hi all,
we have a xgs 4300 v20
i want to give a new ip/host the same rule sets as an existing ip/host
how can i do this please?
thanks,
rob
This thread was automatically locked due to age.
Important note about SSL VPN compatibility for 20.0 MR1 with EoL SFOS versions and UTM9 OS. Learn more in the release notes.
hi all,
we have a xgs 4300 v20
i want to give a new ip/host the same rule sets as an existing ip/host
how can i do this please?
thanks,
rob
Hi,
couple of options, really depends on how many rules you have?
1/. clone the rules
2/. export as an xml file and add the new device rules.
Ian
XG115W - v20.0.3 MR-3 - Home
XG on VM 8 - v21 GA
If a post solves your question please use the 'Verify Answer' button.
So you mean filter out the host/IP used in the number of firewall rules used ?
Thanks & Regards,
_______________________________________________________________
Vivek Jagad | Team Lead, Technical Support, Global Customer Experience
Log a Support Case | Sophos Service Guide
Best Practices – Support Case | Security Advisories
Compare Sophos next-gen Firewall | Fortune Favors the prepared
Sophos Community | Product Documentation | Sophos Techvids | SMS
If a post solves your question please use the 'Verify Answer' button.
Basically see what rules that ip is a member of
Hey Sophos User1175 , have you tried using the following filter?
Thanks & Regards,
_______________________________________________________________
Vivek Jagad | Team Lead, Technical Support, Global Customer Experience
Log a Support Case | Sophos Service Guide
Best Practices – Support Case | Security Advisories
Compare Sophos next-gen Firewall | Fortune Favors the prepared
Sophos Community | Product Documentation | Sophos Techvids | SMS
If a post solves your question please use the 'Verify Answer' button.
Hi Vivek,
is there a KBA on the use of this search function. I have tried to use it and not returned any meaningful results. The source networks only allows selection of external networks/FQDNs, unless the device you are searching for is in the FQDN list you cannot use IP addressing.
Ian
XG115W - v20.0.3 MR-3 - Home
XG on VM 8 - v21 GA
If a post solves your question please use the 'Verify Answer' button.
Nope, but this is introduced in v19.0 GA to enhance user experience, Object search: You can search for a network object or service for inclusion in rules and policies. It includes a free-text search option that allows you to search by label or value, enhancing the user experience.
Thanks & Regards,
_______________________________________________________________
Vivek Jagad | Team Lead, Technical Support, Global Customer Experience
Log a Support Case | Sophos Service Guide
Best Practices – Support Case | Security Advisories
Compare Sophos next-gen Firewall | Fortune Favors the prepared
Sophos Community | Product Documentation | Sophos Techvids | SMS
If a post solves your question please use the 'Verify Answer' button.
Hey rfcat_vk You can add the IP under the IP host first
Then you can add it to search filter:
Thanks & Regards,
_______________________________________________________________
Vivek Jagad | Team Lead, Technical Support, Global Customer Experience
Log a Support Case | Sophos Service Guide
Best Practices – Support Case | Security Advisories
Compare Sophos next-gen Firewall | Fortune Favors the prepared
Sophos Community | Product Documentation | Sophos Techvids | SMS
If a post solves your question please use the 'Verify Answer' button.
Hello,
if you go to "Hosts and services", then use the search box, while you are in "IP host", you will get a list as result. Then look at the column with "usage" as headline, there you click on that entry, if this is used at multiple places and/or rules, then you get a list where this object is being used.
This will look like this:
Mit freundlichem Gruß, best regards from Germany,
Philipp Rusch
New Vision GmbH, Germany
Sophos Silver-Partner
If a post solves your question please use the 'Verify Answer' button.
Thank you for the expanded answer, that is why I asked about the KBA.
There is one little trap if you have not created your devices in the hosts and services then you can't find where they appear.
There does not appear to be anyway to search for an IP address and which rules it appears in?
But, if you export the configuration as an XML file, then you can search.
Ian
XG115W - v20.0.3 MR-3 - Home
XG on VM 8 - v21 GA
If a post solves your question please use the 'Verify Answer' button.
Thank you for the expanded answer, that is why I asked about the KBA.
There is one little trap if you have not created your devices in the hosts and services then you can't find where they appear.
There does not appear to be anyway to search for an IP address and which rules it appears in?
But, if you export the configuration as an XML file, then you can search.
Ian
XG115W - v20.0.3 MR-3 - Home
XG on VM 8 - v21 GA
If a post solves your question please use the 'Verify Answer' button.
Indeed I understand will work with the KBA team to get it published for better understandability...
Thanks & Regards,
_______________________________________________________________
Vivek Jagad | Team Lead, Technical Support, Global Customer Experience
Log a Support Case | Sophos Service Guide
Best Practices – Support Case | Security Advisories
Compare Sophos next-gen Firewall | Fortune Favors the prepared
Sophos Community | Product Documentation | Sophos Techvids | SMS
If a post solves your question please use the 'Verify Answer' button.