Support Forum
The Forums are a place to find answers on a range of Fortinet products from peers and product experts.
nbctcp
New Contributor III

Blocking "Internet Download Manager"

HW INFO:

-FGT 80cm

-OS 5.4.1

 

The latest discussion about this is 2009.

How to block Internet Download Manager (IDM), using FTP HTTP or HTTPS protocol

After doing some test, these Firewall can't block IDM

Cyberoam, FortiGate, PaloAlto, SonicWall

 

These FW can block IDM

CheckPoint, Sangfor

 

Hope Fortigate can block IDM which unsolvable since 2009

If someone can block IDM. let me know your settings

 

UPDATE:

1. 

http://goo.gl/lhQjmUhttp://nbctcp.wordpress.com
2 REPLIES 2
hmtay_FTNT
Staff
Staff

Hello nbctcp,

 

IDM does not have a set or protocol they use. All it does is split the download into multiple chunk sizes with the HTTP header "Range: bytes=". We cover these headers with the Application Control signatures "HTTP.Segmented.Download" and "HTTP.Download.Accelerator". If you download via HTTPS, please enable SSL deep inspection in FortiOS 5.0 and above.

 

In addition, you will need to add the following custom application control signature for FTP segmented downloading.

 

F-SBID( --protocol tcp; --flow from_client; --service FTP; --pattern "REST|20|"; --context packet; --within 5,context; --no_case; --app_cat 15; --weight 20; )

 

Please let me know if the above instructions do not work.

CreativeQuery123
New Contributor

Hi Team,

 

Are you able to block the Internet download manager with application specific signature ? 

 

If so what is the procedure. 

 

As it does not uses any protocol or unique headers. 

 

Suggestions appreciated. 

 

Thanks 

 

Labels
Top Kudoed Authors