Important note about SSL VPN compatibility for 20.0 MR1 with EoL SFOS versions and UTM9 OS. Learn more in the release notes.

Sync AD Group to XGS

I would like to import an on prem Active Directory Security Group into my Sophos XGS 6500.  I already have AD sync'd with the XGS and that is functioning.  I attached a different AD Security Group to an XGS group at one point, but I cannot figure out how to replicate what I did back then.  I know I need to create a local group on the XGS, and then somehow attach the AD group, which will then populate as I add and remove members, but how do I add that AD group to the local group I created?  Any assistance would be appreciated. 

on SFOS 21.0.0 Build 169



Added TAGs
[edited by: Raphael Alganes at 3:41 PM (GMT -8) on 6 Mar 2025]
  • You don't create a local group.  Just import the AD group directly via the SFOS GUI (in the AD server config area).

    CTO, Convergent Information Security Solutions, LLC

    https://www.convergesecurity.com

    Sophos Platinum Partner

    --------------------------------------

    Advice given as posted on this forum does not construe a support relationship or other relationship with Convergent Information Security Solutions, LLC or its subsidiaries.  Use the advice given at your own risk.

    • Thank you Bruce, but I don't see where in:  Authentication > Services to import the group.  All I see are servers, and authentication lists, but no where to actually import said group. 

      • It is next to the AD server. There is a little option to import. 

        __________________________________________________________________________________________________________________

        • It's there.  It is admittedly not very obvious for new admins... so here's a screenshot.

          CTO, Convergent Information Security Solutions, LLC

          https://www.convergesecurity.com

          Sophos Platinum Partner

          --------------------------------------

          Advice given as posted on this forum does not construe a support relationship or other relationship with Convergent Information Security Solutions, LLC or its subsidiaries.  Use the advice given at your own risk.

          • Thank you very much!  Wish I could say I am a new admin, but I just haven't imported an AD group in a while.  I appreciate this very much!