Skip to main content

2 replies

gfleming
Staff
Staff
February 21, 2023

Do you have UTM enabled on the policy where these logs are originating from? If not its just the log messages stating a firewall connection was blocked due to policy.

cybernet2025
Explorer III
February 21, 2023

Hi Graham
Yes, I do I've enabled UT on the policy. What should I do next? Skip this message or other solutions.

srajeswaran
Staff
Staff
February 21, 2023

Can you validate the denied traffic is expected to be denied? If so, we can just ignore this as a normal traffic deny log.

srajeswaran
Staff
Staff
February 21, 2023

As per the log, the policy ID is "0", which is the default deny policy and it won't have UTM. Can you check the actual policy created between the source and destination interface and see if MS-Teams is allowed in that policy?

 

cybernet2025
Explorer III
February 22, 2023

only allowed for 80 and 443 services. 

gfleming
Staff
Staff
February 22, 2023

There's your answer! If you're only allowing port 80 and 443, anything else will be blocked. Your logs above are showing port 3478 is being blocked.

 

So either allow it or don't but if you don't you will see those log messages.