This discussion has been locked.
You can no longer post new replies to this discussion. If you have a question you can start a new discussion

Captive Portal - SFOS 18.5.0 GA-Build264

Hi

We having an XGS2300 (SFOS 18.5.0 GA-Build264) and captive portal is configured for all user who wish to access the internet.

Redirection to portal works but,:

  1. No confirmation the users is authenticated and the original page requested is not opened in the captive portal window, but if you open new window or tab then works.
  2. Once authenticated https sites do not load.If we switch off match known users etc then https works. There is no web filter policy at all at present



This thread was automatically locked due to age.
Parents Reply
  • Hi Marco Camacho2 

    As per your current firewall rules, all LAN user traffic is passing from rule id #5 and it is a plain/bypass firewall rule now the user will have access to the internet without authentication and security.

    Hope you have a valid license on Sophos XG to use all Security features 

    If you want to authenticate users you can use the Captive Portal Page or CAA client to be installed on the end System or you can configure STAS, where no Captive Portal or CAA client is required to install, and clientless users, are required to be configured to authenticate users/devices(such as printer, IP Phone) and on firewall rule, you have to tick mark "Match known users" on the firewall rule for authentication to work.

    Browsers don’t trust Sophos IP,to resolve Default CA need to install. You can push certificate at once to all windows systems with AD sever some system or devices required manual installation or  try to check Sophos Network Agent for challenging devices like mobile device and CAA or STAS for windows systems and Clientless user for  printer or IP phone

    Try to check the issue and requirement with the Latest firmware is available: https://community.sophos.com/sophos-xg-firewall/b/blog/posts/sophos-firewall-v19-mr1-re_2d00_release-build-365-is-now-available 

    Thanks and Regards

    "Sophos Partner: Networkkings Pvt Ltd".

    If a post solves your question please use the 'Verify Answer' button.

Children