Archived from groups: comp.security.firewalls (More info?)
I have some very frequent entries in my Sonicwall log that I don't
understand. They look like that:
Web access request dropped
xx.xx.xx.xx, 3437, WAN 195.xx.xx.xx, 80, DMZ Web (HTTP) 6
All these entries say "Web access request dropped" - why? Destination is
a regular webserver. Sonicwall should not have any reason to drop such
requests. And obviously a lot of other requests pass since the webserver
has a lot of traffic.
Rule 6 which looks like is causing these blocks has nothing to do with
that particular webserver. In fact allows a certain LAN/DMZ connection.
You are about to answer a thread that has been inactive for more than 6 months. If you still wish to proceed, please ensure that your posting is original and does not duplicate or overlap any prior responses to this thread.