This discussion has been locked.
You can no longer post new replies to this discussion. If you have a question you can start a new discussion

How to allow Standard-Proxy connections only

Hello everybody,
I received the request to only allow HTTP / S connections from clients if they use a proxy entry in the browser.
All other http / https traffic should be blocked.
I've tried a lot, but to no avail.
Someone who can give me some clue how to solve this?

Thanks a lot,



This thread was automatically locked due to age.
Parents
  • try only allowing port 3128.

    Ian

    XG115W - v19.5.1 mr-1 - Home

    If a post solves your question please use the 'Verify Answer' button.

  • ok i try this (but using port 8080).

    Firewall matches (green)

    WebProxy matches (green)

    i got the block page for forbidden kategories.

    But page is not loaded if allowed. (no block or errorpage from XG) ... only a simple error page from browser.


    Dirk

    Systema Gesellschaft für angewandte Datentechnik mbH  // Sophos Platinum Partner
    Sophos Solution Partner since 2003
    If a post solves your question, click the 'Verify Answer' link at this post.

  • You will need to change the web proxy in the XG setting from 3128 to 8080.

    Ian

    XG115W - v19.5.1 mr-1 - Home

    If a post solves your question please use the 'Verify Answer' button.

  • I have 8080 for the webproxy already. Therefore i build the Rule using 8080.

    If i only configure 8080 for this rule ... I see green matches for www.heise.de:443 with this rule, if the PC uses a static-proxy entry.

    So this rule sems to work and proxy capture the traffic. ... But page is not loaded.

    I masqerade "any" to "WAN". This should be enought ...!?


    Dirk

    Systema Gesellschaft für angewandte Datentechnik mbH  // Sophos Platinum Partner
    Sophos Solution Partner since 2003
    If a post solves your question, click the 'Verify Answer' link at this post.

Reply
  • I have 8080 for the webproxy already. Therefore i build the Rule using 8080.

    If i only configure 8080 for this rule ... I see green matches for www.heise.de:443 with this rule, if the PC uses a static-proxy entry.

    So this rule sems to work and proxy capture the traffic. ... But page is not loaded.

    I masqerade "any" to "WAN". This should be enought ...!?


    Dirk

    Systema Gesellschaft für angewandte Datentechnik mbH  // Sophos Platinum Partner
    Sophos Solution Partner since 2003
    If a post solves your question, click the 'Verify Answer' link at this post.

Children
No Data