This discussion has been locked.
You can no longer post new replies to this discussion. If you have a question you can start a new discussion

web filter bypasses firewall

I was shocked when I have noticed that with enabled web filter in transparent mode there is a "bypass" between internal Networks (UTM 9.315-2). [:O]

(Maybe as a home user I only misunderstood the function.)

I do have three internal /24 subnets all connected to a separate VLAN Interface:

- 192.168.10.1/24  LAN
- 192.168.20.1/24  DMZ
- 192.168.30.1/24  guest WLAN

The firewall rules are working fine and there is no network connection especially from guest WLAN to LAN. 

The same is the case if I only put LAN to the web filter in transparent mode as allowed netweork. But if I additionally put also one of the other Networks to the allowed Networks of the web filter I can get http access from one Sub net to the other one.

Is it a bug or a Feature? [:S]
At least this is not I do not have expected to allow Network traffic between the subnets by putting them to the allowed list for the web filter.


This thread was automatically locked due to age.
Parents
  • Good question.  I don't remember why we added that.  As long as the Guest network isn't in 'Allowed Networks' for any other profile, I can't see the benefit of that.

    Cheers - Bob
     
    Sophos UTM Community Moderator
    Sophos Certified Architect - UTM
    Sophos Certified Engineer - XG
    Gold Solution Partner since 2005
    MediaSoft, Inc. USA
Reply
  • Good question.  I don't remember why we added that.  As long as the Guest network isn't in 'Allowed Networks' for any other profile, I can't see the benefit of that.

    Cheers - Bob
     
    Sophos UTM Community Moderator
    Sophos Certified Architect - UTM
    Sophos Certified Engineer - XG
    Gold Solution Partner since 2005
    MediaSoft, Inc. USA
Children
No Data