Guest User!

You are not Sophos Staff.

This discussion has been locked.
You can no longer post new replies to this discussion. If you have a question you can start a new discussion

Deny access between to networks on one interface

Hi.
We have sophos sg 310 UTM. We have internal networks 192.168.0.0/23 and 192.168.4.0/24 on one of the interface. When i try to connect wifi router which is in 192.168.4.0/24 via web interface example: https://192.168.4.2 from network 192.168.0.0/23 connection is success. We need block any connection from 192.168.0.0/23 to 192.168.4.0/24 except one ip(192.168.0.3) address. Is it possible via firewall rule? if yes, what should it look like?



This thread was automatically locked due to age.
  • Hello ,

    Thank you for reaching out to the community, Firewall rules work from top to bottom fashion, you if the traffic for both the subnets do reach on the FW i.e. [192.168.0.0/23 to 192.168.4.0/24] then you may create a FW rule with both subnets in source and destination with action drop/reject and then create another rule on top of that rule for [192.168.0.3] with the action allow. 

    Thanks & Regards,
    _______________________________________________________________

    Vivek Jagad | Team Lead, Global Support & Services 


    Sophos Community | Product Documentation | Sophos Techvids | SMS
    If a post solves your question please use the 'Verify Answer' button.