Using Cisco Firepower to block TikTok

The media was buzzing with word that the US Army has banned the use of the video sharing app TikTok over security concerns. https://www.military.com/daily-news/2019/12/30/army-follows-pentagon-guidance-bans-chinese-owned-tiktok-app.html

A quick check of the Cisco Firepower Application Detector Reference (aka VDB) database shows that the system can natively detect the application, so blocking it is straightforward.

https://www.cisco.com/c/en/us/td/docs/security/firepower/Application_Detectors/vdb_328/cisco_firepower_application_detector_reference_328/applications_t.html#wp1860844337

Blocking TikTok with Cisco Firepower using the Firepower Device Manager (FDM)

  1. Create or Modify an Access Rule with a “Block” action
access rule

2. On the Application tab, enter “TickTok” in the search field, and select it.

ProTip: While you’re here add any other applications you’d like to block.

application

3. Enable connection logging

action

4. Sip Tea.

Categories: SecOps

Tagged as:

Leave a Reply

Fill in your details below or click an icon to log in:

WordPress.com Logo

You are commenting using your WordPress.com account. Log Out /  Change )

Google photo

You are commenting using your Google account. Log Out /  Change )

Twitter picture

You are commenting using your Twitter account. Log Out /  Change )

Facebook photo

You are commenting using your Facebook account. Log Out /  Change )

Connecting to %s