we had setup "Web Filtering" on our SG210 and are using the "Proxy Auto Configuration".
For testing i browse to a forbidden website.
Firefox and Edge are blocking the content correctly.
But Chrome does not.
Proxy settings are rolled out via GPO.
As far as i can see, all is set up correctly. Windows Internet Options are pointing to the correct wpad.dat. The wpad.dat code seems correct since Firefox and Edge are blocked.
I found the following in the discussions. But i can't find such an option on our SG210.
Web filtering not working with chrome
Do you have any clues?
Hi,Chrome browsers are also filtered in my environments like other browsers.But Google implements some "privacy optimizations". (like Apple his privacy proxy)Here the DNS requests or the complete web requests use a tunnel (VPN) .So your firewall can't see anything.Here, the “quick protocol” is usually used.You can try blocking “quick protocol” within your rules..... but maybe there is something new ... from the "security sheriff google"
Systema Gesellschaft für angewandte Datentechnik mbH // Sophos Platinum PartnerSophos Solution Partner since 2003 If a post solves your question, click the 'Verify Answer' link at this post.
Thanks for your help. I blocked QUCIK by blocking UDP 443 and 80 via firewall rule. But the problem still exists.
So sadly this wasn't (the only) solution.
did you try to set the client's proxy settings manually? Just for testing purposes...
Mit freundlichem Gruß, best regards from Germany,
New Vision GmbH, GermanySophos Silver-Partner
If a post solves your question please use the 'Verify Answer' button.
Hello Philipp, thanks for your answer. Yes i already tried that. Is there any possibility to check whether chrome is indeed using the proxy? The "Web Filtering" live log doesn't show any traffic caused by chrome.
what's the mode you are using with your webfilter?
There are three modes available: standard, transparent and full-transparent. The latter is only usable in bridged mode and I assume that you don't use a bridge, do you?
So the only relevant modes are standard and transparent.
It is standard mode.
Did you change the standard proxy port?
Proxy port is 8080.
Show us a screencap of 'Misc Settings' on the 'Misc' tab of 'Filtering Options'. Note #2 in Rulz.
Cheers - Bob
Hello Bob, thanks for your answer.
Here is the screenshot.
Regarding to Rule #2 i can't see how the traffic of the chrome browser could be allowed by one of the points before 7. But i will have a closer look, thanks for the hint.