Important note about SSL VPN compatibility for 20.0 MR1 with EoL SFOS versions and UTM9 OS. Learn more in the release notes.
I would like to import an on prem Active Directory Security Group into my Sophos XGS 6500. I already have AD sync'd with the XGS and that is functioning. I attached a different AD Security Group to an XGS group at one point, but I cannot figure out how to replicate what I did back then. I know I need to create a local group on the XGS, and then somehow attach the AD group, which will then populate as I add and remove members, but how do I add that AD group to the local group I created? Any assistance would be appreciated.
on SFOS 21.0.0 Build 169
You don't create a local group. Just import the AD group directly via the SFOS GUI (in the AD server config area).
CTO, Convergent Information Security Solutions, LLC
https://www.convergesecurity.com
Sophos Platinum Partner
--------------------------------------
Advice given as posted on this forum does not construe a support relationship or other relationship with Convergent Information Security Solutions, LLC or its subsidiaries. Use the advice given at your own risk.
Thank you Bruce, but I don't see where in: Authentication > Services to import the group. All I see are servers, and authentication lists, but no where to actually import said group.
It is next to the AD server. There is a little option to import.
__________________________________________________________________________________________________________________
It's there. It is admittedly not very obvious for new admins... so here's a screenshot.
CTO, Convergent Information Security Solutions, LLC
https://www.convergesecurity.com
Sophos Platinum Partner
--------------------------------------
Advice given as posted on this forum does not construe a support relationship or other relationship with Convergent Information Security Solutions, LLC or its subsidiaries. Use the advice given at your own risk.
Thank you very much! Wish I could say I am a new admin, but I just haven't imported an AD group in a while. I appreciate this very much!