Important note about SSL VPN compatibility for 20.0 MR1 with EoL SFOS versions and UTM9 OS. Learn more in the release notes.

This discussion has been locked.
You can no longer post new replies to this discussion. If you have a question you can start a new discussion

Chaps, could you please keep Sophos Firewall documentation in sync between versions and across countries?

Hello All,

I was trying to disable TLSv1.0 and v1.1 on the 19.5.3 firmware. On entering the fw via SSH, I noted the presence of TLS1.1 for the proxy and captive portal settings.

HTTP add_via_header: on
HTTP core_dump: off
HTTP relay_invalid_http_traffic: off
HTTP connect_timeout: 60
HTTP tunnel_timeout: 300
HTTP client_timeout: 60
HTTP response_timeout: 60
HTTP proxy_tlsv1_0: on
HTTP captive_portal_tlsv1_0: on
HTTP proxy_tlsv1_1: on
HTTP captive_portal_tlsv1_1: on
HTTP captive_portal_x_frame_options: off
HTTP block_proxy_loop: off
HTTP disable_tls_url_categories: off

The en-us + 19.5 version of the online documentation did not show any information for TLSv1.1 on the proxy and captive portal.

After much googling, I noticed the TLSv1.1 explanation / setting was found in the japan docs.

These are two urls for your comparison.

Version 19.0

https://doc.sophos.com/nsg/sophos-firewall/19.0/Help/en-us/webhelp/onlinehelp/CommandLineHelp/DeviceConsole/Set/index.html#http_proxy

https://doc.sophos.com/nsg/sophos-firewall/19.0/Help/ja-jp/webhelp/onlinehelp/CommandLineHelp/DeviceConsole/Set/index.html#http_proxy

Version 19.5

https://doc.sophos.com/nsg/sophos-firewall/19.5/help/en-us/webhelp/onlinehelp/CommandLineHelp/DeviceConsole/Set/index.html#http_proxy

Please do keep them in sync - thanks



This thread was automatically locked due to age.
Parents Reply Children
No Data