- Products
- Learn
- Local User Groups
- Partners
- More
Scaling Check Point Automation with Arodonata
7 October @ 5pm CET / 11am EDT
What's New in Check Point SASE
The State of Ransomware Q2 2026:
This Quarter's Trends, and Their Impact on Your Defenses
AI Security Masters
Implementing the AI Security Trifecta
CheckMates Go:
Half is Not Enough
I don't know that being able to open its page on the chrome web store is a valid test.
yes, i am able to add chrome extension and able to use facebook which we blocked.
Traffic is allowed towards the chrome store not the ultrasurf website. If you want to manage web browser extensions it should be done on GPO level (AD). Or block the chrome store, but then you block all extensions
If user installs extension does this extension work? If so, do you run HTTPS inspection? Or you have categorize https websites enabled?
hi,
Ultrasurf is vpn proxy which used to bypass the firewall to use block website, so when we add ultrasurf on ext it will allow you to access all blocked content.
Go through below link
Solved: Best Practices Against Ultrasurf - Check Point CheckMates
hi,
Ultrasurf is vpn proxy which used to bypass the firewall to use block website, so when we add ultrasurf on ext it will allow you to access all blocked content.
Go through below link
Solved: Best Practices Against Ultrasurf - Check Point CheckMates
hi,
Ultrasurf is vpn proxy which used to bypass the firewall to use block website, so when we add ultrasurf on ext it will allow you to access all blocked content.
Go through below link
Solved: Best Practices Against Ultrasurf - Check Point CheckMates
we are doing setup for University where students will BYOD and we don't have control over them, so need to block what possibility we found .
we are doing setup for University where students will BYOD and we don't have control over them, so need to block what possibility we found .
What was already suggested is probably your best bet.
Andy
What was already suggested is probably your best bet.
Andy
So no https inspection. That will be a pain. Is categorize https websites enabled in Smart Console?
So no https inspection. That will be a pain. Is categorize https websites enabled in Smart Console?
Were you able to fix it?
Were you able to fix it?
What @Lesley said is 100% correct. I will test this in my lab tomorrow, since I have ssl inspection enabled, but I doubt it will be any different.
Andy
What @Lesley said is 100% correct. I will test this in my lab tomorrow, since I have ssl inspection enabled, but I doubt it will be any different.
Andy
Allowing users to install random browser extensions is considered poor practice.
Having said that, to fully block Ultrasurf, you need to make sure you have a strict outbound policy (only specific web ports allowed) and use HTTPS Inspection + App Control.
Ultrasurf is also known to be very evasive and we’ve had to adjust the signature for it in the past.
Allowing users to install random browser extensions is considered poor practice.
Having said that, to fully block Ultrasurf, you need to make sure you have a strict outbound policy (only specific web ports allowed) and use HTTPS Inspection + App Control.
Ultrasurf is also known to be very evasive and we’ve had to adjust the signature for it in the past.