Important note about SSL VPN compatibility for 20.0 MR1 with EoL SFOS versions and UTM9 OS. Learn more in the release notes.

This discussion has been locked.
You can no longer post new replies to this discussion. If you have a question you can start a new discussion

How to Deny Direct IP access from browser ?

Hi,

I need advice how to Deny Direct IP access from browser. So, it only allow access by domain-name.

How it done through Sophos Firewall configuration rule?

I use Sophos XG 310, SFOS v20.0

Thanks



This thread was automatically locked due to age.
Parents
  • So in general - I think this is not possible in SFOS right now - Why do you need to do this? Because on a general level - IP and domain are the same access - Just the webservice afterall could deny the access. 
    Is there a compliance reason for blocking the web access? 

    Or are you speaking about a webserver behind SFOS? 
    Then you need a static hardening: 

    This will make sure, nobody enters other domains or URLs you dont have, like an IP.

    __________________________________________________________________________________________________________________

Reply
  • So in general - I think this is not possible in SFOS right now - Why do you need to do this? Because on a general level - IP and domain are the same access - Just the webservice afterall could deny the access. 
    Is there a compliance reason for blocking the web access? 

    Or are you speaking about a webserver behind SFOS? 
    Then you need a static hardening: 

    This will make sure, nobody enters other domains or URLs you dont have, like an IP.

    __________________________________________________________________________________________________________________

Children