Guest User!

You are not Sophos Staff.

This discussion has been locked.
You can no longer post new replies to this discussion. If you have a question you can start a new discussion

Strange Firewall rules or something not understood

My goal is to install a telephony server in the LAN.

This server must be accessible from the internet with a number of protocols here (PRO_Starface). 
To prepare this I created a NAT rule and a firewall rule to access this server from internet. 

Just for test I used the RDP protocol. 
The strange thing is, in the services section
with Services on Any I can access my Server with RDP
With Services on PRO_RDP I can’t access my Server with RDP.

Something else :
To protect the access i create a RDP IP Access List With the first IP in the List access OKWith the second IP in the List access NOK 

you have an idea, thanks in advance



This thread was automatically locked due to age.
Parents
  • Sounds like an issue with which happens first (rule or NAT), and I think NAT happens before anything else? And you're doing PNAT so that the destination port is no longer PRO_RDP.

    Or is it the other way around? It can be counter-intuitive.

  • Thank you for your answer.

    I don't have much experience but how is this possible
    NAT must be possible only if the firewall rule allows it
    Also I don't actually do PNAT because RDP stay RDP ???

    If it doesn't work that way how to only allow RDP to this server on the LAN ?

    Regards
    
    
     
    
    
     
    
    
     
     
    
    
Reply
  • Thank you for your answer.

    I don't have much experience but how is this possible
    NAT must be possible only if the firewall rule allows it
    Also I don't actually do PNAT because RDP stay RDP ???

    If it doesn't work that way how to only allow RDP to this server on the LAN ?

    Regards
    
    
     
    
    
     
    
    
     
     
    
    
Children