• Enhancing OT Network Security with a 2.5 DMZ

    Wkk kk
    Wkk kk
    In our OT network, we're considering adding a Level 2.5 DMZ to bolster security. This would serve as an additional layer of protection between the control systems (Level 2) and the enterprise network (Level 4). Specific Design: Level 2.5 DMZ: Host…
    • 1 month ago
    • UTM Firewall
    • Network Protection: Firewall, NAT, QoS, & IPS
  • Strange behaviour regarding printer search of Windows Server OS VMs behind Sophos UTM Firewall

    Bepo
    Bepo
    Hello Community, we use a Sophos UTM cluster consisting of two nodes running on Sophos UTM 9.718-5 This Cluster routes the traffic through specific vlans. We have strange behavior with windows server vms that are operated in vlans behind the sophos…
    • 7 months ago
    • UTM Firewall
    • Network Protection: Firewall, NAT, QoS, & IPS
  • how to defend against (D)DOS

    TobiasBundy
    TobiasBundy
    Hi everyone, this is not a technical issue but a desparate call for advise. Our Sophos UTM-firewall (firmware version: 9.816-2) is suffering from a (D)DOS-attack that is going on for several days now. Since our internet-connection only comprises of…
    • 8 months ago
    • UTM Firewall
    • Network Protection: Firewall, NAT, QoS, & IPS
  • How Do I Switch from one internet connection to another when it down?

    almrvc
    almrvc
    I have two internet connections from two different ISPs. Let one be called X and the other be called Y. X and Y are separately connected to a firewall. I use X actively. I want Y to be active when X loses internet connection. Then, when X internet connection…
    • 11 months ago
    • UTM Firewall
    • Network Protection: Firewall, NAT, QoS, & IPS
  • Sophos UTM, Network Protections, Rules -- Order does not count???

    V M Smith
    V M Smith
    Does the order of Sophos UTM "Network Protection" firewall rules matter at all?!?!?! On my sophos utm, the "Network Protection" firewall rules are as follows (summarizing) Top Rule = deny PrivateIP#1... any protocol... to any external ip (block…
    • 11 months ago
    • UTM Firewall
    • Network Protection: Firewall, NAT, QoS, & IPS
  • Using firewall rule XXXX -> ANY -> Internet causes YouTube connection speed to drop below usable rate on that device / network

    Neblex
    Neblex
    Hello Sophos Community, I noticed a strange phenomenon when I wanted to set up a guest network. Since this network has no access to other networks and should be able to browse the internet freely, I created a firewall rule as follows: Guest network -…
    • over 1 year ago
    • UTM Firewall
    • Network Protection: Firewall, NAT, QoS, & IPS
  • Advanced Tread Protection

    TomE
    TomE
    Hello, I have multiple messages in Advanced Tread Protection. 2023:06:22-03:43:37 xxx ulogd[13536]: id="2022" severity="info" sys="SecureNet" sub="packetfilter" name="Packet dropped (ATP)" action="drop" fwrule="63001" initf="eth0" threatname="C2/Generic…
    • Answered
    • over 1 year ago
    • UTM Firewall
    • Network Protection: Firewall, NAT, QoS, & IPS
  • Revisit: Microsoft Teams Calendar through WAF

    Daniel Thau
    Daniel Thau
    For all searching for this Problem with Teams not showing the calender app using hybrid szenario. Refering to this basic guide: Sophos UTM: Create WAF to allow traffic through Exchange 2016 using the MS Connection Tool: https://testconnectivity…
    • over 1 year ago
    • UTM Firewall
    • Network Protection: Firewall, NAT, QoS, & IPS
  • Block .zip TLD with UTM9

    ericbostrom
    ericbostrom
    What is the best way to block all traffic to .zip TLD via UTM9? Normally I would use web filter profile with regex, but that isn't working. I've already blocked via intune where applicable, but that doesn't cover all devices.
    • Answered
    • over 1 year ago
    • UTM Firewall
    • Network Protection: Firewall, NAT, QoS, & IPS
  • From outside i am able to access dydndns.org:8081 but from local lan i am unable to brows

    Monir Hosen
    Monir Hosen
    Hi, I am having issue with my dyndns.org:8081 to brows from inside of network. I have an Oracle Server and this server i can access from outside of network through dyndns.org:8081 but when i am in local Lan…
    • over 1 year ago
    • UTM Firewall
    • Network Protection: Firewall, NAT, QoS, & IPS
  • SG UTM on XCP-ng 7.6 Hypervisor dropping traffic

    Scott Noel-Hemming
    Scott Noel-Hemming
    Looking for suggestions on how to find the cause of tcp communication failures. I have some systems running "behind" a DomU SG UTM Firmware version: 9.714-4 on a XCP-ng 7.6 hypervisor with an AMD Opteron 6220 CPU. Everything works fine. Specifically…
    • over 1 year ago
    • UTM Firewall
    • Network Protection: Firewall, NAT, QoS, & IPS
  • how to Sophos firewall YouTube and Facebook access block specify users with static IP address

    Faizullah Mughal
    Faizullah Mughal
    YouTube and Facebook access block specify users with static IP address
    • over 1 year ago
    • UTM Firewall
    • Network Protection: Firewall, NAT, QoS, & IPS
  • [Solved] - User error - UTM not accepting a firewall rule (or... I'm an idiot) help please

