Guest User!

You are not Sophos Staff.

This discussion has been locked.
You can no longer post new replies to this discussion. If you have a question you can start a new discussion

Asymmetric routing and policy behaviour

Hi,

When I do a bypass of subnets through stateful-firewall-config to avid asymmetric traffic inspection (MPLS), what impact on firewall policy rules and others are applied?

Is it only the flow of TCP connections? I can confirm that for example doing a 'drop' rule for elements in the same subnet does not apply the firewall policy rule and believe that this isn't really a 'normal' behaviour. 

Any inputs?

Thanks!



This thread was automatically locked due to age.
Parents
  • FormerMember
    +1 FormerMember

    Hi ,

    Thank you for reaching out to Sophos Community.

    Adding a bypass stateful firewall for the MPLS networks, effectively makes the firewall act as a router for the traffic with no filtering/restrictions.

    All connections between source and destination mentioned under 'bypass stateful firewall' won’t be monitored.

Reply
  • FormerMember
    +1 FormerMember

    Hi ,

    Thank you for reaching out to Sophos Community.

    Adding a bypass stateful firewall for the MPLS networks, effectively makes the firewall act as a router for the traffic with no filtering/restrictions.

    All connections between source and destination mentioned under 'bypass stateful firewall' won’t be monitored.

Children
No Data