This discussion has been locked.
You can no longer post new replies to this discussion. If you have a question you can start a new discussion

Tor

hi there, I have Web filtring enabled but I would like to have TOR working. how to enable this on UTM? 

Firmware version: 9.312-8
Pattern version: 86648


This thread was automatically locked due to age.
  • I already unchecked both "Anonymizers" and "Anonymizing Utilities" but still can't use TOR
  • Check the Webfilter logs while trying to use TOR and define appropriate exceptions.

    You might also have to look through the firewall, IPS and application control log.

    ----------
    Sophos user, admin and reseller.
    Private Setup:

    • XG: HPE DL20 Gen9 (Core i3-7300, 8GB RAM, 120GB SSD) | XG 18.0 (Home License) with: Web Protection, Site-to-Site-VPN (IPSec, RED-Tunnel), Remote Access (SSL, HTML5)
    • UTM: 2 vCPUs, 2GB RAM, 50GB vHDD, 2 vNICs on vServer (KVM) | UTM 9.7 (Home License) with: Email Protection, Webserver Protection, RED-Tunnel (server)
  • only see the firewall log, drop rule 60002.

    2015:08:27-11:20:07 cri-utm ulogd[2574]: id="2001" severity="info" sys="SecureNet" sub="packetfilter" name="Packet dropped" action="drop" fwrule="60002" initf="eth0" outitf="eth1" srcmac="40:a8:f0:45:bd:a6" dstmac="00:1a:8c:42:08:9c" srcip="192.168.0.111" dstip="77.37.136.165" proto="6" length="52" tos="0x00" prec="0x00" ttl="127" srcport="50202" dstport="11232" tcpflags="SYN"
  • Well, if that's really the only related log line, then TOR seems to use TCP port 11232 for its communication. So just define a firewall rule which allows this port outgoing.

    ----------
    Sophos user, admin and reseller.
    Private Setup:

    • XG: HPE DL20 Gen9 (Core i3-7300, 8GB RAM, 120GB SSD) | XG 18.0 (Home License) with: Web Protection, Site-to-Site-VPN (IPSec, RED-Tunnel), Remote Access (SSL, HTML5)
    • UTM: 2 vCPUs, 2GB RAM, 50GB vHDD, 2 vNICs on vServer (KVM) | UTM 9.7 (Home License) with: Email Protection, Webserver Protection, RED-Tunnel (server)