This discussion has been locked.
You can no longer post new replies to this discussion. If you have a question you can start a new discussion

No categorization -> connection refused

Hello together,

I'm new here. One of our customers recently got a UTM9 (Version  9.204-20) firewall from Sophos and is using the Web Filter. It looks like, there's a problem connecting to the categorization servers, at least from where the firewall is at the moment. I'm getting lots of these errors in the http log:

2014:08:07-14:11:50 SOPHOS httpproxy[5540]: id="0003" severity="info" sys="SecureWeb" sub="http" request="(nil)" function="sc_handle_cmd" file="scr_scanner.c" line="552" message="cffs05.astaro.com: write: Connection refused"

2014:08:07-14:11:50 SOPHOS httpproxy[5540]: id="0003" severity="info" sys="SecureWeb" sub="http" request="0xf1baaa0" function="sc_categorize_url_remote" file="scr_scanner.c" line="993" message="no categorization received for url: http://*****"
2014:08:07-14:11:50 SOPHOS httpproxy[5540]: id="0003" severity="info" sys="SecureWeb" sub="http" request="(nil)" function="sc_handle_cmd" file="scr_scanner.c" line="552" message="cffs05.astaro.com: write: Connection refused"
2014:08:07-14:11:50 SOPHOS httpproxy[5540]: id="0003" severity="info" sys="SecureWeb" sub="http" request="0xf2c1980" function="sc_categorize_url_remote" file="scr_scanner.c" line="993" message="no categorization received for url: http://*****"
2014:08:07-14:11:50 SOPHOS httpproxy[5540]: id="0003" severity="info" sys="SecureWeb" sub="http" request="(nil)" function="sc_handle_cmd" file="scr_scanner.c" line="552" message="cffs05.astaro.com: write: Connection refused"
2014:08:07-14:11:50 SOPHOS httpproxy[5540]: id="0003" severity="info" sys="SecureWeb" sub="http" request="0xf7ae880" function="sc_categorize_url_remote" file="scr_scanner.c" line="993" message="no categorization received for url: *****"
2014:08:07-14:11:50 SOPHOS httpproxy[5540]: id="0003" severity="info" sys="SecureWeb" sub="http" request="0xe91b980" function="send_request_headers" file="request.c" line="396" message="write() on AF 2 socket to 146.0.13.217 failed: Connection refused"


When this happens, the users get a "Connection refused" page shown and aren't happy.
Any idea how I can debug that further or what to do against that?
Is it possible to just accept all not-categorized URLs?

thanks in advance,
Robert


This thread was automatically locked due to age.
Parents
  • robert, that is all that is needed.  You should notice in the http.log that it no longer has the pings to the cffs servers every 10 minutes.

    That being said, switching services doesn't fix the underlying problem that your UTM is having major problems talking to the outside world.
Reply
  • robert, that is all that is needed.  You should notice in the http.log that it no longer has the pings to the cffs servers every 10 minutes.

    That being said, switching services doesn't fix the underlying problem that your UTM is having major problems talking to the outside world.
Children
No Data