Guest User!

You are not Sophos Staff.

This discussion has been locked.
You can no longer post new replies to this discussion. If you have a question you can start a new discussion

How to redirect all requests to the internet from some internal clients to internal server?

Hi!

UTM9 (Release 9.502-4 ) is informing me that some clients are infected with malware. I now blocked these clients using a firewall rule (Network Protection >> Firewall).

I would instead like to redirect all requests from these clients to an internal webserver, showing them an information message that they got blocked. I cannot redirect clients at the firewall, only allow or deny traffic. How do I do it?

Thanks in advance! Simon

PS: My first post here, sorry if I did something wrong. :)



This thread was automatically locked due to age.
Parents
  • I am not in front of the UTM at the moment, but the basics would involve using a reverse proxy (web app/server protection (?) in UTM) to capture the request from internal clients and redirect them to the internal server at that point.  It would require DNS records to be set up and will disallow other clients from reaching the proper site without some funky workarounds, if that is needed.  It would not be a straightforward solution all the way around.

    Have you captured the traffic and inspected the packets?

Reply
  • I am not in front of the UTM at the moment, but the basics would involve using a reverse proxy (web app/server protection (?) in UTM) to capture the request from internal clients and redirect them to the internal server at that point.  It would require DNS records to be set up and will disallow other clients from reaching the proper site without some funky workarounds, if that is needed.  It would not be a straightforward solution all the way around.

    Have you captured the traffic and inspected the packets?

Children
No Data