This discussion has been locked.
You can no longer post new replies to this discussion. If you have a question you can start a new discussion

Web Filter Profile with Endpoint protection not working well

Hello,

I have a sophos with 2 Ethernet legs, one connected to a bridged modem, and the other to the LAN (there is no domain),

I have a test vm computer on ESXi (sophos is on ESXi too), a Desktop and a laptop (that belongs to my partner).

I have created a test profile that blocks weapons sites (using sophos's web protection test site),

 

I want to create a web profile with specific computer groups to block them from entering certain sites, but to have all other computer groups free access.

the problem is, when i activate the profile, all of my computers are affected (i installed the AV in the desktop with disabling the web protection)



This thread was automatically locked due to age.
Parents Reply Children
  • hello sachingurung , thank you for replying.

    I will be happy to give as much screenshots as needed 

     

    Web Filtering:

    Test Filter Action:

    Profile:

    Errors I get when entering with a computer who is not in the allowed endpoint groups

    trying to get into youtube:

     

  • Hi,

    The block message shows that the website is blocked under Entertainment category for which the action is blocked in the test filter you configured in the 2nd screenshot. You can always verify that which profile/action block the website through Policy Test option available in the Web Protection tab. The last error screenshot says that you don't have the appliance Certificate installed as the trusted root CA, you can find the CA available in the certificate management option.

    Thanks

    Sachin Gurung
    Team Lead | Sophos Technical Support
    Knowledge Base  |  @SophosSupport  |  Video tutorials
    Remember to like a post.  If a post (on a question thread) solves your question use the 'This helped me' link.

  • Hi,

    by the love of me... i have no idea what happened that it's now working [^o)]

    same thing happened with the RDP subject.... (made 0 changes, now it's working...)

     

     

    P.S.

    well, i did remove the Internal network from allowed network according to BAlfson .... but i did that as well before...

    so marking BAlfson answer as right (probably i might have made a mistake somewhere)