Forum-Breadcrumbs - Du bist hier:Knowledge BaseSecurity - Don't let perfect the enemy of good: Sophos Firewall [XG/XGS, Cyberoam]Bypass a specific firewall rule f …
Bitte Anmelden, um Beiträge und Themen zu erstellen.
Bypass a specific firewall rule for application classification and ATP (DPI rule exception not 100%)
#1 · 20. Juni 2023, 10:30
Zitat von mpachmann am 20. Juni 2023, 10:30 Uhrhttps://support.sophos.com/support/s/article/KB-000038900?language=en_US
ACHTUNG: Seit v20 hat sich der Befehl geändert https://support.sophos.com/support/s/article/KBA-000006841?language=en_US
set ips ac_atr exception fwrules <add at most eight firewall rule IDs, comma separated>
Bypassing a specific firewall rule for Application Classification and ATP
- Access the command line or click admin > Console in the upper-right corner of the interface.
- Select 4. Device Console.
- Run the command
set ips ac_atp exception fwrules <add at most eight rule IDs, comma separated>
Note:
- To remove the firewall rule exception from Application Classification and ATP, run the following command:
set ips ac_atp exception fwrules none
- To view the bypass rule, run the command:
show ips-settings
https://support.sophos.com/support/s/article/KB-000038900?language=en_US
ACHTUNG: Seit v20 hat sich der Befehl geändert https://support.sophos.com/support/s/article/KBA-000006841?language=en_US
set ips ac_atr exception fwrules <add at most eight firewall rule IDs, comma separated>
Bypassing a specific firewall rule for Application Classification and ATP
- Access the command line or click admin > Console in the upper-right corner of the interface.
- Select 4. Device Console.
- Run the command
set ips ac_atp exception fwrules <add at most eight rule IDs, comma separated>
Note:- To remove the firewall rule exception from Application Classification and ATP, run the following command:
set ips ac_atp exception fwrules none
- To view the bypass rule, run the command:
show ips-settings
- To remove the firewall rule exception from Application Classification and ATP, run the following command:
Zuletzt bearbeitet am 4. September 2024, 10:23 von mpachmann