This discussion has been locked.
You can no longer post new replies to this discussion. If you have a question you can start a new discussion

Port Question.

Office currently has a Sophos XG 115 Firewall.  Was told that ports 5672, 5673 needed to be open for Multiple Computers from a Software Vendor.  Is there any way I can have those ports open for the Internal LAN?  Or does it have to be mapped to a specific IP?  



This thread was automatically locked due to age.
Parents
  • Hello Jason Yu,

    You can add those ports as "Services" in System > Host and Services > Services tab.

    You will see those "services" when you create the rules, add it and allow the traffic for the correct subnet.

  • Thanks John for the quick reply.  I already created the Services.

     

    Could you guide me in creating the Rule?  Doesn't seem to work when I try.

  • I don't know your infrastructure but I can give you and example.

    In case you don't know if you need TCP or UDP for the services just add both of them for each port.

    Source port is always random so you have to use "*".

    Now, I'm creating a network rule from LAN to WAN, let me know if this is not what you want to accomplish.

    I'm using "Temp" for some private IPs in my LAN.

    Remember to uncheck the "Match known users" if it's not needed.

    Also, remember that the position of the rule is very important.

    With this rule your machines will be able to reach the remote servers with the required ports.

Reply
  • I don't know your infrastructure but I can give you and example.

    In case you don't know if you need TCP or UDP for the services just add both of them for each port.

    Source port is always random so you have to use "*".

    Now, I'm creating a network rule from LAN to WAN, let me know if this is not what you want to accomplish.

    I'm using "Temp" for some private IPs in my LAN.

    Remember to uncheck the "Match known users" if it's not needed.

    Also, remember that the position of the rule is very important.

    With this rule your machines will be able to reach the remote servers with the required ports.

Children
No Data