Important note about SSL VPN compatibility for 20.0 MR1 with EoL SFOS versions and UTM9 OS. Learn more in the release notes.

  • SSH Access Doesn't Work

    I need to log in to our router via SSH because the web console lacks the ability to disable SIP ALG. But when I try to login it claims my password is wrong - even though I just used it 2 minutes ago to access the web console. SSH is enabled for the…
  • Blocking devices from accessing network without vpn

    hi, we had an incident where when of our devices had an attempt of access but with failure due to wrong password trials. I an suspecting that this device was on an unknown network outside our organization due to work from home policy we have. Is there…
  • Cannot connect to XG135

    Hi, I recently acquired a used XG135. When I got it, I plug an ethernet cable on Port1 and the light was on and told myself that all was ok then. So I decided to make a reset factory, and since then the Port1 never show up. No lights, no connection…
  • can't reset my SOPHOS XGS126

    Hi, I can't reset my SOPHOS XGS126. I connect through putty and the RESET password does not work.
  • XG 210 rev 2 Web Port Admin Password reset?

    Hello! I've obtained a retired XG 210 rev2 for my homelab and have performed both factory reset and admin password reset via console. The admin password is successfully reset on the console side as I can login using admin/admin however the web portal…
  • Installing SW-20.0.1_MR-1-342 on SG 115 and can't access 172.16.16.16:4444

    Hey everyone, I'm pretty new to Sophos and networking in general, so this might be a dumb question, but I was recently given a SG 115 appliance to play around with and figured I would install Sophos Firewall v20 MR1 on it instead of UTM. So I figured…
  • Sophos XGS 107 with newest firmware temporary not responding over webinterface

    Hi, I have the problem that the firewall is temporarily not operable via the web interface and is stuck. The status page doesn't show anything when it comes to performance either. tested across various browsers and systems, including sophos central…
  • No access to the web admin via VPN-NAT since V20 MR1 update

    Hello everyone, We are accessing a customer appliance via IPSEC-S2S VPN. Access is made to an IP that is NATed in the tunnel on the customer side and translated in the IPSec config on the customer side. Nothing special, has always worked. In addition…
  • Stopped Access to GUI & SSH

    My sophos Stopped Access to GUI & SSH after creating a NAT rule how can i delete this NAT rule ?
  • Can`t acces Webadmin or SSH from IPSec VPN (Anymore)

    Hey everybody, i have a strange Problem. I have Firewall on Main Office and a Firewall in Azure (Both with Firmware SFOS 19.5.3) I have a working VPN and everything seems to be fine. But i cant access the Main Offices Web GUI or SSH CLI from…
  • Administrar Firewall XG125 Desplegado / instalado

    Hola comunidad, tengo el siguiente inconveniente. Resulta que para la empresa que trabajo compro un XG 125, lo instalo un proveedor y se quedo con la administración del mismo, que puedo hacer para poder tener la administración completa de este, no puedo…
  • Can't access Admin GUI unless I SSH first

    I have two home deployments of Sophos Firewall v20, one at home and one at a family vacation home. I've set up VPN, routes, and rules between without issue. But the strangest issue that I can't seem to resolve is that with the vacation home the Admin…
  • @Admin user login failed while login to web GUI

    Hello Stalwarts, I am trying to login on web GUI portal @admin user but it is getting failed, I have reset the password Using console cable but the error is same when i try to access SSH it's working fine. How to find what is is the issue ? Thanks…
  • SSH Terrapin Prefix Truncation Weakness (CVE-2023-48795

    in recent scanning, we received "SSH Terrapin Prefix Truncation Weakness (CVE-2023-48795)" vulnerability on port 22. just use this command in nmap "nmap -sV -p 22 --script ssh2-enum-algos 192.168.xxx.xxx" if it shows "chacha20-poly1305@openssh.com…
  • Unusual incorrect login attempt in the Admin Portal

    Hello, we have got a notification from the xg that a login was attempted for the admin portal. The admin portal is inaccessible from the internet. Message: The administrative access from IP Address '84.19.xxx.xxx' is blocked for '5'…
  • Too many failed sign-in attempts - what is happening!?

    Hi all, I've been receiving this alert for a while now, let's say at least 2 years!!!, at varying frequencies. sometimes several times a day, sometimes a few times a month. when I check the hosts, I don't find anything in particular, sometimes it even…
  • https service in wan zone

    Dears, I have a two firewalls, main firewall and a secondary firewall, and there is a connection between them through a VPN, in the past, access to the remte firewall from the main headquarters was through the VPN port, but now, when I want to enable…
  • Unsuccessful Administrative Access

    Hi, I have found the below log in one of my firewall. Want to block them The administrative access from IP Address '59.173.19.11' is blocked for '60' minutes after '5' unsuccessful login attempts . Thank You.
  • Cannot connect to Port 4444 or 443 from VLAN on Port1

    Hello, Have an XGS 116 with configured VLAN's on Port1. Trying to get to https://x.x.x.x:4444 or https://x.x.x.x times out when on the VLAN. I can ping all the VLAN devices and the default network devices successfully form the VLAN and vice versa. Device…
  • SPF resetting - multiple...

    I have 2 networks call them 10. and 192... one is for camera's to keep them seperated. Well one of our other building the office network 192. was getting weird lag spiked between buildings.. about 900ft or so run maybe 1000ft. I was like thats weird…
  • Adminportal + SSH on WAN Interface

    Hey Folks, I have a problem and actually dont know how to fix it. I have setuped a new Sophos XG 19.5.X, configured everything I want to but now I see that i am able to access ssh and adminportal from external network and that should not be possible…
  • Can't I delete or rename the "admin" account that accesses the Sophos firewall?

    Due to the company's internal security policy, the account named admin cannot be used, so the name must be changed. Can't I delete or rename the "admin" account that accesses the Sophos firewall?
  • The firewall web admin is not accessible from the LAN.

    Verified that the firewall is accessible via ping on the LAN. Successfully obtained SSH access to the firewall. Enabled appliance access, but the firewall was still inaccessible. Determined that the apache and reportdb services are dead on the firewall…
  • XG 115

    I have an XG 115 from 2019 that is most likely up to date on firmware upgrades. I do not have a console cable, and I have a Mac with Ventura OX, and cannot find a way to install PuTTy. How do I reset the firewall back to factory settings or change the…
  • Bridge mode

    Hi, I have a Sophos 2100 with port 1 and 2 that are in bridge mode without IP where one is WAN and the other DMZ with public IP's. The problem is that I can only access these IP's outside Sophos but I needed to access them from my LAN network to manage…