- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
Non-TCP Web Traffic
Hi
I have one of our clients using the wireless network with a high consumption of data. It has categorised this as Non-TCP Web Traffic, is there anyway I can find out what this is?
Solved! Go to solution.
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
have you considered asking them what they are doing?
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
If hostname visibility is enabled then you can usually figure it out based on where the traffic is going to.
https://documentation.meraki.com/MR/Monitoring_and_Reporting/Hostname_Visibility
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
Hi,
Thanks for the reply. I have enabled this & it looks like they are using some proxy server to access various. Can I just block non-tcp web traffic?
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
You can make a group policy with some L3/L7 firewall rules & shaping and attach it to the specific client.
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
I have created policy for this person & attached the below firewall rule to allow ports 80 & 443 only. Will this work?
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
a deny any would be your last rule not the first.
port 443 also would be on tcp.
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
Thank you, so the below is correct - Just got to bare with me, new to creating rules
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
adding a deny any is very restictive since the client probably also need to reach services like dns dhcp ntp
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
The issue I have is that I have blocked all P2P & they seem to be using different ports to get to WEB, I presume to stream some video via a proxy connection.
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
have you considered asking them what they are doing?
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
LOL! im sure they'll come back with "oh, nothing it must be something in my computer"
