This discussion has been locked.
You can no longer post new replies to this discussion. If you have a question you can start a new discussion

Logging - how to find problems?

Hello,

so I have some basic rules in the firewall, and now I want to get more granular.

Say I have an iPhone weather-app trying to connect, and it fails. Now I want to see on the firewall what is blocking it. (yes, I do know by heart what it is, but I want to read it out)

How do I do it?

I tried: Log Viewer, Filter iPhone IP, Firewall -> and it doesn't show me anything. At least not for a while, only after some minutes. So I can't use it for live analysis or rules or anything.

Am I missing something?



This thread was automatically locked due to age.
Parents
  • Welcome to the XG limited logging issues. There is also CLI stuff but that doesn't help with the what you are using as an example.

    There is another thread in the XG forums about improving XG reporting, I suggest you locate it and add your 10c to it.

    Ian

    Ian

  • "Awesome."

    This is virtually a no-go for me.

    After couple of days with XG, I'm sure I will not switch for now. Our 3yr license for Sophos expires in January 2021, so I think I might be looking at other solutions.

    Even been thinking of going open source firewall or Fortigate, and separately going for centrally managed A/V solution. Currently using Sophops Central on some clients, but honestly it's too expensive. I didn't even cover all clients and servers I would want to cover, and it's still way more expensive than products like Bitdefender or ESET. Not sure really if it is better though. I know they market Intercept X (and we do have it), but never had a compromise yet.

Reply
  • "Awesome."

    This is virtually a no-go for me.

    After couple of days with XG, I'm sure I will not switch for now. Our 3yr license for Sophos expires in January 2021, so I think I might be looking at other solutions.

    Even been thinking of going open source firewall or Fortigate, and separately going for centrally managed A/V solution. Currently using Sophops Central on some clients, but honestly it's too expensive. I didn't even cover all clients and servers I would want to cover, and it's still way more expensive than products like Bitdefender or ESET. Not sure really if it is better though. I know they market Intercept X (and we do have it), but never had a compromise yet.

Children
No Data