Disclaimer: This information is provided as-is for the benefit of the Community. Please contact Sophos Professional Services if you require assistance with your specific environment.
For Sophos UTM users, check out this Community post
Hey Community,
Some of you may be setting up VPN remote access on the Sophos Firewall for the first time. So we wanted to ensure that everyone was aware of the great support content available to reference.
Sophos Firewall - User Assistance Documentation on VPN
More info: Sophos News: Facilitating remote working with Sophos Firewall
- Thanks to Scott Grebe
Multi-Factor Authentication (MFA)
- With the growing threat of external attacks aimed at compromising privileged accounts, Multi-Factor Authentication (MFA) provides a critical layer of security to significantly reduce the chances of a security breach. MFA ensures that only authorized users and administrators can access mission-critical accounts, computers, and other sensitive resources, even if an attacker gains access to a password. (More info on MFA)
- Sophos Firewall: How to configure one-time password (OTP)
- User Assistance Documentation Guide - Authentication
- Configuring RADIUS authentication
- Note: Sophos Firewall v18 and above supports DUO and other MFA tools with the Radius Timeout configurable option
Sophos Connect Client
- Sophos Connect client is VPN software that runs on Microsoft Windows 7 SP2 and later and Mac OS 10.12 and later. It establishes highly secure, encrypted VPN tunnels for off-site employees.
- User Assistance Documentation Guide - Sophos Connect
- Sophos Firewall: Sophos Connect Client - KBA 133109
- Note: This video is still relevant for v18 and above deployments
Sophos SSL VPN
-
With remote access policies, you can provide access to network resources by individual hosts over the internet using point-to-point encrypted tunnels. Remote access requires SSL certificates and a user name and password. Users can download a customized SSL VPN client software bundle from the user portal. The bundle includes an SSL VPN client, SSL certificates, and a configuration. The client supports many common business applications. Remote access policies use OpenVPN, a full-featured SSL VPN solution.
- User Assistance Documentation Guide - Remote Access SSL VPN
- Sophos Firewall: How to troubleshoot SSL VPN remote access connectivity and data transfer issues - KBA 127189
- Community Read: Sophos Firewall: Troubleshooting 0 Byte SSL VPN File
- Sophos Firewall: How to configure access for SSL VPN remote users over an IPsec VPN - KBA 132758
- Sophos Firewall: How to configure SSL VPN for Mac OS X - KBA 125374
- Sophos Firewall: How to configure SSL VPN remote access - KBA 122769
- Note: The video below is relevant for Sophos Firewall v18 and above deployments
L2TP Remote Access
- The Layer Two Tunneling Protocol (L2TP) enables you to provide connections to your network through private tunnels over the internet.
Sophos Firewall Appliance - Product Matrix: Technical Specs & Throughput
Edited link
[edited by: emmosophos at 9:34 PM (GMT -7) on 3 Oct 2024]