Guest User!

You are not Sophos Staff.

This discussion has been locked.
You can no longer post new replies to this discussion. If you have a question you can start a new discussion

EP webprotecton profile OR Network webprotection profile

Dears,
I am asking about the URL-filtering in both EP and UTM, if I have my EP reside in a network behind and protected by the UTM,
Then I allow for example social networking in the EP profile but disallow it in a profile assigned to the network where the EP reside.
Which profile will have the last word, EP profile or network profile?
What I experienced is that the network profile has the last word always "and this disagree with what sophos mentioned.
 So if I allow social networking in EP profile and disallow it in network profile , the result is that the social networking is disallowed.
And when I disallow social networking in EP profile and allow it in the network profile , the result is that the social networking is allowed.
I changed the order of my profiles so the network profile is in the bottom, but this did not change the above result.
Please note that the EP profile working fine when the EP is outside the private network.
I am asking about any ideas about troubleshooting this issue.
Thanks,
Mostafa Aly


This thread was automatically locked due to age.
Parents
  • If I understand correctly, you want to allow the Endpoint users, but disallow the other users in the network.  To do this, you would want to check the feature for scanning on both Endpoint and UTM and put the Profile with the Endpoint Group for the network before the Profile without the Endpoint Group.  Did that work for you?  I haven't tried this.

    Cheers - Bob
     
    Sophos UTM Community Moderator
    Sophos Certified Architect - UTM
    Sophos Certified Engineer - XG
    Gold Solution Partner since 2005
    MediaSoft, Inc. USA
Reply
  • If I understand correctly, you want to allow the Endpoint users, but disallow the other users in the network.  To do this, you would want to check the feature for scanning on both Endpoint and UTM and put the Profile with the Endpoint Group for the network before the Profile without the Endpoint Group.  Did that work for you?  I haven't tried this.

    Cheers - Bob
     
    Sophos UTM Community Moderator
    Sophos Certified Architect - UTM
    Sophos Certified Engineer - XG
    Gold Solution Partner since 2005
    MediaSoft, Inc. USA
Children
No Data
Share Feedback
×

Submitted a Tech Support Case lately from the Support Portal?