Hi Villic, could you please take remote for checking? please let me know if you have free time now or tomorrow? it seems that there is something wrong here that I don't know yet
I did the test, the results b]elow, the result is not match when included "www" and "without www". And IP 235 cannot access facebook even policy test result is "Allow"
Taihoang, instead of linking to images on another site, please edit your last post, click on [Go Advanced] and then attach images to your post like vilic did.
Cheers - Bob
Sophos UTM Community Moderator Sophos Certified Architect - UTM Sophos Certified Engineer - XG Gold Solution Partner since 2005
it seems this is the difficult question to create the rule to allow/block the host by application control. It looks like the disadvantage of sophos in "application control", and we cannot manage the allow/block rule in application control, is that right? this is my thinking, please correct me if I'm wrong.
Regarding Skype, the only way I managed it to work with Web Filter in Block All/Allow only specific IP address mode, was to put my IP address in "Skip transparent mode source hosts/nets" (when proxy in transparent mode) with Allow HTTP/s checked...
Immediatelly after that Application log showed real IP instead proxy IP, and the host was allowed access by rule #3 instead block by rule #4 (screenshot).