Guest User!

You are not Sophos Staff.

This discussion has been locked.
You can no longer post new replies to this discussion. If you have a question you can start a new discussion

Sophos XG is not blocking Tor Browser anymore

Hi, I was using to block Tor "proxy and tunnel", "anonymizer", "can bypass firewall", "tunnels other apps", few years ago it was working to block it, but not any more, does anybody have any idea what to do? thanks.



This thread was automatically locked due to age.
  • Hello Miguel,

    Thank you for contacting the Sophos Community.

    Check whether you are using SSL/TLS or the Web Proxy, try switching between them. If using SSL/TLS the profile should have decryption enabled.

    Check your Firewall rules doesn't have service set to ANY rather only HTTPS/HTTP

    Also in the Web Policy, I don't see the Red lock, for HTTPs

    It should be already, but confirm the Firewall rule that ins inspecting this traffic has Decyption enabled. (If using the Web Proxy)

    Double-check that Block Invalid certificates and Block unrecognized SSL Protocols is enabled ( Web >> General Settings >> HTTPS Decryption and scanning)

    Have you enabled ATP?

    And finally confirm the traffic is hitting the correct Firewall Rule.

    Regards,

  • Thanks, when i activate HTTPS decrypt all https sites dont work. And when i choose only HTTPS/HTTP services i cant' use network printers, could you give me an advice? thanks.

    For now Im blocking all countries except USA and MX and it looks that works.