This discussion has been locked.
You can no longer post new replies to this discussion. If you have a question you can start a new discussion

New to Sophos; need help

As if yesterday evening, I decided to give Sophos a go and set aside pfsense. I love pfsense and all but the instructions are hard to follow and the interface is very confusing. Anyhow, Upon setup up of Sophos UTM 9, I got the internet working and began playing with its features; mainly the network protection and web protection since these interest me. I went through most of the program but found myself at a loss for proper setup of a few key features. Before I ask my questions; i'd like to as that responses provide extremely simplified and very detailed step by step instructions. I am new and am still learning the lay of this land.

1. Network Protection; this seems to be running smoothly but I am finding myself in the need to open a lot of different ports to facilitate connectivity for a number of web services. Amazon and Netflix work without adding ports but the service is slightly degraded. Steam works pretty good without adding ports but Blizzard and or Bungie don't work without open ports. Is there a way to lets stuff like this pass through without disabling or handicapping the network protection by opening up so many ports?

2. Web Protection; I messed around with this but I can't get it to work stably. I turned it on but can't get clients to autoconfig to the proxy. Perhaps its my lack of understanding but I'm pretty sure I didn't set it up correctly. In lieu of this; is there a way to reset web protection back to default without wiping the entire installation and starting over? How do I force it to not filter web services like the ones mention above?

3. In pfsense; setup the software to force OpenDNS as the DNS usig Dynamis DNS and several other menu options. How do I setup the same OpenDNS connection with Sophos?



This thread was automatically locked due to age.
Parents
  • What kind of netflix degradation are you seeing?  There's a setting under web protection, filtering options, misc tab, Streaming Settings.  I have this checked so streaming content is not scanned.

    It's my understanding that firewall rules do not leave ports open all the time. Rather only to the local (lan) ip that requested outside access in the first place.  This is different from port forwarding where inbound access is always available.

    2) Utm supports ddns.  You would add definitions for the opendns servers.  You can define them type host for each IP.  Then add them to the dns forwarder tab.

    Your ddns config for opendns would look something like this.  Lan1 is the label I assigned in my opendns account for the home ip.

     

     

     

  • Thank you for the quick reply. and sorry for the delay with getting back to you. To answer your first question; netflix and amazon prime included on my TV's, works intermittently. When clicking a video on netflix, rarely it works. Mostly though, the video will load to 15% and drop popup and error and other time it will 99% and do the same. The error message is only that it cannot connect to the netflix server. For amazon, it loads a video to 50% then drops off with a bandwidth too low error. This happens with either with the don't filter video streaming box checked. For one of my TV's, i set a static IP for it and add it to the filter to ignore it. In addition to this, i don't have any of the auto configuration set up yet not have a I pointed the devices to use the proxy yet either. probably need a crash course on proper proxy setup. I have read through the posts about setup but the instructions leave me with more questions then answers since the scenario's used are different. Is there a way to reset only web protection to default so I can start that over?

    For the dynamix DNS, that worked beautifully. I was using an incorrect option and the router couldn't update the IP.

  • I'm not sure how to reset to defaults one particular section.  I'm relatively new to utm myself.  I'll make a backup of settings before I start messing with something.  This way there's an easy way to go back.

    The instructions in this link might be helpful to opening up the web filtering to streaming.

     

    drashna.net/.../

Reply Children
No Data