Important note about SSL VPN compatibility for 20.0 MR1 with EoL SFOS versions and UTM9 OS. Learn more in the release notes.

This discussion has been locked.
You can no longer post new replies to this discussion. If you have a question you can start a new discussion

Sophos Firewall SSL VPN - prevent users from seeing a certificate error

Hi all,

We have a Sophos XGS firewall and we have imported a self signed certificate from our organization to the firewall which is used for the admin console and user portal under Admin console and end-user interaction -> certificate. We have also created a provisioning file for our SSL VPN and would like to prevent users from seeing a certificate error when they import the file. We changed the SSL server certificate in the SSL VPN Global Setting to the same certificate instead of ApplianceCertificate but the certificate error is still shown when the provisioning file is imported. Is there a way to make this work? Is preventing the certificate error in SSL VPN only possible using the default certificate?



This thread was automatically locked due to age.
Parents Reply Children
  • Provisioning use the user-portal.
    if you use an IP within the provisioning file, you need the IP within the certificate too.

    Are there some details within the error message? (behind the black bar)


    Dirk

    Systema Gesellschaft für angewandte Datentechnik mbH  // Sophos Platinum Partner
    Sophos Solution Partner since 2003
    If a post solves your question, click the 'Verify Answer' link at this post.

  • Yea I know but I'm not using any IP within the provisioning file, just a dns name which is used in the certificate as well.
    There are no errors shown at all and I can connect successfully after clicking "Continue to server [unsafe]".

    Behind the hidden black bar is just my dns name.