Hi guys!

I’m trying to block the “globoplay”, but I’m not having success on pfsense 2.4.3-p1. Follows the custom rule in:

Snort Interfaces -> LAN Rules -> Category Selection: custom.rules

alert tcp $HOME_NET any -> $EXTERNAL_NET any (msg:“globoplay”;flow:from_client;appid:globoplay; sid:1000055 ; classtype:misc-activity; rev:1;)

I tried “drop” but it did not work!

Any idea?


tks



--
************************************
César Fabre, MSc
NETI-HCFMUSP | CIS
Telefone: (11) 2661-6018