Guest User!

You are not Sophos Staff.

This discussion has been locked.
You can no longer post new replies to this discussion. If you have a question you can start a new discussion

UTM running Full Transparent, web filtering not working

I have my UTM (9.404-5) running in full transparent mode.  I have activated web filtering .. but it's not working.  I have put in a website under the "Block these websites" section (www.technewsworld and technewsworld.com) for testing purposes.  No websites are blocked however.  I can browse right to them.

Any suggestions for places to look for incorrect configuration?  My network setup is Cable modem >Cisco router>UTM 9 (Bridged)>Switch>PCs.

Looking at the web filtering live log, I see several entries that say "failed to resolve passthrough6.fw-notify.net"

Thank you .. This is driving me crazy!



This thread was automatically locked due to age.
Parents
  • I had the same issue from a customer.

    Make sure, as BAlfson said, that networks should not overlap. Also make sure that both interfaces have Default gateway.

    I had this issue last year and I remember the error message inside the web live log was the same.

    Hope this helps!

  • Luk, if I understand his topology, I don't think he wants a default gateway on anything other than br0.  Right?

    Cheers - Bob

  • Good question Bob.

    I searched for my customer issue on ticketing system and he tried to configure the bridge without gateway on that bridge and web filtering stopped working.

    In fact, Sophos UTM bridge uses the default gateway on the bridge interface to send URL check requests to Sophos Labs. Even if there is another interface with the same IP/Subnet as the bridge, UTM will always use the bridge gateway for URL reputation.

    We need more info from Andrew however.

  •  

    All interfaces other than the bridge are turned off. The bridge has a gateway defined and it is correct. The appliance has been restarted several times since the management interfaces were turned off and the appliance has been running for about a week. That should be plenty of time for the daemon to do it's thing.

Reply
  •  

    All interfaces other than the bridge are turned off. The bridge has a gateway defined and it is correct. The appliance has been restarted several times since the management interfaces were turned off and the appliance has been running for about a week. That should be plenty of time for the daemon to do it's thing.

Children