Important note about SSL VPN compatibility for 20.0 MR1 with EoL SFOS versions and UTM9 OS. Learn more in the release notes.

This discussion has been locked.
You can no longer post new replies to this discussion. If you have a question you can start a new discussion

IPS Service - with no FW rules - Prevents Certain Sites from Loading

I'm running V19 in bridge mode.  Very basic setup, haven't really gotten far with it yet.

I've noticed that even though I have no firewall rules with IPS enabled, certain sites - like this one(!) time out unless I stop the IPS system service under "system services -> services" - And I'm not seeing any errors in /log/ips.log.  When I disable that system service, the problem stops.

Here are my firewall rules:

(Note I disabled the default NAT rule because this is an internal bridged setup, no NAT needed).



This thread was automatically locked due to age.
Parents
  • The affected sites seem to be internal to my network - I have multiple subnets.  It seems to happen when the connection is TLS-encrypted - whether it's websites or other TLS-encrypted connections - but this happens without the proxy or decryption.

    What's interesting is that I can *open a connection* to the affected resources, e.g. using telnet.

Reply
  • The affected sites seem to be internal to my network - I have multiple subnets.  It seems to happen when the connection is TLS-encrypted - whether it's websites or other TLS-encrypted connections - but this happens without the proxy or decryption.

    What's interesting is that I can *open a connection* to the affected resources, e.g. using telnet.

Children