Important note about SSL VPN compatibility for 20.0 MR1 with EoL SFOS versions and UTM9 OS. Learn more in the release notes.

This discussion has been locked.
You can no longer post new replies to this discussion. If you have a question you can start a new discussion

SFOS 20.0.0 GA-Build222 DHCP ISSUES

Hello evryone.

after updating Sophos firewall to  SFOS 20.0.0 GA-Build222 the DHCP stop relaing ip adress in all network devisies, i try to desabel./enabled DHCP, reload firewall no result.

i was oblige to downgrade to SFOS 19.5.3 MR-3-Build652 and every thing goes On.

someone had this probleme ?



This thread was automatically locked due to age.
Parents Reply Children
  • Before I log a support case I am going to re-do my subnet addressing.  I am going to us a /21 scheme instead of a /27 scheme.  This will separate my physical addresses more and allow more addressing.  This is going to require more work because i will have to go adjust all static addresses to the new scheme.  I will wait till the weekend to do this because I don't want to disrupt users with much downtime.  After I make this update and do a backup I will try the update again.  My new subnet mask will be 255.255.248.0. 

  • Hi  Noted with thanks, in case of any issue with DHCP IP leased after re-do subnet addressing, please do not hesitate to log a support case to investigate it further, so the support team may review TCPDUMP, drop, PCAP, and other relevant info to drill down the issue further. 

    Regards,

    Vishal Ranpariya
    Technical Account Manager | Sophos Technical Support

    Sophos Support Videos | Knowledge Base  |  @SophosSupport | Sign up for SMS Alerts |
    If a post solves your question use the 'Verify Answer' link.

  • I reconfigured the interface in ver 19.5.3-652.  That was definitely not fun.  It got locked twice and I had to do a  factory reset and reload backups.   I made sure there was no overlap in the subnets.  I think the reason it got locked up is because I missed  checking for the same subnet on two different physical ports.  The current configuration is shown below.  I used CIDR /24  on all ports and gave them a range in DHCP.  I may have had some overlap before, but there is none now.  All of my devices have access and I can from print from IPhone and Android using apps; they are on different subnets then the printers.  I had a lot of static addresses that needed to be adjusted so there was some significant down time.    With the new addressing I have tons of space (more that I will ever need) to add more devices.  After I verified that everything in ver 19.5.3 worked I upgraded to ver 20.0-222.  So far ver 20.0-222 is working, it only been up a couple of hours.  No locked ports this time.  In the previous scheme I tried to split up the same subnet  on several different ports.

  • My static addresses are set up in neighbors ARP-NDP,  not DHCP.  I only have one DHCP static IP.

  • Hi  Thank you for sharing the update with us and I hope things are fine until now with DHCP with V20..! 

    Regards,

    Vishal Ranpariya
    Technical Account Manager | Sophos Technical Support

    Sophos Support Videos | Knowledge Base  |  @SophosSupport | Sign up for SMS Alerts |
    If a post solves your question use the 'Verify Answer' link.