This discussion has been locked.
You can no longer post new replies to this discussion. If you have a question you can start a new discussion

Webprotection / Webfilter blocks WLAN

Hello. I've already posted into the German Section but maybe the international General Plattform is more frequented.

I have a WLAN Network (VLAN 100) created via Unifi Controller.

A corresponding interface is created in the Sophos UTM:

DNS and DHCP Services a created for the network:

Primary DNS is the Windows Domaincontroller.

Firewall Rules:

WLAN-Intern-100 (Network) <-> Any <-> Internal Network
WLAN-Intern-100 (Network) -> Any External (WAN)

NAT -> Maskierung: WLAN-Intern-100 (Network) -> External (WAN)

Webfilter: The WLAN-Intern-100 Net was added to the permitted Networks.

The WLAN network works so far, the WLAN clients receive an IP from the DHCP, DNS also works (DC can be reached), etc. Access to the internal network or between the networks is also possible. The problem is that the clients in the WLAN network do not have web access. Teamviewer still works. Also Ping to external hosts, but anything else is blocked. The web filter is on default, which also works for the internal network so far.

The internal Network, which uses the same Webfilter, works. if I temporarily disable the web filter completely, then the WLAN clients no longer have a network,
which seems strange as the internal Network works (just w/o Webfilter Funktion). Actually, the WLAN should also work without the web filter function?


Anyone with an Idea?


Markus



This thread was automatically locked due to age.
Parents
  • Please show screen shots for

    WLAN-Intern-100 (Network) <-> Any <-> Internal Network
    WLAN-Intern-100 (Network) -> Any External (WAN)

    "Internal Network", "External (wan)" can have one of 3 different definitions - broadcast, ip, or network

Reply
  • Please show screen shots for

    WLAN-Intern-100 (Network) <-> Any <-> Internal Network
    WLAN-Intern-100 (Network) -> Any External (WAN)

    "Internal Network", "External (wan)" can have one of 3 different definitions - broadcast, ip, or network

Children