Hello,
I've installed SFOS 19.0.1 MR-1-Build365 in my environment
I have 3 interfaces - WAN, LAN and DMZ and selected ICMP enabled for both LAN and DMZ interfaces in Administration -> Device access tab
In each zone i have installed test host which default GW points to the Sophos interface IP address
I've enabled in System Services -> Log Settings -> all the logs including local ACLs
Now when i try to ping from any of the test hosts the default GW, i expected to see those logs under Sophos -> Log viewer but without any success.
From what i understand, Log viewer only shows transit traffic logs in Log Viewer -> Firewall
My question is where can i locate all the inbound and outbound traffic logs in Sophos GUI? Is it supported?
For example, if somebody from the internet pings my Sophos WAN interface IP address, it's blocked and i want to see a correlated log about it.
Or when somebody is pinging from DMZ the Sophos LAN interface IP address -> will it be logged? Under what category
How can i see those mentioned logs?
Just to confirm, I do see this traffic when enabling Packet capture under Diagnostics tab.
Thanks in advance.
This thread was automatically locked due to age.