Skip to content

Firewall Rules Configured to Log Traffic

Low

Explanation

Sophos Firewall provides extensive logging capabilities for traffic, system, and network protection functions. You can use logs to analyze network activity to help identify security issues and reduce network abuse.

Resolution

  1. Go to Protect > Rules and policies.
  2. Ensure Log firewall traffic is checked for configured firewall rules.
  3. Go to Configure > System services > Log settings.
  4. Configure external syslog server and set to send system and security events to external syslog server.