Comments
-
With the current FIrmware 1.21(ABZH.0) the Object does not correctly show the ssl-tun and also the Firewall Rules now generate Hits. This issue has been resolved.
-
It seems the new Firmware somewhat mitigated the Problem, but its still there. I had a rule at Position 65, that didn't work, if i moved it up for example to Rule 10, then the NAT Rule suddendly worked. It has been working until three weeks ago, which was shortly before the firewall auto-updated to the newest firmware.
-
Strange, your Interface is Called tun0, while mine is called ssl-tun.
-
I ran into this exact Problem yesterday. If i set up a NAT-Rule from WAN to LAN, for Example for Port 443, all 443 Traffic trough an IPSec Tunnel lands there as well Interface: ge1 Source-IP: any External IP: any Internal IP: [IP-of-Webserver] Port Mapping Type: Service External/Internal Service: https If we have multiple…
-
We added an exception for customername.sharepoint.com as well as dual-spo-0003.spo-msedge.net to the Content-Filter ⇒ Trusted Websites, DNS-Content-Filter ⇒ Allow List, Reputation Filter ⇒ Allow List (IP of the DNS Entry), DNS-Thread Filter ⇒ Allow-List, and URL-Threat Filter ⇒ Allow List After this we rebootet the ATP500…