<?xml version="1.0" encoding="UTF-8"?><rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:wfw="http://wellformedweb.org/CommentAPI/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
	xmlns:slash="http://purl.org/rss/1.0/modules/slash/"
	>

<channel>
	<title>Block QUIC protocol trên sophos XG &#8211; Thegioifirewall</title>
	<atom:link href="https://thegioifirewall.com/tag/block-quic-protocol-tren-sophos-xg/feed/" rel="self" type="application/rss+xml" />
	<link>https://thegioifirewall.com</link>
	<description>Tường lửa bảo vệ doanh nghiệp, trung tâm thông tin và giá cả</description>
	<lastBuildDate>Wed, 05 May 2021 08:56:10 +0000</lastBuildDate>
	<language>vi</language>
	<sy:updatePeriod>
	hourly	</sy:updatePeriod>
	<sy:updateFrequency>
	1	</sy:updateFrequency>
	<generator>https://wordpress.org/?v=7.0</generator>

<image>
	<url>https://thegioifirewall.com/wp-content/uploads/vacif_icon-150x150.png</url>
	<title>Block QUIC protocol trên sophos XG &#8211; Thegioifirewall</title>
	<link>https://thegioifirewall.com</link>
	<width>32</width>
	<height>32</height>
</image> 
	<item>
		<title>Sophos XG Firewall: Cách block giao thức QUIC của Google trên Sophos XG.</title>
		<link>https://thegioifirewall.com/sophos-xg-firewall-cach-block-giao-thuc-quic-cua-google-tren-sophos-xg/</link>
					<comments>https://thegioifirewall.com/sophos-xg-firewall-cach-block-giao-thuc-quic-cua-google-tren-sophos-xg/#respond</comments>
		
		<dc:creator><![CDATA[John]]></dc:creator>
		<pubDate>Wed, 05 May 2021 08:56:10 +0000</pubDate>
				<category><![CDATA[Hướng dẫn cấu hình Firewall Sophos XG]]></category>
		<category><![CDATA[Block QUIC protocol trên sophos XG]]></category>
		<category><![CDATA[QUIC]]></category>
		<guid isPermaLink="false">https://www.thegioifirewall.com/?p=9837</guid>

					<description><![CDATA[Overview QUIC (Quick UDP Internet Connection) là một giao thức mạng thử nghiệm do Google thiết kế để giảm độ trễ và tránh tình trạng tắc nghẽn mạng trên Google Chrome. Vì QUIC hoạt động trên UDP port 80 và 443, không qua TCP, nên khi nết nối qua QUIC, các tính năng bảo mật [&#8230;]]]></description>
										<content:encoded><![CDATA[
<p class="wp-block-paragraph"><strong>Overview</strong></p>



<p class="wp-block-paragraph">QUIC (Quick UDP Internet Connection) là một giao thức mạng thử nghiệm do Google thiết kế để giảm độ trễ và tránh tình trạng tắc nghẽn mạng trên Google Chrome. Vì QUIC hoạt động trên UDP port 80 và 443, không qua TCP, nên khi nết nối qua QUIC, các tính năng bảo mật của Sophos XG như Sophos Sandstorm, giải mã HTTPs, cũng như quét phần mềm độc hại và lọc nội dung có thể bị bypass và không hoạt động tốt trên Google Chrome. Blocking QUIC traffic sẽ khiến kết nối quay lại trên TCP và đảm bảo rằng tất cả lưu lượng truy cập web đều đi qua proxy và filtering không bị bỏ qua.</p>



<p class="wp-block-paragraph">Bài viết này sẽ hướng dẫn các cách block giao thức QUIC của Google ngăn ngừa các tính năng bảo mật, scanning, filtering của Sophos XG bị bypass khi sử dụng trình duyệt web Google Chrome.</p>



<p class="wp-block-paragraph"><strong>Hướng dẫn</strong></p>



<p class="wp-block-paragraph">Có bốn cách khác nhau để block giao thức QUIC bỏ qua các phương pháp quét thông thường của tường lửa.</p>



<p class="wp-block-paragraph"><strong>Cách 1:</strong> <strong>Disable QUIC với Application Control</strong>.</p>



<p class="wp-block-paragraph"><strong>Bước 1: Đi đến Protect > Application > Application Filter > Add.</strong></p>



