Important note about SSL VPN compatibility for 20.0 MR1 with EoL SFOS versions and UTM9 OS. Learn more in the release notes.

This discussion has been locked.
You can no longer post new replies to this discussion. If you have a question you can start a new discussion

XG210 VLAN proxy bypass

We are setting up a new VLAN for handheld scanners, We require for staging and Sophos Mobile Management that the handheld scanners also have a connection to a FQDN Group of Google and Sophos websites.

When I set this up I see the scanner trying to connect to the XG lan port on 3128. The scanners don't have a proxy setting. So I assume all the HTTPS traffic from this VLAN is directed to the Proxy server. The VLAN firewall doesn't have any security feautures enabled. I also see 443 traffic to IP adresses dropped that are in the FQDN group.   

Even when I replace the Zone from LAN to the VLAN Zone without Web Proxy enabled, I still see traffic to the XG port on 3128. 

Is there a way to bypass the proxy for a specific VLAN?

TIA,

Fred



This thread was automatically locked due to age.
Parents
  • Hi Fred,

    There are a lot of auto-proxy-discovery mechanisms.
    DNS/DHCP/HTTP/scripts/WPAD/... these can leak proxy information

    Transparent proxy can be bypassed, but if a device/application explicitly send the traffic to a proxy ....


    Dirk

    Systema Gesellschaft für angewandte Datentechnik mbH  // Sophos Platinum Partner
    Sophos Solution Partner since 2003
    If a post solves your question, click the 'Verify Answer' link at this post.

Reply
  • Hi Fred,

    There are a lot of auto-proxy-discovery mechanisms.
    DNS/DHCP/HTTP/scripts/WPAD/... these can leak proxy information

    Transparent proxy can be bypassed, but if a device/application explicitly send the traffic to a proxy ....


    Dirk

    Systema Gesellschaft für angewandte Datentechnik mbH  // Sophos Platinum Partner
    Sophos Solution Partner since 2003
    If a post solves your question, click the 'Verify Answer' link at this post.

Children
No Data