This discussion has been locked.
You can no longer post new replies to this discussion. If you have a question you can start a new discussion

How to drop DHCP request packets on a bridge (2 lan)

I have Sophos xg 135, #Port7 and #port8 are configured as a bridge for internal lan, #port2 as WAN for external

I want to drop all DHCP request on the bridge.

Already configured a rule to drop DHCP service on the bridge (which is not dropping dhcp requests) as follow: 

Source zones ----> Internal_LAN (#port7+#port8)

Source networks and devices ----> Any

Destination zone ----> Internal_LAN 

Destination networks ----> Any

Services ----> DHCP, ICMP

I added the ICMP service for testing purpose, tried to ping local computer from #port7 to #port8 and ping was successfull

Under  at the bottom an allow rule from any to any is configured

Can someone advise please

 

Thank you



This thread was automatically locked due to age.
Parents
  • Why do you want to stop DHCP requests (broadcasts) on the bridge? Unless you have a firewall rule allowing DHCP packets to be broadcast outside of your LAN they will be dropped by the firewall.

    Where is your DHCP server located?

    When reviewing log viewer which rule do you see the packets being passed by?

    Ian

Reply
  • Why do you want to stop DHCP requests (broadcasts) on the bridge? Unless you have a firewall rule allowing DHCP packets to be broadcast outside of your LAN they will be dropped by the firewall.

    Where is your DHCP server located?

    When reviewing log viewer which rule do you see the packets being passed by?

    Ian

Children