Important note about SSL VPN compatibility for 20.0 MR1 with EoL SFOS versions and UTM9 OS. Learn more in the release notes.

This discussion has been locked.
You can no longer post new replies to this discussion. If you have a question you can start a new discussion

Upgrade from XG to XGS Firewall

Hi,

We are upgrading from an XG330 to an XGS3100 and just want to check a couple of things.

We will be exporting the configuration from the XG330 and import into the XGS3100, will aim to have both on the same firmware version when doing this.

We have a site to site IPSEC tunnel and users use Sophos Connect to connect using SSL VPN, but these should still work as we are doing an confiuration import.

Currently the XG330 is registered in Sophos Central, will this need to be removed and re-added?

Also in MDR, again does it need to be re-added?

Any gotchas I should be aware of?

Thanks

Andy



This thread was automatically locked due to age.
Parents
  • Hi Andyhaigh,

    Thank you for reaching out to Sophos Community.

    For your queries, kindly see below.

    We have a site to site IPSEC tunnel and users use Sophos Connect to connect using SSL VPN, but these should still work as we are doing an confiuration import.

    • This will still work as long as you haven't removed the XG330

    Currently the XG330 is registered in Sophos Central, will this need to be removed and re-added?

    • After Migration, you need to remove the XG330 and register the new Firewall

    Also in MDR, again does it need to be re-added?

    • No Need

    Any gotchas I should be aware of?

    • Kindly make sure ATP & IPS are turned on after the migration and that the Sophos Firewall is registered to the central.

    In addition, I'll add here KB for best practice

    Erick Jan
    Community Support Engineer | Sophos Technical Support
    Sophos Support Videos Product Documentation  |  @SophosSupport  | Sign up for SMS Alerts
    If a post solves your question use the 'Verify Answer' link.

Reply
  • Hi Andyhaigh,

    Thank you for reaching out to Sophos Community.

    For your queries, kindly see below.

    We have a site to site IPSEC tunnel and users use Sophos Connect to connect using SSL VPN, but these should still work as we are doing an confiuration import.

    • This will still work as long as you haven't removed the XG330

    Currently the XG330 is registered in Sophos Central, will this need to be removed and re-added?

    • After Migration, you need to remove the XG330 and register the new Firewall

    Also in MDR, again does it need to be re-added?

    • No Need

    Any gotchas I should be aware of?

    • Kindly make sure ATP & IPS are turned on after the migration and that the Sophos Firewall is registered to the central.

    In addition, I'll add here KB for best practice

    Erick Jan
    Community Support Engineer | Sophos Technical Support
    Sophos Support Videos Product Documentation  |  @SophosSupport  | Sign up for SMS Alerts
    If a post solves your question use the 'Verify Answer' link.

Children