Sophos firewall is blocking DNS queries

Discussions around the setup, operation, replacement, and disposal of clerk computers, not to include using MLS
Post Reply
aclawson
Senior Member
Posts: 760
Joined: Fri Jan 19, 2007 6:28 pm

Sophos firewall is blocking DNS queries

#1

Post by aclawson »

I'm working on the stake clerk machine at the moment, and DNS lookups are failing.

The DNS servers configured by the DHCP server (one of the new firewalls) are, in order

8.8.8.8
4.2.2.2
216.49.176.201

If I stop the service Sophos Client Firewall, DNS lookups work normally. If I restart the service DNS lookups stop working again.
david.north
New Member
Posts: 34
Joined: Wed Dec 28, 2011 2:10 pm
Location: Lehi, UT, USA

Re: Sophos firewall is blocking DNS queries

#2

Post by david.north »

Were you able to resolve this problem outside of turning off the Sophos firewall?
We just experienced a similar problem this past Sunday on all three of the clerk computers in one building.
User avatar
johnshaw
Senior Member
Posts: 2273
Joined: Fri Jan 19, 2007 1:55 pm
Location: Syracuse, UT

Re: Sophos firewall is blocking DNS queries

#3

Post by johnshaw »

If you access the Sophos Firewall Logs through the management tool you should be able to see denies for port 53 and it will tell you which rule it is. If a rule has been pushed to Sophos we need to escalate it to the GSC and they can get in touch with someone who can get in touch with someone that will/may address the issue in the future at some point.
“A long habit of not thinking a thing wrong, gives it a superficial appearance of being right, and raises at first a formidable outcry in defense of custom.”
― Thomas Paine, Common Sense
david.north
New Member
Posts: 34
Joined: Wed Dec 28, 2011 2:10 pm
Location: Lehi, UT, USA

Re: Sophos firewall is blocking DNS queries

#4

Post by david.north »

JohnShaw wrote:If you access the Sophos Firewall Logs through the management tool you should be able to see denies for port 53 and it will tell you which rule it is. If a rule has been pushed to Sophos we need to escalate it to the GSC and they can get in touch with someone who can get in touch with someone that will/may address the issue in the future at some point.
Great advice - I'll check the logs and let you know what I find.
aclawson
Senior Member
Posts: 760
Joined: Fri Jan 19, 2007 6:28 pm

Re: Sophos firewall is blocking DNS queries

#5

Post by aclawson »

Did you see anything in the logs?
david.north
New Member
Posts: 34
Joined: Wed Dec 28, 2011 2:10 pm
Location: Lehi, UT, USA

Re: Sophos firewall is blocking DNS queries

#6

Post by david.north »

aclawson wrote:Did you see anything in the logs?
All applications were blocked because of an Invalid Checksum. Global support was unsure how to proceed, and recommended for our circumstance to allow all traffic through the Sophos Firewall and manually set DNS servers.
aclawson
Senior Member
Posts: 760
Joined: Fri Jan 19, 2007 6:28 pm

Re: Sophos firewall is blocking DNS queries

#7

Post by aclawson »

Sophos is proving to be an unreliable choice. Unfortunately we're probably locked into an <x> year contract where <x> = 3-5 years.
russellhltn
Community Administrator
Posts: 34475
Joined: Sat Jan 20, 2007 2:53 pm
Location: U.S.

Re: Sophos firewall is blocking DNS queries

#8

Post by russellhltn »

dnorthut wrote:All applications were blocked because of an Invalid Checksum.
Sounds like uninstall/reinstall time. Local Unit Support can help you with that.
Have you searched the Help Center? Try doing a Google search and adding "site:churchofjesuschrist.org/help" to the search criteria.

So we can better help you, please edit your Profile to include your general location.
Post Reply

Return to “Clerk Computers”