This discussion has been locked.
You can no longer post new replies to this discussion. If you have a question you can start a new discussion

Web Filter Overrides the Firewall rules

Hi,

I am new to the Sophos UTM. Have been using Untangle, but just migrated into Sophos UTM and i really like what i seen so far. The only issue i have is:

I installed and configured (as far as i can tell) the Sophos UTM, but when i enable Web Filter, any host/network in the allowed list in the web filter, bypasses the Firewall rules and has access to the internet.

Is this behavior expected? At the moment I can either use the firewall to block/allow based on IP/Port etc but NOT URL, or use the Web Filter and filter on URLs but no the firewall rules. This does not seem right to me? 

In Untangle you can do both at the same time, but their firewall is bit basic for my liking.

Thank you in advance for any advise you can part to help me understand this.



This thread was automatically locked due to age.
Parents Reply
  • Thank you DouglasFoster.

    I read the https://community.sophos.com/products/unified-threat-management/w/utm-wiki/37/securing-and-configuring-web-filtering

    but now i am now more confused:(

    =====================

    This what the instructions reads:

    In most firewall products, Access Control Entries are used to evaluate source and destination together.  In UTM, any traffic handled by the proxies will bypass any firewall rules, so source-destination restrictions must be enforced in the proxy configuration.

    =====================

    So it seems, if you enable the Web Filter, any traffic dealt by the web filter is not sent to the firewall rules but rather sent directly out (that my understanding). If my understanding is correct, then i am back to square one and more importantly how you supposed to use both at the same time since they both used for different things?

Children