Guest User!

You are not Sophos Staff.

This discussion has been locked.
You can no longer post new replies to this discussion. If you have a question you can start a new discussion

Outgoing country block rule not working

XGS6500 (SFOS 19.0.1 MR-1-Build350)

I have incoming and outgoing rules to block traffic from certain countries, both are the same (with source and destination swapped). Incoming block works, outgoing doesn't seem to trigger. I get the same result from policy tests, any outgoing traffic to an IP that triggers the incoming rule just says there was no matching rule.

Anything obviously wrong here or is there something I'm not aware of?



This thread was automatically locked due to age.
Parents
  • So, i don't use this but i do use incoming country blocking rule. To achieve this i needed to also make a DNAT rule (DNAT black hole).
    Any chance this, or similar,  is also needed for outgoing traffic?

     
    SFVH (SFOS 19.5.1 MR-1-Build278)  - Last (re)boot on Februari 20 2023
    Asus H410i-plus - Pentium 6605 Gold - 250GB M.2 PCIe NVMe SSD - 8GB - 3 ports
    [If any of my posts are helpful to you please use the 'Verify Answer' link]
Reply
  • So, i don't use this but i do use incoming country blocking rule. To achieve this i needed to also make a DNAT rule (DNAT black hole).
    Any chance this, or similar,  is also needed for outgoing traffic?

     
    SFVH (SFOS 19.5.1 MR-1-Build278)  - Last (re)boot on Februari 20 2023
    Asus H410i-plus - Pentium 6605 Gold - 250GB M.2 PCIe NVMe SSD - 8GB - 3 ports
    [If any of my posts are helpful to you please use the 'Verify Answer' link]
Children
No Data