Important note about SSL VPN compatibility for 20.0 MR1 with EoL SFOS versions and UTM9 OS. Learn more in the release notes.

This discussion has been locked.
You can no longer post new replies to this discussion. If you have a question you can start a new discussion

Sophos Firewall: v20.0 GA: Feedback and experiences

Release Post:  Sophos Firewall v20 is Now Available  

The EAP Post:  Sophos Firewall: v20.0 EAP1: Feedback and experiences  

The old V19.5 MR3 Post:  Sophos Firewall: v19.5 MR3: Feedback and experiences  

To make the tracking of issues / feedback easier: Please post a potential Sophos Support Case ID within your initial post, so we can track your feedback/issue. 

Release Notes:  https://docs.sophos.com/releasenotes/output/en-us/nsg/sf_200_rn.html 



This thread was automatically locked due to age.
Parents
  • Hello. Upgraded yesterday from SFOS 19.5.3 MR-3-Build652 to SFOS 20.0.0 GA-Build222. All went well except for two issues related to icmp/ping.

    1) the ping/icmp does not seem to be working the same. Before upgrade from 19.5.3, ping worked across Site-to-Site IPsec VPN. Now ping is being blocked even though the VPN is working fine. Settings in my Admin->Device Access are the same with Ping/Ping6 checked on VPN and LAN.
    2) I think the related issue is the WAN link manager shows the Active status incorrectly. After upgrade the Backup connection shows green, but Active shows red. They were both green before upgrade. My Active connection is up and working. My Active rule uses ping to my ISP gateway. I can ping the same address from the LAN zone (my laptop) and from the Diagnostics Tools so not sure why it is showing as down.

    Regards, Gary

Reply
  • Hello. Upgraded yesterday from SFOS 19.5.3 MR-3-Build652 to SFOS 20.0.0 GA-Build222. All went well except for two issues related to icmp/ping.

    1) the ping/icmp does not seem to be working the same. Before upgrade from 19.5.3, ping worked across Site-to-Site IPsec VPN. Now ping is being blocked even though the VPN is working fine. Settings in my Admin->Device Access are the same with Ping/Ping6 checked on VPN and LAN.
    2) I think the related issue is the WAN link manager shows the Active status incorrectly. After upgrade the Backup connection shows green, but Active shows red. They were both green before upgrade. My Active connection is up and working. My Active rule uses ping to my ISP gateway. I can ping the same address from the LAN zone (my laptop) and from the Diagnostics Tools so not sure why it is showing as down.

    Regards, Gary

Children