Sophos Firewall v22 EAP is now available! Click here to learn more.
I have encountered a problem with MFA for access with vpn on a sophos xgs 136: in log Authentication views:
"User xxx to login to Firewall through Local authentication mechanism from 10.10.103.1 because of wrong credentials"
"User xxx failed to login to VPN portal through Local,AD authentication mechanism because of wrong credentials"
if I run the "syncronize token time offset" the user can access the vpn.
The user credential are right with AD.
Can you help me please ?
Hi Filippo Dragoni ,
Try to increase the Maximum verification code offset on the firewall and validate if there is any change, in case issue persist, we can check this further with the support...

Thanks & Regards,
_______________________________________________________________
Vivek Jagad | Team Lead, Technical Support, Global Customer Experience
Log a Support Case | Sophos Service Guide
Best Practices – Support Case | Security Advisories
Compare Sophos next-gen Firewall | Fortune Favors the prepared
Sophos Community | Product Documentation | Sophos Techvids | SMS
If a post solves your question please use the 'Verify Answer' button.