This discussion has been locked.
You can no longer post new replies to this discussion. If you have a question you can start a new discussion

Outgoing country block rule not working

XGS6500 (SFOS 19.0.1 MR-1-Build350)

I have incoming and outgoing rules to block traffic from certain countries, both are the same (with source and destination swapped). Incoming block works, outgoing doesn't seem to trigger. I get the same result from policy tests, any outgoing traffic to an IP that triggers the incoming rule just says there was no matching rule.

Anything obviously wrong here or is there something I'm not aware of?



This thread was automatically locked due to age.

Top Replies

  • Hello there,

    Thank you for contacting the Sophos Community.

    Most likely you have another Firewall Rule for the outbound traffic that is taking precedence over the one you are showing us.

    Try creating a 

    Source Zone: LAN

    Souce Network: Any

    Destination Zones: WAN

    Destination Networks: Belarus, China, Russian Federation

    And make sure you put this on on  the very TOP

    Regards, 

    Jump to answer
Parents
  • Just a crazy thought: could you change the Source Zone to LAN and the Destination Zone to WAN and see if that makes a difference? (Assuming you use LAN and WAN.) It seems like I once had a rule that I had to be more specific on like that.

Reply
  • Just a crazy thought: could you change the Source Zone to LAN and the Destination Zone to WAN and see if that makes a difference? (Assuming you use LAN and WAN.) It seems like I once had a rule that I had to be more specific on like that.

Children