    SalishSwede
    SalishSwede
    So this is basic I'm setting up a firewall rule to allow specific VPN traffic Here's the specific service definition Attempting to setup a VPN, I get this... Here are some of the same drops from the full firewall log Why is this traffic…
    • over 2 years ago
    • UTM Firewall
    • Network Protection: Firewall, NAT, QoS, & IPS
  • Access Internal website hosted in the windows server externally

    PJB
    PJB
    Hello, We have created a website that is hosted internally and can be accessible. But we want that website to be accessible on the internet without VPN. (I can access it with VPN) I created a DNAT rule to allow any traffic from outside to that server…
    • over 2 years ago
    • UTM Firewall
    • Network Protection: Firewall, NAT, QoS, & IPS
  • C2/Generic-A - UTM DNS attack

    ncor
    ncor
    Hello, For a few days we have been receiving disturbing mail notifications from our UTM sophos. I hope you can help me to identify and maybe solve the problem. For security reasons, I replaced the public IP of our Sophos UTM. The notification provides…
    • over 2 years ago
    • UTM Firewall
    • Network Protection: Firewall, NAT, QoS, & IPS
  • UTM Web Protection opening vlan seperation of the Firewal

    Rene Böhres
    Rene Böhres
    Hello everyone, a customer requires us to use the Web Protection of his UTM. He wants to block all sorts of traffic. The moment I activate the Web Protection all VLAN Network separation that is configured in the Firewall is basically gone and I can ping…
    • over 2 years ago
    • UTM Firewall
    • Network Protection: Firewall, NAT, QoS, & IPS
  • IPS stopped to work - file too short

    Daniel Huhardeaux
    Daniel Huhardeaux
    Hi, yesterday (sunday) at 3 am SNORT stopped to work with the result that internal nets couldn't reach Internet anymore. In the logs I found FATAL ERROR: Failed to load /usr/lib/snort/so_rules//file-java.so: /usr/lib/snort/so_rules//file-java.so:…
    • over 2 years ago
    • UTM Firewall
    • Network Protection: Firewall, NAT, QoS, & IPS
  • Sophos UTM Udemy Course

    Onur Kaya
    Onur Kaya
    I think what we all were thinking, finished my Sophos UTM Udemy course, thanks for all of your suppor without this community, it wouldn't be easy as much as it is now, I just wanna thank the Sophs Community for your support. If you wanna take a look…
    • over 2 years ago
    • UTM Firewall
    • Network Protection: Firewall, NAT, QoS, & IPS
  • UTM In & Out Traffic

    feroz syed
    feroz syed
    Hello, Today i found something weird on my UTM logs, the client downloaded some files from Internet and i see the the traffic it show opposite direction, the download content should appear as Inbound traffic but below screenshot show totally wrong.…
    • over 2 years ago
    • UTM Firewall
    • Network Protection: Firewall, NAT, QoS, & IPS
  • I Need Help Opening 2 Ports for one APP on a single workstation

    JP Ladner
    JP Ladner
    Newbie question. I am running Sophos Home UTM 9 software appliance on a server I built. I have an app running on a single workstation that needs to communicated in and out on ports 4000 and 4001. I set up the following rules but it doesn't seem to be…
    • over 2 years ago
    • UTM Firewall
    • Network Protection: Firewall, NAT, QoS, & IPS
  • New To The Community

    Tony Wittock
    Tony Wittock
    Hello, I am new to the community and am is looking forward to learning for others, especially about phishing. Thanks
    • over 2 years ago
    • UTM Firewall
    • Network Protection: Firewall, NAT, QoS, & IPS
  • Country blocking logging disabled - how to enable?

    Jay Jay
    Jay Jay
    UTM 9.707 I recall at some point the firewall log did record the blocked country connection attempts. It appears to not do so any more. cc set geoip log on Returns # cc set geoip log on 0 { 'Nattrs' => [ 'nodelist' ], 'attrs' => [], 'check' =…
    • over 3 years ago
    • UTM Firewall
    • Network Protection: Firewall, NAT, QoS, & IPS
  • External and internal NAT for different ports

    Matthias Roth1
    Matthias Roth1
    Hello guys, I am trying to create a DNAT rule for a server based in a DMZ network. We have a wifi controller in the DMZ where Access Points from different onsite and offsite locations connect to through two different ports over WAN. I managed that…
    • over 3 years ago
    • UTM Firewall
    • Network Protection: Firewall, NAT, QoS, & IPS
  • Recommendation for external facing servers and a simple question on where a rule is generated

    WABGOR_DAVE
    WABGOR_DAVE
    Hello all, Networking certainly isn't my forte and I've only really been handling our UTM sporadically for 2 years, so please bear with me. I did not install the UTM nor was I the primary admin, but I want to make sure that we're decently secure. …
    • over 3 years ago
    • UTM Firewall
    • Network Protection: Firewall, NAT, QoS, & IPS
  • Can Successfully Traceroute from a VLAN subnet, but the subnet cannot use the internet

    SinaOwolabi1
    SinaOwolabi1
    Hi! Running an SSG330. I have a strange situation and I am a bit at my wits end. I have a subnet attached to a VLAN interface, which is applied on the Sophos LAN interface. I have setup masquerading for this subnet to the SSG330's External interface…
    • over 3 years ago
    • UTM Firewall
    • Network Protection: Firewall, NAT, QoS, & IPS
  • View related content throughout UTM Firewall
  • More
  • Cancel
>