I recently setup a Sophos UTM 9 VM on ESXi 6 with 4 physical NICs: Management Network, WAN, DMZ, LAN. Each of those interfaces is mapped to its own vSwitch.
On the Sophos UTM VM, I have the 3 interfaces for WAN, DMZ, and LAN. WAN gets DHCP from ISP, DMZ is set to 192.168.5.1/26, and LAN is set to 192.168.1.1/24. The Sophos UTM IP is on 192.168.1.1. Should the firewall be allowing traffic between the LAN and DMZ by default? I don't want traffic allowed between these two interfaces.
What is strange is that I can connect to a DMZ server on port 80 from a LAN client, but I cannot connect to a LAN server on port 80 from a DMZ client.
Any suggestions?
Thanks.
This thread was automatically locked due to age.