Important note about SSL VPN compatibility for 20.0 MR1 with EoL SFOS versions and UTM9 OS. Learn more in the release notes.

This discussion has been locked.
You can no longer post new replies to this discussion. If you have a question you can start a new discussion

VPN global setting not applying changes

Hi, i recently just updated the frimware to the latest 20.0 ver. Problem now i cant save the new ip range in the vpn global setting. As theres and know issue of the range thats need to correct from .5 to .0 after update. Only 2 firewalls seem to be having thise issues after the update. After clicking save it just remain open and doesnt appy changes.

 .



This thread was automatically locked due to age.
Parents Reply Children
  • Hello,

    Thank you for sharing the details over chat.

    We tried applying the settings and it was failing without any error message. We collected the CSC and SSLVPN logs which helped identify the cause.

    ESSAGE Aug 28 06:04:51Z [sslvpn_global_settings:17825]: opcode 'sslvpn_global_settings': time taken: 0.443755318 seconds with return status: '500'
    DEBUG Aug 28 06:04:51Z [worker:17825]: {"response":{"method":"opcode","name":"sslvpn_global_settings","version":"1.14","type":"text","length":104,"data":{ "statusmessage": "Default CA is not configured", "invalidparams": [ "perusercert" ], "status": "501" },"statusCode":500,"statusStrlen":2,"statusString":"OK"}}
    DEBUG Aug 28 06:04:51Z [worker:17825]: # OPCODE Exited: 'sslvpn_global_settings' with Status: '500'

    It was observed that the Default CA was not filled and hence it was failing to save the settings. We asked to fill the default CA and later we managed to save the SSL VPN settings.

    Mayur Makvana
    Technical Account Manager | Global Customer Experience

    Sophos Support Videos | Knowledge Base  |  @SophosSupport | Sign up for SMS Alerts |
    If a post solves your question please use the 'Verify Answer' button.

  • Thank you for the remote support and helping to drill down the issue.

    By setting up the Default CA, The SSL vpn global setting applied the changes successfully.

  •  Could you let us know if it was a migration plus backup/export scenario in this case ?!