• Working with traefik

    Hello, Traefik is a Docker-aware reverse proxy and i want to use it for my dmz sites, some of then in docker container and other deployed "normaly" like Outlook Web Access (OWA), so i need to set up a reverse proxy and expose ports 80 and 443 and i…
  • telnet to 443 of particular IP passing no matter what - I don't want that

    Hello Sophos friends, I have trivial problem but I can't figure why is that happening. On our UTM SG330 box, I want to block all the possible communication to particular IP (in the internet) Let's say we have bunch of users (in internal network) potentially…
  • Application Selector missing Skype for Business?

    At first, Skype for Business seems not top be regular Skype. All traffic is using SSL and Application selector is not taggins it as Skype. Probably because Microsoft using own certificates or has their own implementation for SSL (due to the fact that…
  • Web Proxy

    Hi, on my UTM 9.505-4 i have the following lines all over the web-protection log: httpproxy[4888]: id="0003" severity="info" sys="SecureWeb" sub="http" request="(nil)" function="read_request_headers" file="request.c" line="1586" message="Read error…
  • WinSCP to External Server

    Hi, I have an internal server (A) and I want to use WinSCP to SFTP to an external server (B). In between A and B is a Sophos UTM 9 appliance. The Sophos UTM 9 appliance has a web proxy set up. There is a firewall rule on UTM 9 that forwards…
  • Sophos UTM 9 double NAT

    I am new to this and just finding my way around setting up utm/firewalls i have a 2 firewall setup an internal sophos utm 9 ffirewall and an external firewall The internal firewall sophos utm 9 is setup where all computers and mobile devices are behind…
  • RE: Masquerading and SNAT is not working with Additional addresses

    > The production network (eth0,eth1) can access the internet without Masquerading > The VPN site network (eth6,eth7) can access the internet without Masquerading Given that your internal subnets are private IP space (10.0.0.0/8 or 172.16.0.0/12 or…