Important note about SSL VPN compatibility for 20.0 MR1 with EoL SFOS versions and UTM9 OS. Learn more in the release notes.

This discussion has been locked.
You can no longer post new replies to this discussion. If you have a question you can start a new discussion

Grey Rule

Hello!

After v18 Upgrade I'm having a grey rule.

 

Someone have the same issue?

I can't do anything...

 



This thread was automatically locked due to age.
Parents
  • Hi  

    8) What is the new disabled “Drop ALL” rule at the bottom of the firewall rule table?

    The default drop rule provides a visual indication to user/admin that if none of the firewall rules gets a match, traffic will be dropped.

    You reported about two specific challenges that admin faces in v17.x.

    1. New admins are confused about the default behavior on the firewall rule table – that is the behavior when no rule matches. The new disabled Drop ALL non-editable rule is a step to resolve this.
    2. Log viewer should show traffic being dropped by the default-drop behavior of the firewall rule table – this is planned to be released post v18.

    Currently, the logs that you see with firewall rule id ‘0’ are NOT for the traffic dropped by Drop ALL rule. In later EAP releases, we would replace them with “N/A” as those are for the traffic dropped before the firewall rule matches – for example – invalid traffic. And actual logs for traffic dropped by Drop ALL default behavior will be available in the release post v18. Meanwhile – as a workaround, one can add a drop rule at the bottom to log the dropped traffic not matched by any other firewall rule.

    For more info - https://community.sophos.com/products/xg-firewall/f/recommended-reads/116102/understanding-new-decoupled-nat-and-firewall-changes-in-v18

    Regards,

    Keyur
    Community Support Engineer | Sophos Support
    Sophos Support VideosKnowledge Base  |  @SophosSupport | Sign up for SMS Alerts |
    If a post solves your question use the 'This helped me' link

  • So,

    this rule 0 is a new rule from v18?

    Because on v17 I had my drop all roule.

    Now I'm having 2 drop all rules... 1 by me and the other one from v18?

     So I can remove my rule now?

     

    Thank you so much! 
    i thought was a my duplicate rule.

Reply
  • So,

    this rule 0 is a new rule from v18?

    Because on v17 I had my drop all roule.

    Now I'm having 2 drop all rules... 1 by me and the other one from v18?

     So I can remove my rule now?

     

    Thank you so much! 
    i thought was a my duplicate rule.

Children