This discussion has been locked.
You can no longer post new replies to this discussion. If you have a question you can start a new discussion

Default Drop is not logging

Hello Community,

we have on a firewall (XG210 HA, v18-MR1) the problem that not all dropped connections are listed in the log. This concerns on the one hand ICMP packets and on the other hand (partly) other packets which are not logged by the default drop. We have activated ICMP logging as described here: https://support.sophos.com/support/s/article/KB-000037153?language=en_US


In the default drop all rejected connections should be logged without the need to configure this explicitly.

How can I solve the problem?

Thanks,

Ben



This thread was automatically locked due to age.
Parents
  • Hi,

    the default block rule has no logging. We created a custom block rule before it where we enabled logging.

    We had this problem a few times in the past when we created new zones on the firewall and forgot to put them in the source list of the custom block and log rule. Btw. one could just select any as source zone.

Reply
  • Hi,

    the default block rule has no logging. We created a custom block rule before it where we enabled logging.

    We had this problem a few times in the past when we created new zones on the firewall and forgot to put them in the source list of the custom block and log rule. Btw. one could just select any as source zone.

Children
No Data