Guest User!

You are not Sophos Staff.

This discussion has been locked.
You can no longer post new replies to this discussion. If you have a question you can start a new discussion

Purpose of a group firewall rulex

Hello,

what are the group rules of a firewall rule necessary for or what exactly do they do?

What influence do the group rule or when a firewall rule is created in a group ?

Greetings and thanks



This thread was automatically locked due to age.
Parents Reply
  • XG is a Zone based Firewall. Zones are not in any relation to NAT. 

    zones are like the predefined network objects, you know of UTM9. UTM9 creates 3 objects per Interface, you create. Zones are like that just with a summary option. You can have per interface one individual zone. Or you can include 4000 Interfaces within one zone. There are pre defined zones like LAN or WIFI. But one interface can only be in one Zone. It does not separate the clients within one zone. It simply categorize the interfaces into zones. 

Children
  • Ok, I'll try to remember that.

    It looks kind of strange to me the zone principle.

    It looks to me that only pre-defined services are possible in this zone.

    Somehow I don't get along with the zone principle.

    Is one set up a new thread.

    Thank you very much for the great support, but always remember that the user-friendliness in the XG still needs to be improved, in my opinion :-), but that's another topic.

    Thank you again for the good support from you. I've learned a little about it.

    Greetings and thanks

  • The point is: Zone, user based firewall etc. is not invented by Sophos. It is a concept of next generation firewalls. Other vendors do the same. So its not about user friendliness, more likely your background with other products. Somebody coming from UTM (stateful firewall with attached modules) can get confused about this kind of interaction, but luckly, XG can do the same like UTM, if you want.