<p class="wp-block-paragraph">Điền tên và Template là <strong>Allow All.</strong> Click<strong> Save</strong></p>



<div class="wp-block-image"><figure class="aligncenter size-large"><img fetchpriority="high" decoding="async" width="693" height="229" src="https://thegioifirewall.com/wp-content/uploads/image-2013.png" alt="" class="wp-image-9840" srcset="https://thegioifirewall.com/wp-content/uploads/image-2013.png 693w, https://thegioifirewall.com/wp-content/uploads/image-2013-300x99.png 300w" sizes="(max-width: 693px) 100vw, 693px" /></figure></div>



<p class="wp-block-paragraph"><strong>Bước 2: Edit Application Filter</strong></p>



<p class="wp-block-paragraph">Click icon bút chì để edit policy vừa tạo.</p>



<div class="wp-block-image"><figure class="aligncenter size-large"><img decoding="async" width="726" height="408" src="https://thegioifirewall.com/wp-content/uploads/image-2015.png" alt="" class="wp-image-9842" srcset="https://thegioifirewall.com/wp-content/uploads/image-2015.png 726w, https://thegioifirewall.com/wp-content/uploads/image-2015-300x169.png 300w" sizes="(max-width: 726px) 100vw, 726px" /></figure></div>



<p class="wp-block-paragraph">Click <strong>Add.</strong></p>



<p class="wp-block-paragraph">Click chọn <strong>Select Individual Application</strong>. Mục T<strong>echnology chọn Network Protocol.</strong></p>



<p class="wp-block-paragraph">Kéo xuống chọn <strong>QUIC</strong>. Action chọn <strong>Deny</strong></p>



<p class="wp-block-paragraph">Click <strong>Save.</strong></p>



<div class="wp-block-image"><figure class="aligncenter size-large"><img decoding="async" width="765" height="474" src="https://thegioifirewall.com/wp-content/uploads/image-2016.png" alt="" class="wp-image-9843" srcset="https://thegioifirewall.com/wp-content/uploads/image-2016.png 765w, https://thegioifirewall.com/wp-content/uploads/image-2016-300x186.png 300w" sizes="(max-width: 765px) 100vw, 765px" /></figure></div>



<p class="wp-block-paragraph"><strong>Bước 3: Tạo Firewall Rule</strong></p>



<p class="wp-block-paragraph">Đi đến P<strong>rotect > Rule and policies > Add firewall rule > New firewall rule</strong></p>



<p class="wp-block-paragraph">Điền Rule Name. Action chọn Drop. Rule Position chọn Top.</p>



<p class="wp-block-paragraph">Chọn Source Zone là LAN, Destination Zone là WAN.</p>



<div class="wp-block-image"><figure class="aligncenter size-large"><img loading="lazy" decoding="async" width="804" height="476" src="https://thegioifirewall.com/wp-content/uploads/image-2017.png" alt="" class="wp-image-9844" srcset="https://thegioifirewall.com/wp-content/uploads/image-2017.png 804w, https://thegioifirewall.com/wp-content/uploads/image-2017-300x178.png 300w, https://thegioifirewall.com/wp-content/uploads/image-2017-768x455.png 768w" sizes="auto, (max-width: 804px) 100vw, 804px" /></figure></div>



<p class="wp-block-paragraph">Kéo xuống phần <strong>Other Security features</strong> trong <strong>App control</strong> chọn <strong>Block QUIC</strong> đã tạo ở <strong>Application Filter</strong>. Click <strong>Save</strong>.</p>



<div class="wp-block-image"><figure class="aligncenter size-large"><img loading="lazy" decoding="async" width="565" height="445" src="https://thegioifirewall.com/wp-content/uploads/image-2018.png" alt="" class="wp-image-9845" srcset="https://thegioifirewall.com/wp-content/uploads/image-2018.png 565w, https://thegioifirewall.com/wp-content/uploads/image-2018-300x236.png 300w" sizes="auto, (max-width: 565px) 100vw, 565px" /></figure></div>



<p class="wp-block-paragraph"><strong>Cách 2: Web filtering</strong></p>



<p class="wp-block-paragraph">Kéo xuống mục <strong>Security feature</strong> khi tạo rule. Trong<strong> Web filtering</strong>.</p>



<p class="wp-block-paragraph">Click chọn <strong>Scan HTTP and decrypted HTTPS</strong> và click chọn <strong>Block QUIC protocol</strong>.</p>



