Hello everybody.
I received a request from a customer to configure a rule in the gateway policy to block downloads of files larger than 500 MB.
I enabled https inspection to the gateway can do full inspection on the HTTPS protocol and I enabled the content Awareness blade so I can create the rules.
Import the https inspection certificate to the client machine and see the inspection being done.
I created the rule in my policy with the source being an AD group, the destination INTERNET and in the "Content" column I put it to consider any direction. I also added the "Large Archive", "Large Archive" objects and a few others (the screenshot is attached).
I configured the "Large Archive" and "Large Archive" objects to identify files larger than 500 GB in the properties. I even put a smaller size (for example 1MB, 10MB) to test too.
When the client starts downloading the file (for example, a 1 GB ISO) I see that the traffic does not match the rule I created.
So I have two questions: Can I meet the customer's requirements at the gateway? If so, what else needs to be done?
The customer has a centrally managed enterprise gateway cluster in version R81.10 take 95.