Guest User!

You are not Sophos Staff.

This discussion has been locked.
You can no longer post new replies to this discussion. If you have a question you can start a new discussion

WAF Firewall-Profil 'No Profile'

Hallo zusammen,

 

ich beschäftige mich gerade intensiver mit der WebApplicationFirewall der Sophos UTM und arbeite den WAF-Best Practice Guide von Douglas Foster durch, der sehr gut aber auch sehr umfangreich ist.

Nun habe ich noch eine Verständnis-Frage.

Wenn in der WAF beim Firewall-Profile ':: No Profile ::' ausgewählt ist, bedeutet das dann, das keinerlei Schutz/Regeln/Filter greifen?
Es gibt ja weiterhin noch das Profile 'ausgeschalten', bei dem keinerlei Einstellungen gesetzt sind (außer Pass Outlook Anywhere und Monitor-Mode).

Wie ist das dann mit besagtem ':: No Profile ::'? Dies finde ich auch in der Übersicht der Profile nicht. Deswegen bin ich mir etwas unsicher was hier dann geschieht.
Ich nehme mal an, gar nichts (also nicht mal Monitoring) ... aber sicher bin ich mir nicht.

 

Weiß das jemand?

 

Danke schon mal,

Daniel



This thread was automatically locked due to age.
Parents
  • Hallo Daniel,

    Herzlich willkommen hier in der Community !

    (Sorry, my German-speaking brain isn't creating thoughts at the moment. [:(])

    I like to have a separate Virtual Server on the Internal interface that I can use to test.  Once I have that working perfectly with a Firewall Profile, I feel comfortable putting it into production.  If I want to change a setting, I try it first on the Profile with the Virtual Server on the Internal interface before making the adjustment to the production Profile.

    In fact, that's Douglas Foster's guide, and it is formidable!

    MfG - Bob (Bitte auf Deutsch weiterhin.)

     
    Sophos UTM Community Moderator
    Sophos Certified Architect - UTM
    Sophos Certified Engineer - XG
    Gold Solution Partner since 2005
    MediaSoft, Inc. USA
  • Jaydeep said:

    it means that UTM will not scan for any threats or patterns for the Web Traffic going to the real server.

    That's what I thought, but thanks for ensuring that.

     

    BAlfson said:

    I like to have a separate Virtual Server on the Internal interface that I can use to test.  Once I have that working perfectly with a Firewall Profile, I feel comfortable putting it into production.  If I want to change a setting, I try it first on the Profile with the Virtual Server on the Internal interface before making the adjustment to the production Profile.

    Seems like a good way to integrate changes..

     

    BAlfson said:

    In fact, that's Douglas Foster's guide, and it is formidable!

    You right, I mentioned the wrong name. I will correct this in my first post

Reply
  • Jaydeep said:

    it means that UTM will not scan for any threats or patterns for the Web Traffic going to the real server.

    That's what I thought, but thanks for ensuring that.

     

    BAlfson said:

    I like to have a separate Virtual Server on the Internal interface that I can use to test.  Once I have that working perfectly with a Firewall Profile, I feel comfortable putting it into production.  If I want to change a setting, I try it first on the Profile with the Virtual Server on the Internal interface before making the adjustment to the production Profile.

    Seems like a good way to integrate changes..

     

    BAlfson said:

    In fact, that's Douglas Foster's guide, and it is formidable!

    You right, I mentioned the wrong name. I will correct this in my first post

Children
No Data