Configuring VPN Remote Access for the first time on your Sophos XG Firewall? Check out this useful Community post!
Advisory: Sophos XG Firewall - Antivirus service stopped due to failed pattern update. Please visit this KBA for the latest updates
We'd love to hear about it! Click here to go to the product suggestion community
Disclaimer: This information is posted as-is and the content should be referenced at your own risk.
In certain user situations, the SSL VPN Client download may incorrectly be presented as a 0 byte download from the User Portal.
This Community post outlines several troubleshooting suggestions.
If using the default self-signed certificate resolves the issue, please verify the custom CA is properly assembled (proper signing CA, etc.)
To regenerate an individual user's SSL VPN certificate, you will have to navigate on the XG GUI and delete their user certificate (Certificates > Certificates)
If you are still experiencing issues, you can regenerate the Default CA by navigating to Certificates > Certificate AuthoritiesThis will force the regeneration of all SSL VPN user certificates and will also restart the SSL VPN service.
Note: that if any of these actions are performed, affected users will have to re-download their SSL VPN installation file to utilize the new certificate.
# cd tmp
# cd /content/sslvpn
rw-rr- 1 1000 100 413 Apr 24 2015 client-config-template.ovpn
rw-rr- 1 1000 100 111.1K Jun 17 19:35 ssl-vpn-config-installer.exe
rw-rr- 1 1000 100 1.4M Jun 17 19:35 ssl-vpn-client-installer.exe
rw-rr- 1 1000 100 72 Jun 17 19:49 U2DVERSION
If files are not present, try to manually update patterns for SSL VPN Module