Guest User!

You are not Sophos Staff.

This discussion has been locked.
You can no longer post new replies to this discussion. If you have a question you can start a new discussion

Does country blocking work for 'from' only?

With my old firewall, my mail server in particular gets bombarded from china and russia in particular, so I'd like to switch to UTM9.  I wanted to allow LAN to go to blocked countries, but not allow unsolicited inbound traffic.  It seems like if I block, say, Russian Federation for 'from' only, 'iptables -L -n' shows the exact same output as 'off'.  If I set 'to' or 'all' those seem to be identical to each other as well.  Am I missing something?  Thanks!



This thread was automatically locked due to age.
Parents
  • I never look at the iptables, but Country Blocking works.   There was a bug in the classification process which was addressed in 9.510.   The earlier versions could produce missing or inconsistent country assignments.  According to the 9.510 release notes, the problem only affected web filtering and only when AD SSO was the authentication method.

Reply
  • I never look at the iptables, but Country Blocking works.   There was a bug in the classification process which was addressed in 9.510.   The earlier versions could produce missing or inconsistent country assignments.  According to the 9.510 release notes, the problem only affected web filtering and only when AD SSO was the authentication method.

Children