<div class="wp-block-image"><figure class="aligncenter size-large"><img loading="lazy" decoding="async" width="842" height="282" src="https://thegioifirewall.com/wp-content/uploads/image-2020.png" alt="" class="wp-image-9847" srcset="https://thegioifirewall.com/wp-content/uploads/image-2020.png 842w, https://thegioifirewall.com/wp-content/uploads/image-2020-300x100.png 300w, https://thegioifirewall.com/wp-content/uploads/image-2020-768x257.png 768w" sizes="auto, (max-width: 842px) 100vw, 842px" /></figure></div>



<p class="wp-block-paragraph"><strong>Cách 3: Block giao thức QUIC Firewall Rule.</strong></p>



<p class="wp-block-paragraph">Đi đến P<strong>rotect &gt; Rule and policies &gt; Add firewall rule &gt; New firewall rule</strong></p>



<p class="wp-block-paragraph">Điền Rule Name. <strong>Action</strong> chọn <strong>Drop</strong>. Rule <strong>Position</strong> chọn <strong>Top</strong>.</p>



<p class="wp-block-paragraph">Chọn<strong> Source Zone </strong>là <strong>LAN</strong>, <strong>Destination Zone</strong> là <strong>WAN</strong>.</p>



<div class="wp-block-image"><figure class="aligncenter size-large"><img loading="lazy" decoding="async" width="766" height="440" src="https://thegioifirewall.com/wp-content/uploads/image-2021.png" alt="" class="wp-image-9848" srcset="https://thegioifirewall.com/wp-content/uploads/image-2021.png 766w, https://thegioifirewall.com/wp-content/uploads/image-2021-300x172.png 300w" sizes="auto, (max-width: 766px) 100vw, 766px" /></figure></div>



<p class="wp-block-paragraph">Trong mục <strong>Services > Add New Item > Create New > Services. </strong></p>



<p class="wp-block-paragraph">Điền tên. Click chọn <strong>TCP/UDP</strong>. <strong>Protocol </strong>chọn <strong>UDP</strong> và <strong>Destination Port</strong> điền port <strong>80 và 443</strong>. Click <strong>Save</strong>.</p>



<div class="wp-block-image"><figure class="aligncenter size-large"><img loading="lazy" decoding="async" width="689" height="332" src="https://thegioifirewall.com/wp-content/uploads/image-2022.png" alt="" class="wp-image-9849" srcset="https://thegioifirewall.com/wp-content/uploads/image-2022.png 689w, https://thegioifirewall.com/wp-content/uploads/image-2022-300x145.png 300w" sizes="auto, (max-width: 689px) 100vw, 689px" /></figure></div>



<p class="wp-block-paragraph"><strong>Cách 4: Disable QUIC trên Google Chrome.</strong></p>



<p class="wp-block-paragraph">Mở trình duyệt <strong>Google Chrome</strong>, điền địa chỉ <strong>chrome://flags/.</strong></p>



<p class="wp-block-paragraph">Search trên thanh tìm kiếm<strong> QUIC</strong>, tìm <strong>Experimental Quic Protocol</strong>, chọn <strong>Disable</strong></p>



<p class="wp-block-paragraph">Sau cùng click <strong>Relaunch</strong></p>



<div class="wp-block-image"><figure class="aligncenter size-large"><img loading="lazy" decoding="async" width="1024" height="520" src="https://thegioifirewall.com/wp-content/uploads/image-2023-1024x520.png" alt="" class="wp-image-9850" srcset="https://thegioifirewall.com/wp-content/uploads/image-2023-1024x520.png 1024w, https://thegioifirewall.com/wp-content/uploads/image-2023-300x152.png 300w, https://thegioifirewall.com/wp-content/uploads/image-2023-768x390.png 768w, https://thegioifirewall.com/wp-content/uploads/image-2023.png 1348w" sizes="auto, (max-width: 1024px) 100vw, 1024px" /></figure></div>
]]></content:encoded>
					
					<wfw:commentRss>https://thegioifirewall.com/sophos-xg-firewall-cach-block-giao-thuc-quic-cua-google-tren-sophos-xg/feed/</wfw:commentRss>
			<slash:comments>0</slash:comments>
		
		
			</item>
	</channel>
</rss>
