Guest User!

You are not Sophos Staff.

This discussion has been locked.
You can no longer post new replies to this discussion. If you have a question you can start a new discussion

I'm coming from the Land of Checkpoint of please excuse the potentially silly question.. Management Rules

In the world of Checkpoint we often begin the rulebase with a rule or rules permitting communication between nodes or networks and the gateway itself.  Are such rules not necessary with the Sophos XG platform/architecture? 

Thank you,



This thread was automatically locked due to age.
  • John,

    XG uses 2 ways to manage traffic:

    • Firewall rules are used to allow/block traffic coming/going to network declared on XG. For example lan to wan, lan to lan, dmz to lan,etc.
    • Device access, Under Administration menu: are used to allow services to XG itself. So if you need to allow web admin interface from only one PC or only from lan zone, this is the place to have a look at.

    Checkpoint uses zone concept too so you should be familiar with.

    Ask one question per thread.

    Regards

  • Thank you.  Sophos XG is quite different from Checkpoint R77 in that way.

     

    John