Hi,
i want to log all traffic (even if it do not match any rule) coming from WAN. How can I do that?
Firewall is XG which is running on CR50iNG (SFOS 16.05.3 MR-3) C16213132564-B42RR2
This thread was automatically locked due to age.
Ok, I found feature: diagnostics -> packet capture.
I'm looking for ip 1.1.1.1
My wan ip let's say is 2.2.2.2. Why it is showing rule ID as 1? Because my rule 1 is VPN. WTF
IP 10.10.x.x is local pc for which i want to allow all traffic from 1.1.1.1
Ok, i found that rule 1 is not first rule in list, but it's ID is 1.
So then how to allow all traffic from specific IP (let's say 1.1.1.1) to my internal network pc (10.10.x.x). Should I use DNAT as in picture:
Because it is not matching anything
Almis,
you need to create a DNAT to forward external packets directed to WAN servers to internal Server using port and address translation.
If the rule is never hit, you are doing something wrong.
Pay attention with Source, destination and forward to.
On Sophos Website you can find how to create a DNAT.
Regards