This discussion has been locked.
You can no longer post new replies to this discussion. If you have a question you can start a new discussion

Solution found for Netflix streaming on mobile with web filtering enabled

I know other admins have been looking for a solution to allow streaming Netflix content without whitelisting a device. Another user posted a solution in the XG Group that worked for me with UTM9

https://community.sophos.com/products/xg-firewall/f/129/t/74689

The same logic could probably be used for other streaming services as well. 



This thread was automatically locked due to age.
Parents
  • I've implemented all the exclusions on this post; still no go for me :(

    The http proxy seem to break the stream even with the exclusions in place.. The only work around that works is to add the hosts/networks in "Skip transparent mode" but that remove all the benefits of the UTM for thoses hosts; which is a pretty bad option. Or disabling Web Protection completly.

    I've looked at all the logs; there is nothing wrong in the firewall logs and the Web Protection log show that the exclusions are indeed being applied...

    2017:07:21-21:43:49 plasmashield httpproxy[27766]: id="0001" severity="info" sys="SecureWeb" sub="http" name="http access" action="pass" method="GET" srcip="10.100.5.141" dstip="23.246.6.148" user="" group="" ad_domain="" statuscode="206" cached="0" profile="REF_HttProContaInterNetwo (Roaming Devices)" filteraction="REF_HttCffBlockBadNoAv (Default content filter action (no AV))" size="185446" request="0x2cc54c00" url="23.246.6.148/ referer="" error="" authtime="0" dnstime="0" cattime="0" avscantime="0" fullreqtime="7987490" device="0" auth="0" ua="" exceptions="av,auth,content,url,ssl,certcheck,certdate,mime,cache,fileextension,size,patience"

     

    Any ideas what else I can do? It seem that the exception are not enough...  Seems like something Sophos could get resolved in the http proxy...

     

    Thanks

Reply
  • I've implemented all the exclusions on this post; still no go for me :(

    The http proxy seem to break the stream even with the exclusions in place.. The only work around that works is to add the hosts/networks in "Skip transparent mode" but that remove all the benefits of the UTM for thoses hosts; which is a pretty bad option. Or disabling Web Protection completly.

    I've looked at all the logs; there is nothing wrong in the firewall logs and the Web Protection log show that the exclusions are indeed being applied...

    2017:07:21-21:43:49 plasmashield httpproxy[27766]: id="0001" severity="info" sys="SecureWeb" sub="http" name="http access" action="pass" method="GET" srcip="10.100.5.141" dstip="23.246.6.148" user="" group="" ad_domain="" statuscode="206" cached="0" profile="REF_HttProContaInterNetwo (Roaming Devices)" filteraction="REF_HttCffBlockBadNoAv (Default content filter action (no AV))" size="185446" request="0x2cc54c00" url="23.246.6.148/ referer="" error="" authtime="0" dnstime="0" cattime="0" avscantime="0" fullreqtime="7987490" device="0" auth="0" ua="" exceptions="av,auth,content,url,ssl,certcheck,certdate,mime,cache,fileextension,size,patience"

     

    Any ideas what else I can do? It seem that the exception are not enough...  Seems like something Sophos could get resolved in the http proxy...

     

    Thanks

Children
No Data