Guest User!

You are not Sophos Staff.

This discussion has been locked.
You can no longer post new replies to this discussion. If you have a question you can start a new discussion

Sophos XG Block Inter-VLAN Traffic DMZ

Hello everyone,

I have a VLAN 10 which is my DMZ and I want to disable/block access to my internal Network (VLAN 1).

I can ping every Device from my DMZ and access every LAN-Device.

I already tried to add a BLOCK Rule, but my Sophos seems to ignore it.

Anybody got an Idea how to block these?



This thread was automatically locked due to age.
Parents Reply
  • Hi H_Patel,

    There is no rule which allows traffic from my DMZ to my LAN as you can see in the picture.

    I also did a packet capture. I pinged my NAS from the DMZ and I still can reach it. I can also reach it via HTTPs.HTTPS

    My drop rule is already on top of my Firewall Rules.

    Rules

Children
No Data