I just noticed that Sophos added a (disabled) Drop All rule in V18.
AFIK in V 17.5 you had to add this manually (Explicit Deny) and it was necessary to add all Zones manually in order that all packerts were captured.
Is this restriction gone as well as the need to create a Explicit Deny rule if you want to see the dropped packages in the eventlog once
You activate Drop All and activate the logging?
Regards,
Bernd
This thread was automatically locked due to age.