This discussion has been locked.
You can no longer post new replies to this discussion. If you have a question you can start a new discussion

Proxy Profile Not Working on different networks

Hi Folks

I am running version 7.402 on 2x425a apps.

I am testing out some profiles to stop admin users from being able to surf the internet. 
The profile seems to work on our ground floor as this is still using the same network as that on the internal interface of the asg

2009:05:22-11:32:30 WPBCAstaroFW1-2 httpproxy[2643]: id="0002" severity="info" sys="SecureWeb" sub="http" name="web request blocked" action="block" method="GET" srcip="150.xx.xx.xx" user="ifoster" statuscode="403" cached="0" profile="REF_EvPvUOEAxd (PROFILE_WPBC)" filteraction="REF_cjDFArDXoS (NO_INTERNET)" size="2247" time="4 ms" request="0xb2a4f308" url="runonce.msn.com/runonce3.aspx" exceptions="" error=""

But when I browse the internet from a different VLAN I get this
I have configured this VLAN to have access to the proxy.

2009:05:22-11:27:19 WPBCAstaroFW1-2 httpproxy[2643]: id="0001" severity="info" sys="SecureWeb" sub="http" name="http access" action="pass" method="GET" srcip="172.xx.xx.xx" user="ifoster" statuscode="200" cached="0" profile="REF_LYslmKqrUp (Floor_2_VLAN)" filteraction="REF_cjDFArDXoS (NO_INTERNET)" size="0" time="21063 ms" request="0xbfc6308" url="runonce.msn.com/.../png"

Any ideas, the only difference I can see is the source networks are different


This thread was automatically locked due to age.
Parents
  • It looks like the second one got by on: exceptions="av,content,url"

    If you need more help, please post pics of the edit of filter action NO_INTERNET and of the profles for the two VLANs.

    Cheers - Bob
     
    Sophos UTM Community Moderator
    Sophos Certified Architect - UTM
    Sophos Certified Engineer - XG
    Gold Solution Partner since 2005
    MediaSoft, Inc. USA
Reply
  • It looks like the second one got by on: exceptions="av,content,url"

    If you need more help, please post pics of the edit of filter action NO_INTERNET and of the profles for the two VLANs.

    Cheers - Bob
     
    Sophos UTM Community Moderator
    Sophos Certified Architect - UTM
    Sophos Certified Engineer - XG
    Gold Solution Partner since 2005
    MediaSoft, Inc. USA
Children