Sophos UTM: Decommissioning of obsolete URL categorization services CFFS. Click here for important info.

Rule and Policies Order Best Practice

Hello Friends,

I just using Sophos Firewall XG310 SFOS 19.5.3 MR-3. All I know that order/sort of Rule and Policies position is affect to how Firewall Treatment on traffic flow.

Kindly need advice, if I have a set of rule as below pict, what is the best practice to order those rule from top to bottom.

Note: Traffic to Internal Group is a set of Web Server Protection Rule from WAN to DMZ.

Thanks and Regards,

Fandi



Edited TAGs
[edited by: Erick Jan at 8:18 AM (GMT -7) on 19 Sep 2023]
Parents Reply
  • Hi,

    there are no specific policy or rule order that you can apply because each site has different requirements.

    My method

    1/. all block rules to the top of the rule list

    2/. high priority traffic next eg VoIP

    3/. High usage rules so that the rule search process does not take much cpu and does not delay the user access

    4/. remainder of traffic based on the number of policies and users.

    I hope this gives you somewhere to start.

    Ian

    XG115W - v20 EAP 1 - Home

    If a post solves your question please use the 'Verify Answer' button.

Children