Advisory: Sophos Endpoint "Your connection isn't private" after reboot. Policy settings can be returned to normal. See: KB-000045954 for the latest updates.

Sophos Firewall: v20.0 GA: Feedback and experiences

Release Post:  Sophos Firewall v20 is Now Available  

The EAP Post:  Sophos Firewall: v20.0 EAP1: Feedback and experiences  

The old V19.5 MR3 Post:  Sophos Firewall: v19.5 MR3: Feedback and experiences  

To make the tracking of issues / feedback easier: Please post a potential Sophos Support Case ID within your initial post, so we can track your feedback/issue. 

Release Notes:  https://docs.sophos.com/releasenotes/output/en-us/nsg/sf_200_rn.html 



Pinning.
[bearbeitet von: LuCar Toni um 3:49 PM (GMT -8) am 5 Feb 2024]
Parents
  • Hello

    Upgraded yesterday v19.5 MR3 – Home to v20.0 GA – Home

    Backup emails have stopped working no changes made.

    Notification settings – External email server

    • Test emails work

    Backup & restore – Email

    • Backup now – I get the green banner “Backup has been taken successfully”
    • When I check Win Server 2019 SMTP Logs
      • 2023-11-07 12:03:08 192.168.16.5 Sophos SMTPSVC1 S19APP02 192.168.16.86 0 EHLO - +Sophos 250 0 198 11 0 SMTP - - - -
      • 2023-11-07 12:03:08 192.168.16.5 Sophos SMTPSVC1 S19APP02 192.168.16.86 0 MAIL - +FROM:<x@x.x.x> 552 0 59 45 0 SMTP - - - -
      • 2023-11-07 12:03:08 192.168.16.5 Sophos SMTPSVC1 S19APP02 192.168.16.86 0 RCPT - +TO:<x@x.x.x> 503 0 33 27 0 SMTP - - - -
      • 2023-11-07 12:03:08 192.168.16.5 Sophos SMTPSVC1 S19APP02 192.168.16.86 0 DATA - - 503 0 0 4 0 SMTP - - - -
      • 2023-11-07 12:03:08 192.168.16.5 Sophos SMTPSVC1 S19APP02 192.168.16.86 0 QUIT - Sophos 240 16 70 4 0 SMTP - - - -
    • It looks like no DATA is being passed to the SMTP server

    Regards

    Paul

  • Hello  , 

    Thank you for feedback. 

    When you checked logs on your Win Server 2019 , for SMTP logs 

    'Have you not seen ANY SMTP traffic from SFOS?' or 'You were getting empty emails from SFOS?' - please clarify. 

    Could you please provide support access of your device in 1-1 PM ? so that we could investigate it further 

    Regards,

    Saurabh Pandya 

Reply Children
  • Hello Saurabh

    When you checked logs on your Win Server 2019 , for SMTP logs

    'Have you not seen ANY SMTP traffic from SFOS?' or 'You were getting empty emails from SFOS?' - please clarify.

    • (Email Received) If I send a test email from SFOS it works, and I receive an email as expected. Header and body.
    • SMTP logs from test email
      • 2023-11-08 09:33:54 192.168.16.5 Sophos SMTPSVC1 S19APP02 192.168.16.86 0 EHLO - +Sophos 250 0 198 11 0 SMTP - - - -
      • 2023-11-08 09:33:54 192.168.16.5 Sophos SMTPSVC1 S19APP02 192.168.16.86 0 MAIL - +FROM:<x@x.x.x> 250 0 45 42 15 SMTP - - - -
      • 2023-11-08 09:33:54 192.168.16.5 Sophos SMTPSVC1 S19APP02 192.168.16.86 0 RCPT - +TO:<x@x.x.x> 250 0 30 27 0 SMTP - - - -
      • 2023-11-08 09:33:54 192.168.16.5 Sophos SMTPSVC1 S19APP02 192.168.16.86 0 DATA - <S19APP02IVRmHmvOvPk00000057@S19App02.x.x.x> 250 0 134 968 32 SMTP - - - -
      • 2023-11-08 09:33:54 192.168.16.5 Sophos SMTPSVC1 S19APP02 192.168.16.86 0 QUIT - Sophos 240 47 70 4 0 SMTP - - - -

     

    • (No Email Received) I have a backup up scheduled at 00:15 to email me the backup file. I don’t receive an email.
    • (No Email Received)  If I do Backup now – I get the green banner “Backup has been taken successfully”.  I don't receive an email
    • SMTP logs from backup.
      • 2023-11-08 00:15:08 192.168.16.5 Sophos SMTPSVC1 S19APP02 192.168.16.86 0 EHLO - +Sophos 250 0 198 11 0 SMTP - - - -
      • 2023-11-08 00:15:08 192.168.16.5 Sophos SMTPSVC1 S19APP02 192.168.16.86 0 MAIL - +FROM:< x@x.x.x > 552 0 59 45 0 SMTP - - - -
      • 2023-11-08 00:15:08 192.168.16.5 Sophos SMTPSVC1 S19APP02 192.168.16.86 0 RCPT - +TO:< x@x.x.x > 503 0 33 27 0 SMTP - - - -
      • 2023-11-08 00:15:08 192.168.16.5 Sophos SMTPSVC1 S19APP02 192.168.16.86 0 DATA - - 503 0 0 4 0 SMTP - - - -
      • 2023-11-08 00:15:08 192.168.16.5 Sophos SMTPSVC1 S19APP02 192.168.16.86 0 QUIT - Sophos 240 32 70 4 0 SMTP - - - -

    Please note the difference in the SMTP log text in red

    Regards

    Paul

  • HI Paul, 

    We require access ID for further investigation - is that possible for you to share that via PM ?

    Saurabh Pandya,

    Sr Manager, Software Development, Sophos Firewall