How do I switch off perfect forward security for a site to site IPSec VPN?
There is no tickbox on the policy settings page. This means I cannot connect to Microsoft Azure.
This thread was automatically locked due to age.
Important note about SSL VPN compatibility for 20.0 MR1 with EoL SFOS versions and UTM9 OS. Learn more in the release notes.
How do I switch off perfect forward security for a site to site IPSec VPN?
There is no tickbox on the policy settings page. This means I cannot connect to Microsoft Azure.
Edit your IPSec policy and set the PFS Group in Phase 2 to None. That will disable PFS, at least when looking at the IPsec Policies.. I hope it will help you out
Sophos UTM 9.3 Certified Engineer
Sophos UTM 9.3 Certified Architect
Sophos XG v.15 Certified Engineer
Sophos XG v.17 Certified Engineer
Sophos XG v.17 Certified Architect