Important note about SSL VPN compatibility for 20.0 MR1 with EoL SFOS versions and UTM9 OS. Learn more in the release notes.

This discussion has been locked.
You can no longer post new replies to this discussion. If you have a question you can start a new discussion

XG 17.5 MR10 breaks Antivirus (need Help)

Hi,

i had a fine working XG with 17.5.9 MR9.

Today i upgraded to MR10 and after the reboot Antivirus stopped.

I manual uploaded the lastest patterns, but the Antivius is not running.

tail avd.log shows me

/bin/avd: error while loading shared libraries: libssp.so.0: cannot open shared object file: No such file or directory
/bin/avd: error while loading shared libraries: libssp.so.0: cannot open shared object file: No such file or directory
..

A manual updates with the file sfos_patterns_update.tar gives me this error

2020-04-04 06:36:32 PM: invalid tar file (u2d meta not found) install

i followed this link
https://community.sophos.com/products/xg-firewall/f/initial-setup/117113/sophos-av-pattern-failed-to-update-in-sophos-xg-firewall

But this is not working with MR10.

 

Will a upgrade to the new release MR11 help?

Can anyone provide some help today?

Or should i go back to MR9?



This thread was automatically locked due to age.
Parents
  • Hi this is a known issue and development are working on a fix. I am not sure which versions it applies to yet so upgrading may not help

  • Thanks,

    will a Downgrade to MR9 fix this bananaware?

    Maybe the 24/4 Support can fix this?
    In case someone from support is online, here´s the case ID #9806701

  • Hi, I do not know. I have been dealing with the issue for the last few hours and have been told several other people have also been affected. I have been running MR10 for a little while now so the upgrade process itself is not likely to be the cause of the problem. I did ask if upgrading to MR11 or v18 would solve the issue but support said they are not sure yet as it has only recently been identified as a bug.

    If you have an active case then ask them to link it to NC-58941.

  • At least, 

    i disabled content scanning for my firewall rules (http/https/ftp) now.

    maybe there is realy a 24/7 support at sophos and not only marketing chatter.
    Most of the time support take about a week to respond to any ticket here in europe.

  • I am hoping this is just a hotfix/pattern update that gets pushed out to solve this automatically. As soon as I know what the solution is I will let you know.

Reply Children