• Dropped packets to port 0

    While looking at our FW logs I see UDP packets from internal devices sent to a FW interface with dstport=0. 2023:06:23-14:20:19 FWName ulogd[31041]: id="2001" severity="info" sys="SecureNet" sub="packetfilter" name="Packet dropped" action="drop" fwrule…
  • how to Sophos firewall YouTube and Facebook access block specify users with static IP address

    YouTube and Facebook access block specify users with static IP address
  • Can not Download Apps from Windows Store

    Hello together! When i want to Download Apps from the Windows 10 Store, only a few MB are downloaded and then the download stops .. In the IPS Log i always found "MALWARE-OTHER Executable control panel file download request" (SID=33942) this Event…
  • How to solve "Unable to initialize SaviStream object"?

    FormerMember
    FormerMember
    Today when I tried downloading an *.iso file, I've got the error "unable to initialize SaviStream object". Does anybody knows how to solve this problem? Here is an screenshot: Thank you in advance! Meghan
  • Default Deny Not Blocking Traffic Across Interfaces?

    I'm using the software version of Sophos Home UTM on my ESXi server and have three vNICs added. The connections are my WAN/Internal (192.168.1.0/24 router on this network), Lab (10.10.0.0/24), and Lab2 (172.16.1.0/24). If I set a firewall rule to allow…
  • WinSCP to External Server

    Hi, I have an internal server (A) and I want to use WinSCP to SFTP to an external server (B). In between A and B is a Sophos UTM 9 appliance. The Sophos UTM 9 appliance has a web proxy set up. There is a firewall rule on UTM 9 that forwards…
  • Amazon Web Filtering Setting and Network Protection - Streaming

    Hey, I spend several days - with the settings of the UTM 9. I could stream Amazon Prime Video on two smart TVs for 11 months - until an update end of November 2016. Since than - nothing is working... I can select videos - but they will not start to…
  • Incoming vs Outgoing rules, Application Level Filtering, and viewing log files

    I have been running UTM since version 8 in 2011. But only recently have I enabled the firewall feature. I have the UTM in bridged mode behind a run of the mill ATT box, which presumably has its own firewall. My questions are these: 1. Are rules only…
  • Connecting Remotely to a VMware Horizon View Session Fails

    hello all, I am trying to connect remotely to another network using VMware Horizon View (PCoIP) over UDP/TCP port 4172. I have created the firewall rule to allow the traffic to go out the firewall to the remote site, but it is still showing up in the…
  • Why are google.com and gmail not trusted?

    Out of the blue today our UTM 9 started dropping (I think) all google domain related sites. All google related sites fail with: Your connection is not private Attackers might be trying to steal your information from www.google.com (for example, passwords…
  • BitTorrent Speed and Default DROP

    HI, I have set NAT an FW to allow bittorrent use port 35951 (TCP/UDP) all looks ok but at live FW log i see lot of DROPs at this port 19:03:28 Default DROP TCP 178.40.178.147 : 50762 → WAN IP : 35951…
  • Default drop fwrule="60002" but I have a firewall rule?

    I am trying to play a game that requires access to port 10001 and I have set up a rule that allow any computer on my internal network to access this port to any IPv4 address, however it is continually blocked. Firewall log is: 2016:03:01-11:38:32 oscar…
  • RDP of a Windows computer through UTM 9.3 between multiple subnets?

    I have published several RDP targets through my UTMs over the years, but this particular one seems to have me stumped. So, here is my layout. Internet -->Router (Subnet 1)-->UTM--(Subnet 2) Subnet 1 houses all of my General use items (WiFi TVs, Game…
  • LiftMaster MyQ garage opener

    I'm having trouble allowing traffic for my LiftMaster MyQ garage opener. I'm a new Sophos UTM Home user. From their FAQ, it says: - Verify your router allows inbound and outbound traffic on TCP port 8883 and UDP and TCP port 2165; - Verify if there…
  • How to get details on 2 attacks blocked : rule 32488

    Hi, I had 2 attacks blocked, it is a bummer that I can't drill down on the actual text, but I found more detail in the "Network Protection" menu under "IPS: Top Blocked Attacks" I can figure out the host inside that tried to send the packet out…