Guest User!

You are not Sophos Staff.

This discussion has been locked.
You can no longer post new replies to this discussion. If you have a question you can start a new discussion

Create a rule with source matching Network and User Group?

Hi everyone,

Similar to in TMG and Palo Alto, is it possible to match both source user group and source network together when building a rule?

i.e. VPN Access users coming in on the VPN subnet can access services x,y,z.

Thanks in advance.

KJ



This thread was automatically locked due to age.
  • Hi, Karl, and welcome to the UTM Community!

    Yes, when a user is logged into Remote Access on the UTM, his "Username (User Network)" object is populated with the IP assigned to him.

    You might want to tell us more precisely what you're trying to accomplish as there might be a better waywith WebAdmin thanusing the same techniques as with TMG and PA.

    Cheers - Bob

  • Hi Bob,

    Thanks for the reply. Perhaps I'm just overthinking it at the moment. I'm new to Sophos and migrating rules from TMG to Sophos and perhaps I can simply use user at the source as they are required to authenticate anyway I should leave the IP source off and simply filter by active user.

    Thanks,

    Karl