Forum Discussion

hardi_ameen's avatar
Jul 24, 2015

iRule to Prevent any VPN through a specific Web Service

Hello Experts,

 

recently I deployed a Web service, and now I want to disallow any kind of VPN connections to cross through this service from the clients to Internet. my question is; can we prevent VPN traffic through this service by deploying an iRule?

 

Best regards,

 

6 Replies

  • It would depend on the type of VPN. You can generally look for specific VPN ports and even potentially IPsec-type exchanges, but an SSL VPN is just SSL.

     

  • thanks alot for the prompt reply, I have two more questions: 1-can I block all kind of VPNs along with different service ports in one iRule? 2- how can I get the correct iRule?

     

    BR,

     

  • I probably should have asked for more details earlier, but when you say "web service", what do you mean exactly?

     

  • the subscribers can top up them account through web access from the mobile devices even they have 0 balance, the point here I want to restrict the connection its only to allow https traffic.

     

  • Sort of understand, but my question is, how are are subscribers initiating VPN connections through a web service? What are you calling a web service? Are the subscribers internal users and this is a forward proxy?

     

  • Kevin there is a suspicious application initiating VPN connection by (DNS Spoofing and URL Spoofing, they will connecting another servers some where else and they can do browsing even with 0 balance.