Sophos Community
User
Site
Search
User
Toggle Mobile menu
Community & Product Forums
Blogs
Partners
Events & Webinars
Getting Started
Support Portal
Community Blogs
Application Control
Community
Product documentation
Security
Feedback
Support Portal
Product documentation
Products
Endpoint security
Sophos Endpoint
Sophos XDR
Device Encryption
Sophos Mobile
Network Security
Sophos Firewall
Sophos ZTNA
Sophos Switch
UTM Firewall
Sophos Wireless
Sophos NDR
Email Security
Sophos Email
Phish Threat
Cloud Security
Sophos Central
Sophos Cloud Optix
Support Tools
Sophos integrations
Free tools
AI Solutions
Sophos AI
Services
Management platform
Sophos Professional Services
Sophos Central
Support Portal
Sophos Community log in
Sophos Partners
Partners blog
Local Partner community
Partner news
Resources
MSP guides
Partner Care
Sophos Central
Webinars & Events
Webinars & Events
Calendar
Become a partner
Join our program
Events & Webinars
Events & Webinars
Calendar
Recordings
Getting started in the Community
How to get started
SophosID registration
How to set up your profile
How to contribute and participate
How to manage private messages
Member recognition
Recognition program
Leaderboard
Products and Services
Products
Endpoint security
Sophos Endpoint
Sophos XDR
Device Encryption
Sophos Mobile
Network Security
Sophos Firewall
ZTNA
Sophos Switch
UTM Firewall
Sophos Wireless
NDR
Email Security
Sophos Email
Phish Threat
Cloud Security
Sophos Central
Sophos Cloud Optix
Support Tools
Sophos integrations
Free tools
AI Solutions
Sophos AI
Services
Management platform
Sophos Professional Services
Sophos Central
Support Portal
Sophos Community log in
Blogs
Community Blogs
Application Control
Community
Product documentation
Security
Feedback
Support Portal
Product documentation
Partners
Sophos Partners
Partners blog
Local Partner community
Partner news
Resources
MSP guides
Partner Care
Sophos Central
Webinars & Events
Webinars & Events
Calendar
Become a partner
Join our program
Events & Webinars
Events & Webinars
Events & Webinars
Calendar
Recordings
Getting Started
Getting started in the Community
How to get started
SophosID registration
How to set up your profile
How to contribute and participate
How to manage private messages
Member recognition
Recognition program
Leaderboard
Support Portal
UTM Firewall
Network Protection: Firewall, NAT, QoS, & IPS
Default REJECT rule instead of DROP?
Release Notes & News
Discussions
Recommended Reads
Members
Lifecycle and Migration
More
Cancel
New
UTM Firewall requires membership for participation - click to join
Thread Info
State
Not Answered
Locked
Locked
Replies
5 replies
Subscribers
2 subscribers
Views
2854 views
Users
0 members are here
Options
RSS
More
Cancel
Suggested
This discussion has been locked.
You can no longer post new replies to this discussion. If you have a question you can start a new discussion
Default REJECT rule instead of DROP?
isenberg_01
over 17 years ago
During setup and for problem analysis a default REJECT rule would be nice. Is it possible to change the DROP default to REJECT?
This thread was automatically locked due to age.
Parents
0
BarryG
over 17 years ago
Create a new rule. Make sure it is the LAST rule.
ANY ANY ANY REJECT (log or not, up to you)
Barry
Cancel
Vote Up
0
Vote Down
Cancel
0
isenberg_01
over 17 years ago
in reply to
BarryG
That's what I already tried, but does not work. In the live log only "Default DROP" appears for a connection attempt on a TCP port not bind to any service.
Version: ASG 7.101
Cancel
Vote Up
0
Vote Down
Cancel
0
ClausP
over 17 years ago
in reply to
isenberg_01
rule enabled ?
Cancel
Vote Up
0
Vote Down
Cancel
0
isenberg_01
over 17 years ago
in reply to
ClausP
rule enabled ?
Yes, was green. Even after reboot the same logging and no ICMP-reject.
Cancel
Vote Up
0
Vote Down
Cancel
0
isenberg_01
over 17 years ago
in reply to
isenberg_01
The problem seems to be the destination "Any". With a set destination IP address of the external network interface the reject rule works!
Cancel
Vote Up
0
Vote Down
Cancel
Reply
0
isenberg_01
over 17 years ago
in reply to
isenberg_01
The problem seems to be the destination "Any". With a set destination IP address of the external network interface the reject rule works!
Cancel
Vote Up
0
Vote Down
Cancel
Children
No Data