This discussion has been locked.
You can no longer post new replies to this discussion. If you have a question you can start a new discussion

Firewall 2.0 functionality (Sophos Enterprise Console)

Hi.  I am using Firewall 2.0 clients and managing via the console.  I've looked through the various documents and have a  lingering question.  "Allow by default" - it says traffic which has no matching rule is allowed.  Does this mean all Outbound and Inbound are allowed?  I am looking for a setting that allows all Outbound but blocks most inbound (except what I have set in the rules).

:3380


This thread was automatically locked due to age.
Parents
  • Hello again,

    event New Application

    New or Modified Application events are generated when you're using checksums to authenticate applications and an application with an unknown checksum requests network access (in other words, when a communication endpoint is created). At this time it is not yet known whether the application intends to write to or read from the network. Therefore Direction is Unknown. If you select No application rule events you will see either Inbound or Outbound for the Direction.

    Christian

    :3400
Reply
  • Hello again,

    event New Application

    New or Modified Application events are generated when you're using checksums to authenticate applications and an application with an unknown checksum requests network access (in other words, when a communication endpoint is created). At this time it is not yet known whether the application intends to write to or read from the network. Therefore Direction is Unknown. If you select No application rule events you will see either Inbound or Outbound for the Direction.

    Christian

    :3400
Children
No Data