This discussion has been locked.
You can no longer post new replies to this discussion. If you have a question you can start a new discussion

Configure Firewall - How to allow all traffic but block 1 port

Hi

How can i configure firewall by allowing all traffic but block 1 port? I am new with Sophos & in process of learning. FYI, i am using Sophos Endpoint Security and Control version 9.5

Appreciate your kind respond and guide. Thanks.

:24895


This thread was automatically locked due to age.
Parents
  • Hello MVMCC,

    first of all, while it's still more than a year until 9.5 reaches retirement you should consider upgrading to a newer version.

    Next - I wonder what practical purpose such a configuration could have (other than being an exercise)? Anyway - port is ambiguous, it could be local or remote (furthermore you can also differentiate between incoming and outgoing traffic). And depending on the port you must consider the order in which the rules are applied (please see 7.5.2  About the order in which rules are applied in the SESC Help manual). In principle you'd create two high-priority (check box in the upper right) Global rules blocking the desired port (one for local and one for remote) and another normal Global rule allowing "everything else". 

    HTH

    Christian

    :24913
Reply
  • Hello MVMCC,

    first of all, while it's still more than a year until 9.5 reaches retirement you should consider upgrading to a newer version.

    Next - I wonder what practical purpose such a configuration could have (other than being an exercise)? Anyway - port is ambiguous, it could be local or remote (furthermore you can also differentiate between incoming and outgoing traffic). And depending on the port you must consider the order in which the rules are applied (please see 7.5.2  About the order in which rules are applied in the SESC Help manual). In principle you'd create two high-priority (check box in the upper right) Global rules blocking the desired port (one for local and one for remote) and another normal Global rule allowing "everything else". 

    HTH

    Christian

    :24913
Children
No Data