This discussion has been locked.
You can no longer post new replies to this discussion. If you have a question you can start a new discussion

Sophos endpoint security block

Dear Sir,

We are testing Sophos Enterprise console version 5 and we come across below scanario,

User connected outside internet using usb tangle once connected the interenet we have to block browsing and everything except vpn access. Once vpn is connected he have to browse as per office network security policy for which is defined in the management console. So kindly advice how to develop this type of scanario policy. Our aim is after connecting vpn server only able to browse and use other stuffs like file sharing and etc.,

Thanks for your support in advance.

Thanks N regards,

Magesh Kumar .P

:23451


This thread was automatically locked due to age.
Parents
  • Hello magesh,

    without knowing exactly what you have already configured it's very hard to give useful advice. But it seems at least partially to do what you want.

    Now I'd start with browsing when connected through VPN. The firewall log should contain the Reason for the blocked browser connection. This is either the name of a rule or a general reason (like Invalid Checksum or Blocked Application). So whatever it says there must be corrected in the settings for the Primary location. Maybe this will also give you an idea why the browser is not blocked for the Secondary location. If you are unsure please post the specific details here.

    BTW: In the configuration for the specific locations, tab General, pane Blocking - is Use checksums to authenticate applications checked?

    Christian

    :23949
Reply
  • Hello magesh,

    without knowing exactly what you have already configured it's very hard to give useful advice. But it seems at least partially to do what you want.

    Now I'd start with browsing when connected through VPN. The firewall log should contain the Reason for the blocked browser connection. This is either the name of a rule or a general reason (like Invalid Checksum or Blocked Application). So whatever it says there must be corrected in the settings for the Primary location. Maybe this will also give you an idea why the browser is not blocked for the Secondary location. If you are unsure please post the specific details here.

    BTW: In the configuration for the specific locations, tab General, pane Blocking - is Use checksums to authenticate applications checked?

    Christian

    :23949
Children
No Data