This discussion has been locked.
You can no longer post new replies to this discussion. If you have a question you can start a new discussion

Current Issues with Configuration of Sophos UTM Box (due to lack of Knowledge)

Hi there I have some outstanding issues I am trying to fix on my Sophos UTM Box and wondered if anyone can advise

1. SMTP Setup

I Believe I have set up SMTP Management/Filtering correctly but it appears to be listening for emails on the LAN port Rather than the WAN Port, I must admit it came preconfigured to a certain aspect but when I Set up the mail filtering with the instructions I found on the web, it now appears to be listening on the wrong port.

2. Pictures in Outlook Emails

We currently use the UTM For web filtering but since we rolled it out none of our domain users can see Pictures in emails any more, it appears to be blocking them.

3. Setting up user accounts for none domain workstations

we have 4 Media Machines set up in different meeting rooms, these machines are not on the domain and I want staff to be able to access the web on them through the UTM Box. I want these boxes to have their own sophos UTM login for web access and I have create the user accounts but when accessing the web I Get the popup appear wanting domain/username and password. I'm a little bit confused as what do I enter? the accounts aren't domain accounts and when I enter the username and password I have created in the sophos UTM it just pops up again asking for the password.

thanks for any advice you can give me I must admit its a very steep learning curve, but other than that I love the UTM its a great bit of kit.

Oh i've just shelled out for the RED 50 box as well.



This thread was automatically locked due to age.
Parents
  • First thing is, you want to post one issue per thread.  With the screenshots and log entries that may be necessary to post to solve issues, it gets very confusing fast with multiple issues.

    1) The SMTP Email Protection Proxy listens on all interfaces. This is by default and not configurable.

    2) Check the Web Filtering log while opening an email with pictures in Outlook. Here you will find an entry for the connection. There will be a reason given for the block. You can then use the URL in that log line to create an exception rule or a whitelist entry, as appropriate, to allow the traffic.

    3) What's your setup like in terms of Web Filtering Profiles and Policies?

    Since you have a paid license (assumption given meeting rooms and domain) and several issues at once, you should be following your support channel first. If you have standard support, you need to contact your reseller. They should be assisting you with the initial setup and not throwing you to the wolves, if they are the least bit reputable.  Since the people here who will be assisting you are other users, it can take a few days to work through an issue.  Working with a good reseller on a phone call, with remote access to WebAdmin, many issues can be resolved in a few minutes.

    "Oh i've just shelled out for the RED 50 box as well".  I have a few of these as also.  No idea how this has any relevance whatsoever to the rest of the post, but oh well.  :)

    __________________
    ACE v8/SCA v9.3

    ...still have a v5 install disk in a box somewhere.

    http://xkcd.com
    http://www.tedgoff.com/mb
    http://www.projectcartoon.com/cartoon/1
Reply
  • First thing is, you want to post one issue per thread.  With the screenshots and log entries that may be necessary to post to solve issues, it gets very confusing fast with multiple issues.

    1) The SMTP Email Protection Proxy listens on all interfaces. This is by default and not configurable.

    2) Check the Web Filtering log while opening an email with pictures in Outlook. Here you will find an entry for the connection. There will be a reason given for the block. You can then use the URL in that log line to create an exception rule or a whitelist entry, as appropriate, to allow the traffic.

    3) What's your setup like in terms of Web Filtering Profiles and Policies?

    Since you have a paid license (assumption given meeting rooms and domain) and several issues at once, you should be following your support channel first. If you have standard support, you need to contact your reseller. They should be assisting you with the initial setup and not throwing you to the wolves, if they are the least bit reputable.  Since the people here who will be assisting you are other users, it can take a few days to work through an issue.  Working with a good reseller on a phone call, with remote access to WebAdmin, many issues can be resolved in a few minutes.

    "Oh i've just shelled out for the RED 50 box as well".  I have a few of these as also.  No idea how this has any relevance whatsoever to the rest of the post, but oh well.  :)

    __________________
    ACE v8/SCA v9.3

    ...still have a v5 install disk in a box somewhere.

    http://xkcd.com
    http://www.tedgoff.com/mb
    http://www.projectcartoon.com/cartoon/1
Children
  • Scott
    thanks for your message
    the comment about the RED 50 box was meant to be taken in a positive manner I do apologise if it wasn't taken as so, I am really Digging Sophos kit and other than the couple of teething issues which is expected with all new kit it is pretty awesome.

    I Have fixed
    1) The SMTP Email Protection Proxy listens on all interfaces. This is by default and not configurable
    This turned out to be an issue with my Leased line supplier and their mistake, this has now been resolved.

    Will update on the other Fixes once I have got through them.

    Thank You
    Ashley