Kaspersky IoT Secure Gateway 1000

Filtering application protocol traffic

April 12, 2024

ID 252547

You can set up application protocol traffic filtering in the web interface of Kaspersky IoT Secure Gateway 1000. Filtering allows blocking or unblocking FTP, HTTP, MQTT, Modbus, SMTP, IMAP, and POP3 traffic.

For the MQTT protocol only version 3.1.1 filtering is supported. For SMTP protocol only basic SMTP filtering is supported. Extended SMTP protocol filtering is not supported.

To configure application protocol traffic filtering:

  1. In the menu on the left side of the screen, select the NetworkFiltering section.
  2. Configure traffic filtering for application protocols as follows:
    • Select the check box next to the protocols for which you want to block traffic.
    • Clear the check box next to the protocols for which you want to allow traffic.

    By default, traffic is allowed for all application protocols.

  3. Click the Save button.

Kaspersky IoT Secure Gateway 1000 blocks all traffic for selected application protocols except for service traffic and allows traffic for the application protocols for which you cleared the check box.

When receiving a traffic packet that contains signs of a blocked application protocol, Kaspersky IoT Secure Gateway 1000 terminates the connection through which this traffic was exchanged. Several packets required to establish a connection may pass through Kaspersky IoT Secure Gateway 1000 after the traffic is detected, but then the connection will be terminated.

Did you find this article helpful?
What can we do better?
Thank you for your feedback! You're helping us improve.
Thank you for your feedback! You're helping us improve.