This discussion has been locked.
You can no longer post new replies to this discussion. If you have a question you can start a new discussion

Error 404

I can access the website via the public IP address and I get to Errors 404.

 

However when I authenticate via the Firewall Portal,  and I can access the website, but I also get the following

1) I get certificate errors

2) It is unable to load up the graphics and I get error 404

 

Any ideas

 

Kieran



This thread was automatically locked due to age.
  • which website do you mean?


    Dirk

    Systema Gesellschaft für angewandte Datentechnik mbH  // Sophos Platinum Partner
    Sophos Solution Partner since 2003
    If a post solves your question, click the 'Verify Answer' link at this post.

  • Hi Kieran and welcome to the UTM Community!

    Please copy a line here from the Web Filtering log where you get the 404 error.

    Cheers - Bob

     
    Sophos UTM Community Moderator
    Sophos Certified Architect - UTM
    Sophos Certified Engineer - XG
    Gold Solution Partner since 2005
    MediaSoft, Inc. USA
  • Bob

     

    Is this what you need

     

    19-03-15 18:04:26Firewall
    • messageid="00001"
    • log_type="Firewall"
    • log_component="Firewall Rule"
    • log_subtype="Allowed"
    • status="Allow"
    • con_duration="33"
    • fw_rule_id="23"
    • policy_type="1"
    • user="kieran.oconnor.sg@rnsh.ventia"
    • user_group="Star Group Support"
    • web_policy_id="4"
    • ips_policy_id="1"
    • appfilter_policy_id="3"
    • app_name=""
    • app_risk="0"
    • app_technology=""
    • app_category=""
    • in_interface="tun0"
    • out_interface="Port6"
    • src_mac="00: 0:00: 0:00: 0"
    • src_ip="10.81.234.7"
    • src_country="R1"
    • dst_ip="10.25.67.106"
    • dst_country="R1"
    • protocol="ICMP"
    • icmp_type="8"
    • icmp_code="0"
    • packets_sent="8"
    • packets_received="8"
    • bytes_sent="480"
    • bytes_received="480"
    • src_trans_ip=""
    • src_trans_port="0"
    • dst_trans_ip=""
    • dst_trans_port="0"
    • src_zone_type="VPN"
    • src_zone="VPN"
    • dst_zone_type="LAN"
    • dst_zone="DOUST_BMCS"
    • con_direction=""
    • con_event="Stop"
    • con_id="558300472"
    • virt_con_id=""
    • hb_status="No Heartbeat"
    • message=""
    • appresolvedby="Signature"
    • app_is_cloud="0"
  • Bob

     

    Here is a line from the web log. the previous was from the firewall log

     

    • messageid="16001"
    • log_type="Content Filtering"
    • log_component="HTTP"
    • log_subtype="Allowed"
    • status=""
    • fw_rule_id="23"
    • user="kieran.oconnor.sg@rnsh.ventia"
    • user_group="Star Group Support"
    • web_policy_id="4"
    • web_policy=""
    • category="IPAddress"
    • category_type="Acceptable"
    • url="http://10.25.67.106/deltaweb/Graphics/10%20-%20Level%205/01%20-%20Floor%20Plans/01%20-%20Floor_images/L1Floor.jpg"
    • content_type="image/jpeg"
    • override_token=""
    • response_code=""
    • src_ip="10.81.234.7"
    • dst_ip="10.25.67.106"
    • protocol="TCP"
    • src_port="59456"
    • dst_port="80"
    • bytes_sent="1899"
    • bytes_received="230229"
    • domain="10.25.67.106"
    • exception=""
    • activity_name=""
    • reason="not eligible"
    • user_agent="Mozilla/5.0 (iPhone; CPU iPhone OS 12_1_4 like Mac OS X) AppleWebKit/605.1.15 (KHTML, like Gecko) Version/12.0 Mobile/15E148 Safari/604.1"
    • status_code="200"
    • transaction_id=""
    • referer="http://10.25.67.106/deltaweb/Graphics/10%20-%20Level%205/01%20-%20Floor%20Plans/01%20-%20Floor.svg"
    • download_file_name=""
    • download_file_type=""
    • upload_file_name=""
    • upload_file_type=""
    • con_id="3710680376"
    • app_name=""
    • app_is_cloud="0"
    • override_name=""
    • override_authorizer=""
  • The website is an internal website on a building management platform

  • seems you try 2 options:

    Publish via DNAT - don't work .. right?

    Using WAF with authentication - problems with pictures

    unfortunately your log show a 200 status code. Seems this one picture can be loaded ...

    Looks like you have a lot of spaces (%20) within your path ... possible there are problems loading data from encoded path

    - try to capture a 404 message

    - try to open the contained url internally ... you are able to open the picture from within your LAN?

     


    Dirk

    Systema Gesellschaft für angewandte Datentechnik mbH  // Sophos Platinum Partner
    Sophos Solution Partner since 2003
    If a post solves your question, click the 'Verify Answer' link at this post.

  • Those don't look like messages from a UTM Web Filtering log, Kieran - are you using something other than a Sophos UTM?

    Cheers - Bob

     
    Sophos UTM Community Moderator
    Sophos Certified Architect - UTM
    Sophos Certified Engineer - XG
    Gold Solution Partner since 2005
    MediaSoft, Inc. USA