post new replies to this discussion. If you have a question you can start a new discussion

Decrypt & Scan HTTPS online game escape

Hello.
I'm sorry for the weak english first.
I'm having trouble with online games about Decrypt & Scan HTTPS feature. I have 2 internet lines and one is only available to serve online games. Some of the known gaming firms can handle the games with the port forwarding, FQDN host features. However, I encountered problems such as the PUBG Mobile game for the PC and some other companies' games that I didn't get a game update and couldn't access the game. I've added a category of games to the exclusion of browsing section. I've added a list, including regex, to the exclusion list of addresses, such as qq.com, but not literally. what should I do. How should I rule out all online games HTTP, Decrypt & Scan HTTPS, Web Policy, Application Control to exclude scanning and direct the line for games. Thanks.



This thread was automatically locked due to age.
Parents
  • Hi,

    from my reading of your issue, you would need to create series of FQDN groups, one for each game site, then create a firewall rule with the FQDN groups as the destination and point the firewall at your second link.

    You could, but not sure if the effort taken is worth it limit access to just the ports for each game.

    Now you can do rule per game which makes port management easier or you can create one rule, difficult to manage.

    Ian

    XG115W - v20.0.2 MR-2 - Home

    XG on VM 8 - v21 EAP

    If a post solves your question please use the 'Verify Answer' button.

Reply
  • Hi,

    from my reading of your issue, you would need to create series of FQDN groups, one for each game site, then create a firewall rule with the FQDN groups as the destination and point the firewall at your second link.

    You could, but not sure if the effort taken is worth it limit access to just the ports for each game.

    Now you can do rule per game which makes port management easier or you can create one rule, difficult to manage.

    Ian

    XG115W - v20.0.2 MR-2 - Home

    XG on VM 8 - v21 EAP

    If a post solves your question please use the 'Verify Answer' button.

Children
  • yes I have a separate rule based on port for games. however, the need for a FQDN host was born. For example, creating a FQDN host for League of Legends was easy for me. and worked. but couldn't make PUBG Mobile game for PC. I opened the game and looked at the addresses through the log viewer. (this is the correct way for the log viewer?) I see the addresses I have seen through the FQDN host and I have defined it to my rule. but the game is connected on ip address based systems and these ip addresses can be different.

    eating the fallen is law in wolfness.

    I’ll be for forty years a slave of the one who teaches me even only one letter.