E-Safety - Quic Browser Option

Luni, Ianuarie 24, 2022

We are seeing an increase in E-Safety concerns where pupils and staff are able to access content that they shouldn't.

The root cause of many cases is the use of QUIC in the browser. QUIC uses UDP port 80 and 443, these can be blocked at the firewall level if requested but other programs do also use these.

Please be sure to block QUIC for all user browsers. The best practice is to use GPO to disable in the browser.

How to check if you have QUIC

Depending on the configuration of your browser and firewall, you may be using QUIC without even knowing it. The simplest test to see if QUIC is enabled in your environment is to use the Developer Tools native in the Chrome browser. Click F12, Go to the Network tab, ensure you include the Protocol column, and then browse to any of the Google sites such as https://www.google.com

If you see items with the Protocol http/2+quic/39 then you are using QUIC

 

Disabling QUIC directly in the Google Chrome browser
 
Go to the chrome web browser and type “chrome://flags/” in the search line
 
Chrome-flags.png
 
Find the flag “Experimental QUIC protocol.” And change it from “Default” to “Disabled”
 
QUIC-disable.png
 

 

The browser must be closed completely to the changes take effect. Then you will be able to confirm the protocol TLS is being used for any HTTPS connection (even Google servers)

« înapoi