<?xml version="1.0" encoding="UTF-8" ?>
<?xml-stylesheet type="text/xsl" href="https://community.sophos.com/cfs-file/__key/system/syndication/rss.xsl" media="screen"?><rss version="2.0" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:slash="http://purl.org/rss/1.0/modules/slash/" xmlns:wfw="http://wellformedweb.org/CommentAPI/"><channel><title>Security of XBox One placed in unfiltered traffic zone</title><link>https://community.sophos.com/utm-firewall/f/network-protection-firewall-nat-qos-ips/94077/security-of-xbox-one-placed-in-unfiltered-traffic-zone</link><description>I finally got my Sophos UTM Home machine up and running, and so I have several refinement questions I&amp;#39;m struggling with. To help others who may have the same issues, I&amp;#39;m posting them separately rather than all together. 
 This is a security question regarding</description><dc:language>en-US</dc:language><generator>Telligent Community 12</generator><item><title>RE: Security of XBox One placed in unfiltered traffic zone</title><link>https://community.sophos.com/thread/340660?ContentTypeID=1</link><pubDate>Mon, 17 Jul 2017 03:15:45 GMT</pubDate><guid isPermaLink="false">4be5eb7d-caa4-4ff5-8e60-8f9463545a35:d86b56e3-02ec-4534-8f3a-9ab06606b132</guid><dc:creator>sachingurung</dc:creator><description>&lt;p&gt;Hi B.H,&lt;/p&gt;
&lt;p&gt;First, the UTM is a stateful firewall and it doesn&amp;#39;t require a vice-versa rule. Just a simple LAN-WAN rule will be enough and rest will be managed by the connection tracking module. So the firewall rule should be defined like, LAN(XBOX IP) &amp;gt; ANY &amp;gt; WAN. Reason to define ANY services is that to avoid drops if the XBOX console decides to communicate on a random port.&lt;/p&gt;
&lt;p&gt;DNAT is used to host internal server over the&amp;nbsp;internet, I really think you don&amp;#39;t want to do that. Finally, the bandwidth problem could be associated with IPS and the AV scanning. Try exception for XBOX for the IPS. Refer,&amp;nbsp;&lt;a href="/kb/en-us/120329" target="_blank"&gt;Sophos UTM: How to configure the Intrusion Prevention System (IPS)&lt;/a&gt;.&lt;/p&gt;
&lt;p&gt;Thank you,&lt;/p&gt;&lt;div style="clear:both;"&gt;&lt;/div&gt;</description></item></channel></rss>