BWC Cybersecurity Overlord ✭✭✭
Reactions
-
Re: Can the SSL-VPN/Virtual Office Login Page be disabled
@Q_Mark no worries, it depends what the auditor is complaining about. Is it just because of Port 80, then my solution is the way to go. Is it about the Virtual Office than Prestons way is the right o… (View Post)1 -
Re: TLS Encrypted Client Hello (ECH) - will break CFS without DPI-SSL
@JaviSD you can easily check this with a Packet Monitor on the Firewall, if you can see the requested address in the Client Hello as cleartext it's not encrypted. I tested this with the latest Google… (View Post)1 -
Re: packet trace
@Pischta I guess it's the 50th time this month alone, but here again, the Packet Monitor :) It does not show you the rule/route information, but shows if packets are getting through or not, getting t… (View Post)2 -
Re: How to allow Endpoint to completely bypass firewall
@Twizz728 as long as the Security Services are activated on WAN it'll be inspected. A seperate Zone without the Services will not do the trick, IMHO. You could create an Access Rule from LAN to WAN f… (View Post)1 -
Re: How to do source NAT in TZ570
@Manoj it's pretty straight forward. Source Original: Internal IP Source Translated: X1 IP Destination Original: Any Destination Translated: Original --Michael@BWC (View Post)1