This discussion has been locked.
You can no longer post new replies to this discussion. If you have a question you can start a new discussion

Trouble with Web Filtering.. maybe

Hi PPL. This is my first post so excuse me if I post in the wrong area etc. I am also VERY new to SOPHOS. I work for a small company and probably overbought, but wanted to get the best bang for the buck.

I am having trouble downloading a Bill of Lading from our freight company. I can access the main site and see our overview of BOLs. When I click to see an individual BOL it comes back with cannot connect. This action is redirected to another URL:8081. I have entered various exceptions and rules for the URL and added the 8081 port to the web surfing Firewall group. I do not see any blocking on the Firewall log or in the Web protection log. If I connect to my wireless ( which I setup via the setup wizard ) No added rules for the wireless connection other than what the wizard created, I can pull of the BOL with no trouble. Any ideas? I don't know how to be more specific but I can supply whatever is needed to try and get a solution.

TIA

Cooper



This thread was automatically locked due to age.
Parents
  • Hi Jeff,

    I did skim reading of the question. Please configure the following points:

    1. In your DNS forwarders assign IP addresses 8.8.8.8 and 4.2.2.2.

    2. If transparent proxy is configured for Web Protection then, add the URLs in the skip transparent proxy for the destination address. You will see this option in Web Protection> Filtering option> MISC > Skip Transparent Mode Destination.

    If it is still blocked, show me http.log for the source address.

    Thanks

    Sachin Gurung
    Team Lead | Sophos Technical Support
    Knowledge Base  |  @SophosSupport  |  Video tutorials
    Remember to like a post.  If a post (on a question thread) solves your question use the 'This helped me' link.

  • I added my ISPs DNS' entries into the forwarders addresses.

    I added the addresss to the 'Skip Transparent Mode Destination and it did not work. Did you want the HTTP Daemon or Web protection log?

  • Is your proxy even in transparent mode? You haven't said anything about how that was setup, did you follow any documentation on setting that UTM up? Or just doing this blindly?

  • Like I said, I used the setup wizard, and yes there is some blindness as with anyone working with a new device or tool they are not familiar with. I am not CCNP certified nor am I Sophos trained. I knew there would be glitches but had no choice in getting this online as my old firewall died and I needed the business operational by Monday which I achieved. I do appreciate anyones help and will try whatever is needed to get this piece working. I have a feeling its something simple as the wireless network will allow it.

    Monday I will contact my vendor and see if I can contract with them to ensure proper setup of the device at this point.

    Thanks again for the help. I am just as aggravated that I cannot find a log entry of the blocking. I have viewed every log file.

    I feel I will be fairly proficient with this device when this is done though so there is a silver lining. :-)

  • Hi Jeff,

    Post to me http.log and packetfilter.log. If it is not a DNS issue and if the issue doesn't resolve by adding the host to the transparent proxy skip list then can you bypass UTM and connect a system directly to the ISP which is configured on the UTM and verify. It can also be an ISP problem.

    Thanks

    Sachin Gurung
    Team Lead | Sophos Technical Support
    Knowledge Base  |  @SophosSupport  |  Video tutorials
    Remember to like a post.  If a post (on a question thread) solves your question use the 'This helped me' link.

  • See #3.1 in Rulz - masquerading rule.

    Cheers - Bob

     
    Sophos UTM Community Moderator
    Sophos Certified Architect - UTM
    Sophos Certified Engineer - XG
    Gold Solution Partner since 2005
    MediaSoft, Inc. USA
Reply Children
No Data