Hi I guess there are two levels to solve:
- You need block direct access to internet on LAN FW - so only MWG proxy can serve pages + some exception for servers, No end user PCs.
- Use Application control to identify applications connecting to MWG.
I cannot seem to get this to work. I am using version 184.108.40.206, and I have made this exact rule. However when I run the ultrasurf application it stops at the ssl scanner at "Content inspection".
There is never any application checking or blocking happening.
I have to mention the BROWSEC extension which is in chrome browser and it is passing proxy too.