Disclaimer: This information is provided as-is for the benefit of the Community. Please contact Sophos Professional Services if you require assistance with your specific environment.
______________________________________________________________________________________________________________________________________
Table of Contents
Applies to:
All Sophos Firewall (XGS, Virtual, Software, Azure, AWS) Firmware v18.0+
Configuration:
Sophos Firewall > Admin UI > Protect: Rules and Policies >
Steps:
- As shown above in "Where do I configure this?" you will log into your Firewall via HTTPS//172.16.16.16:4444 or via MGMT interface
- In the left menu, select "Protect: Rules and Policies", then Add Firewall Rule.
- Within the Add Firewall Window you will see the following. Open the drop-down menu on "Rule Group":
- Click Add to add a new Rule group that will put any and all firewall rules we have to create now and in the future automatically into a "LAN-to-WAN" Rule Group.
- Give your new "Rule Group" an appropriate name based on the targeted Firewall Rules. In this example, i have named this one "LAN-to-WAN" and described other admins and myself when reviewing this later on.
- Continuing down the window, we will now specify our Group Matching Criteria
- After creating this rule, you will return to the previous firewall creation menu and notice that you have a Rule Group selection of "LAN-to-WAN."
- From here on out, whenever you create a firewall rule that has this matching criteria, you can leave Rule Group selection as "Automatic" and it will place the rule into the appropriate Rule Groups.
- Rule Groups are often seen to be effective:
- LAN-to-WAN (Group Internet Traffic Rules)
- LAN-to-LAN
- LAN-to-DMZ
- DMZ-to-LAN
- LAN-to-VPN
- VPN-to-LAN
- WAN-to-LAN
- You can also refer to this Documentation for creating Firewall Rules
______________________________________________________________________________________________________________________________________
Added horizontal line at the end of RR, Added table of Contents, edited grammar
[edited by: Raphael Alganes at 3:30 PM (GMT -8) on 24 Nov 2023]