Quantcast
Channel: Sophos User Bulletin Board
Viewing all articles
Browse latest Browse all 14361

[9.060][BUG] Can't block MAC address traffic on different subnet

$
0
0
Hi, the MAC address of my interanal interface is 00:0c:29:e7:c6:d5 .The way the firewall works is that all the traffic passes through the default gateway if the destination is masqueraded. So if you define the destination MAC and try to block, traffic is not blocked since the traffic is sent to the astaro interface first.
Screenshot:
1. Define MACs
2. Block Traffic by source MAC, it works.
3. Block by destination MAC, it doesn't work because astaro's interface is used due to masquerading.

Regards
Bill

Attached Images
File Type: jpg a.jpg (31.9 KB)
File Type: jpg b.JPG (64.3 KB)
File Type: jpg b1.jpg (77.0 KB)
File Type: jpg c.JPG (66.1 KB)

Viewing all articles
Browse latest Browse all 14361

Trending Articles