This discussion has been locked.
You can no longer post new replies to this discussion. If you have a question you can start a new discussion

Default drop SSL

Good evening,

i have one questions. In the Livelog off an SG UTM 9.7 there are some Entrys in the livelog which write "default drop SSL"

It's an connection from internal / external source via dnat to on Server (Citrix NetScaler) in an DMZ.

The downlaoded Firewall Log has no entry with default drop ssl, but many entry with tcpflags="RST".

Nothing was changed on the firewall (only automatic patern updates), but since last friday we have this error.

Have someone an idea why it doens't work anymore?

Thank you very much.

Greetings, Marcel



This thread was automatically locked due to age.
Parents
  • Hallo Marcel,

    Agreed with Dirk - you can ignore default drops of RST packets unless something's not working.

    Cheers - Bob

     
    Sophos UTM Community Moderator
    Sophos Certified Architect - UTM
    Sophos Certified Engineer - XG
    Gold Solution Partner since 2005
    MediaSoft, Inc. USA
Reply
  • Hallo Marcel,

    Agreed with Dirk - you can ignore default drops of RST packets unless something's not working.

    Cheers - Bob

     
    Sophos UTM Community Moderator
    Sophos Certified Architect - UTM
    Sophos Certified Engineer - XG
    Gold Solution Partner since 2005
    MediaSoft, Inc. USA
Children
No Data