Important note about SSL VPN compatibility for 20.0 MR1 with EoL SFOS versions and UTM9 OS. Learn more in the release notes.

Sophos Firewall: v20.0 MR2: Feedback and experiences

Release Post:  Sophos Firewall OS v20 MR2 is Now Available    

The old V20.0 MR1 Post:  Sophos Firewall: v20.0 MR1: Feedback and experiences  

To make the tracking of issues / feedback easier: Please post a potential Sophos Support Case ID within your initial post, so we can track your feedback/issue. 

Release Notes:  https://docs.sophos.com/releasenotes/output/en-us/nsg/sf_200_rn.html 

Important Note on EOL Sophos RED Support:

The legacy EOL RED 15, RED 15w, and RED 50 are not supported in v20 MR1. Customers using these devices should upgrade to SD-RED or a smaller XGS appliance before upgrading to MR1 to maintain connectivity. See the following article for details: Sophos RED: End-of-life of RED 15/15(w) and RED 50



Edited TAGs
[edited by: Erick Jan at 8:29 AM (GMT -7) on 23 Jul 2024]

Top Replies

Parents
  • Hi, this morning my network connection speed was changed and a static IP4 address applied. I now have a 250/100 connection, all very good eventually. The issue that has arisen is the IPv6 PD no longer works and to use IPv6 I had to enable the default IPv6 SNAT rule. Until the network change this morning IPv6 PD was working and I did not need a SNAT for IPv6 traffic.

    I have not restarted the XG115W after this morning's changes.

    So in summary, there appears to be a bug in the IPv6 PD implementation.

    Ian

    Update:- The network termination device was not restarted during the upgrade to v20.0.2 MR-2 only the XG115W.

    XG115W - v20.0.2 MR-2 - Home

    XG on VM 8 - v21 GA

    If a post solves your question please use the 'Verify Answer' button.

Reply
  • Hi, this morning my network connection speed was changed and a static IP4 address applied. I now have a 250/100 connection, all very good eventually. The issue that has arisen is the IPv6 PD no longer works and to use IPv6 I had to enable the default IPv6 SNAT rule. Until the network change this morning IPv6 PD was working and I did not need a SNAT for IPv6 traffic.

    I have not restarted the XG115W after this morning's changes.

    So in summary, there appears to be a bug in the IPv6 PD implementation.

    Ian

    Update:- The network termination device was not restarted during the upgrade to v20.0.2 MR-2 only the XG115W.

    XG115W - v20.0.2 MR-2 - Home

    XG on VM 8 - v21 GA

    If a post solves your question please use the 'Verify Answer' button.

Children