I HAVE 7 VLANS ON SOPHOS XG HOME I PUT ACTIVE DIRECTORY AND FILE SERVER IN VLAN 10 .I WANT CLIENTS FROM VLAN 30 CAN AUTHENTICATE AND USE THERE MAP NETWORK DRIVE only
Hello Pola,
Thank you for contacting the Sophos Community.
The requirements you mention are better handled using user permissions and permissions levels at the AD level.
If you want to use a Firewall rule to achieve this, you would need to allow the ports used for Authentication and for the Map Network Drive.
For example for the map network drive those are usually the ports used TCP 135, 139 and 445 and UDP 137, so you would need to create a Firewall rule only allowing this ports from Vlan 30 going to Vlan 10.
As per the authentication, the ports would vary depending of your authentication method, but usually you need Port 53, 389, 88, 1512.
Regards,