This discussion has been locked.
You can no longer post new replies to this discussion. If you have a question you can start a new discussion

Sophos XG firewall rule help

Ok, I seem to be missing something with firewall rules. I'm trying to block my Wyze cam from the internet, but no matter what I do the Wyze app can pull up the camera feed without any problems. So far I've tried two rules:

Block WAN to Camera:

Action: Drop

Source Zones/Source Network and Devices: WAN / Any (I've also tried setting this to the actual port for the WAN, no change)

Destination Zones / Destination Devices: IoTLan / ANY

Block Camera to WAN:

Source Zones / Source Network and Devices: IoTLan / Camera

Destination Zones / Destination Devices: WAN (also tried ANY) / ANY

In my little pea brain this looks like it should block incoming, and outgoing connections to the camera. IoTLan is the name of the network the camera is on, and Camera is the IP Host group I made for the cameras. What am I doing wrong? Kid gloves and ELI5 greatly appreciated as I'm fairly new to Sophos, and firewalls in general.



This thread was automatically locked due to age.
  • Where is this rule in your firewall order? 

    Could it be you have a rule higher with Source Zones any/any Destination WAN/any allow?

    Usually you will want to have your explicit block rules at the top of your firewall rules so they are certainly evaluated first before a possible allow rule...