This discussion has been locked.
You can no longer post new replies to this discussion. If you have a question you can start a new discussion

SSL VPN remote access client isolation.

When our company's users use SSL VPN remote access (Sophos UTM 9), customers are not isolated from each other. 

We do not have such allow rule.

Can they be Isolated?



This thread was automatically locked due to age.
Parents
  • Sveiki and welcome to the TM Community!

    Have you tried a firewall rule like 'VPN Pool (SSL) -> Any -> VPN Pool (SSL) : Drop'?  Did that solve the problem?

    Cheers - Bob

     
    Sophos UTM Community Moderator
    Sophos Certified Architect - UTM
    Sophos Certified Engineer - XG
    Gold Solution Partner since 2005
    MediaSoft, Inc. USA
  • This rule does not solve the problem.

  • Are you sure that there's not another rule allowing the traffic above the suggested one?  If you have 'Automatic firewall rules' selected in the SSL VPN Profile, that creates a rule above all of the manually-created rules.  Please insert a picture of the Edit of the SSL VPN Profile.

    Cheers - Bob

     
    Sophos UTM Community Moderator
    Sophos Certified Architect - UTM
    Sophos Certified Engineer - XG
    Gold Solution Partner since 2005
    MediaSoft, Inc. USA
  • I do not find such a rule that allows VPN Pool (ssl) -> Any -> VPN Pool (ssl).

  • Yeah, I can't see why the Drop rule wouldn't work.  Please let us know what you learn from Sophos Support.

    Cheers - Bob

     
    Sophos UTM Community Moderator
    Sophos Certified Architect - UTM
    Sophos Certified Engineer - XG
    Gold Solution Partner since 2005
    MediaSoft, Inc. USA
Reply
  • Yeah, I can't see why the Drop rule wouldn't work.  Please let us know what you learn from Sophos Support.

    Cheers - Bob

     
    Sophos UTM Community Moderator
    Sophos Certified Architect - UTM
    Sophos Certified Engineer - XG
    Gold Solution Partner since 2005
    MediaSoft, Inc. USA
Children
No Data