This discussion has been locked.
You can no longer post new replies to this discussion. If you have a question you can start a new discussion

Match known users but don't block

Hi there,

So I'm currently using the Sophos XG firewall as my home firewall. Active Directory authentication has been set up and configured, and connection test comes back successful.

I'm wanting to turn on "Match Known Users" so that if a computer is logged in with Active Directory, they're authenticated with the firewall. But I want all other devices (mobiles, tablets) to not be blocked from accessing the internet, if they haven't authenticated.

Can anyone recommend a way of doing this? At the minute I just create "Clientless Users" and associate them to the IP addresses of the devices.

Thanks,

Chris



This thread was automatically locked due to age.
  • Chris,

    You can use clientless and make sure that mobile, tablet, and so forth receive always the same ip otherwise, create a Mac-address list and create a firewall rule at the top where these Mac-address devices can access http/s services and “match know users “ is not checked.

    Regards