Link to home
Start Free TrialLog in
Avatar of 911bob
911bobFlag for United States of America

asked on

Accessing AOL Mail inside WatchGuard Firewall

I have a Watchguard Firewall with UTM, I have a user that needs to acces their aol web mail, but it is not allowing her to log in. It says the service is unavailable try later. It does work from home, but not in the office. I have opened it up to allow *.aol.com as well as aol.com and webmail.aol.com though. I have also watched the log and found an application/json that I allow.

What am I missing to allow this user to get her aol mail when in the office?
ASKER CERTIFIED SOLUTION
Avatar of ngailfus
ngailfus
Flag of United States of America image

Link to home
membership
This solution is only available to members.
To access this solution, you must be a member of Experts Exchange.
Start Free Trial
Avatar of 911bob

ASKER

I will try it tomorrow
Avatar of dpk_wal
Which model of FB you have and what version of software are you running. Are you using HTTP proxy service for HTTP access; and are you using webblocker.

Please provide details.

Thank you.
Avatar of 911bob

ASKER

Which model of FB you have X20e
version of software 10.2.7
Are you using HTTP proxy service for HTTP access; Yes
you using webblocker. Yes
With HTTP proxy in place sometimes it would block ActiveX control, Java Applets and unknown contents, this can render a website not to open.

To overcome this problem we can not tweak HTTP proxy settings; only if the website is business critial we can create a HTTP service (non proxy) which would allow the traffic out. Configure as below:
In the configuration page of X20e go to Firewall->Outgoing; edit HTTP under Common Packet Filter Policies, select Apply for Filter, From Any; to public-ip-of-AOL(you get this IP by using nslookup, if there are multiple IP add all); click Submit.

Now you should be able to access AOL. Please implement and update.

Thank you.
Avatar of 911bob

ASKER

Thanks for the other suggestions, but this is the one that works..
You can go into the proxy and add an HTTP exception or you can adjust the proxy in the content type/header type. Watch your firewall log as you attempt to connect and you will see what is being blocked.