Guest User!

You are not Sophos Staff.

This discussion has been locked.
You can no longer post new replies to this discussion. If you have a question you can start a new discussion

Source Countries are not reported, displaying "Reserved" only

Hi.

I'm using the most recent version of Sophos XG Firewall in a virtual Proxmox environment. I'm using it as my internet gateway / router. Therefore I have NAT enabled using the default firewall rule with a linked SNAT rule (MASQ).

I enabled DPI and pretty much like the reports :-). But there is one issue: The source countries are not reported properly:

Furthermore, source and destionation zones report the exact same traffic:

I suspect, that this is some issue or misconfiguration with DPI and NAT.

How can I resolve that?

Best

Thomas



This thread was automatically locked due to age.
Parents Reply Children
  • Yes, my rules are configured accordingly and work as expected. The only issue I have is that the reports for Source Countries fail to display these and just show "Reserved" instead. Probably because the firewall rule is processed after de packets are rewritten by the NAT...?

  • Hi,

    please take a step back from your existing rules. If your internal network has unique ip addresses not in the 10 or 172.16 or  192.168 ranges you do not need Nat rules.

    ian

    XG115W - v19.5.1 mr-1 - Home

    If a post solves your question please use the 'Verify Answer' button.

  • Well I use internal IPs: 192.168.X.X. So I have two NATs in place:

    • The standard NAT, that allows communication from inside out and on the way back with MASQ (masquerading internal packets with the external IP and translating those on both directions).
    • The incoming NAT, that allows to expose internal services (nginx, ssh, wireguard, etc...)

    I can't operate that without NAT; how would that work?

  • You have one rule for outgoing traffic and another rule for incoming traffic I hope?
    you do not need a rule for traffic that is answering a connection request from your lan.

    ian

    XG115W - v19.5.1 mr-1 - Home

    If a post solves your question please use the 'Verify Answer' button.

Share Feedback
×

Submitted a Tech Support Case lately from the Support Portal?