Howdy!
I'm getting used to the operations of my new XG135 firewall. I'm configuring users for IPSEC VPN client access. I can create a user on the firewall. I then navigate to the firewall's User Portal and log in as the user. The User Portal displays a QR that I scan using the Sophos Authenticator on my phone. I then log in to the User Portal as the user this time with the 2FA code appended to the user's password. I land on the User Portal page shown below.
When I try to download either of the Windows or macOS clients, I don't get any kind of executable or installer. Instead, I get a text file called "info.txt" with the following content.
Requested file could not be provided. Make sure Pattern Updates are working correctly. You can find it under 'Backup & Firmware' -> 'Pattern Updates'
I've checked my firewall's Pattern Updates and the Sophos Connect clients are there and have been updated recently as shown below.
The firewall has the latest firmware (SFOS 18.0.4 MR-4) and all the Pattern Updates look good (populated and have recent timestamps).
I am able to download the Sophos Connect clients while managing the firewall through Sophos Central. This is from the "VPN > IPsec (remote access)" page. When I do this I get a zip file containing the files
I have used the Sophos Connect_1.4_(IPsec).pkg successfuly to install on a Mac. Similarly, SophosConnect_2.0_(IPsec_and_SSLVPN).msi works fine for Windows.
Thanks for your attention to my problem. Let me know if you need more information. I look forward to getting this resolved.
Sincerely,
Chris
Yes, We are aware about the issue and working on the fix.
Hello Chris,
Thank you for contacting the Sophos Community.
This issue is being investigated under NC-70289
As a workaround, you can share the Client with users if you download it from the XG it self.
Configure >> VPN >> IPSec (Remote Access) >> Download Client
Regards,
Thanks for getting back to me. I'll be handing out Clients manually for now.
Just to be sure...Does your reference to NC-70289 means that Sophos is aware of the issue (has a bug report or internal support ticket) and that a fix will be out sometime? If so, I'm satisfied.
Any updates on this? Would love to point users to the portal instead of them relying on us for the client.
Would also like to know for an update, we use the SSL-VPN client not Sophos Connect so no workaround to this issue I can see, clearly urgent requirement given the majority of users working remotely.
In the meantime, use GPO / Software deployment and deploy the files remotely, if possible.
__________________________________________________________________________________________________________________
How can I even get the SSLVPN Client and Config files?
Sophos Connect can do this with SC2.0/2.1. https://community.sophos.com/sophos-xg-firewall/b/blog/posts/sophos-connect-2-0-is-now-ga
That’s the issue we don’t use the connect client, we have everyone set up on the SSL VPN Client haha, so we don’t have a workaround, hence the urgency
Start migrating to Sophos Connect, as it is the better solution in the long time.
I can't find any Item like 'Sophos Connect' in the vpn menue. SFOS 18.0.4 MR-4
and the link 'Konfiguration für andere Betriebssysteme' in the user Portal will not work.
I can't see any advantage.