Sophos Client Firewall: ICMP traffic in the 'Blocked' log
With Sophos Client Firewall you are likely to have a lot of ICMP traffic in the 'Blocked' log. This is perfectly normal.
When you receive a packet at a closed port, the computer would normally reply with a 'Port Unreachable' or 'Destination Unreachable' ICMP message. To preserve the computer's stealth status, Sophos Client Firewall blocks this response.
What to do
You can enable this type of ICMP message in the ICMP settings dialog. See the Sophos Client Firewall user manual for details. However, you should check the security implications of this before you do so.
If you need more information or guidance, then please contact technical support.
- Article ID: 15437
- Created: 15 Jun 2006
- Last updated: 26 Jun 2006
