This discussion has been locked.
You can no longer post new replies to this discussion. If you have a question you can start a new discussion

Mobile control sync over an internal wifi

Hi All,

I have a Sophos UTM with a SMC server behind it published through web application firewall,  this works fine all IOS and Android devices from external can sync.

I also have a BYOD network wifi on the firewall that users connect to with their phones when in the office,  this was working fine until recently,  Androids connect to this fine.  IOS devices connected to this BYOD network fail to sync,  I can't see anything in the firewall logs that would prevent this and the fact it did work is frustrating,  on the BYOD check the APNS works fine as well, it's just syncing the mobile control app that fails,  and activating new ones.

Any advice would be appreciated.

Thanks

Ross

:57801


This thread was automatically locked due to age.
Parents
  • Well what do you know... after you mentioning about proxy and NAT I removed this network from proxy and added just a firewall rule for web surfing, the app then stayed open longer without crashing but would still crash, APN worked.

    Checked FW logs and it wasn't able to access the SMC server, so I created a firewall rule for this, opened the app and it closed straight away!

    So I figure this could be a cert issue when it's going direct to the server on 443, I created a DNAT from the Wifi Network going to SMC change to external SMC IP and 443...it WORKS!

    Thanks for your help, Is this how yours is setup or does yours work direct from WiFi network to the SMC server?
Reply
  • Well what do you know... after you mentioning about proxy and NAT I removed this network from proxy and added just a firewall rule for web surfing, the app then stayed open longer without crashing but would still crash, APN worked.

    Checked FW logs and it wasn't able to access the SMC server, so I created a firewall rule for this, opened the app and it closed straight away!

    So I figure this could be a cert issue when it's going direct to the server on 443, I created a DNAT from the Wifi Network going to SMC change to external SMC IP and 443...it WORKS!

    Thanks for your help, Is this how yours is setup or does yours work direct from WiFi network to the SMC server?
Children
No Data