Important note about SSL VPN compatibility for 20.0 MR1 with EoL SFOS versions and UTM9 OS. Learn more in the release notes.

  • after upgrade to 19.0.1: logins with admin user no longer possible

    is there something about known issues with the default admin after upgrading? Webadmin and SSH logins are no longer working after we upgraded from 18.5.4 to 19.0.1. On several locations this issue has not been seen but on our XG430 we cannot login afterwards…
  • Sophos XGS Web Admin WebSocket Problems

    Randomly, we cannot access any of our Firewall Web Admin portals via the IP address , but we can SSH into them just fine. We are getting a ERR_SOCKET_NOT_CONNECTED error, I am guessing something in regards to the SSL . However, we did not change anything…
  • Installes Software-Appliance-Image in old XG105 no ping to 172.16.16.16 and no DHCP

    Good morning, I installed the Software-Appliance Image on an old XG105, to use it at home with the Home Use Licence. Now the appliace is starting and I can login with display and keybord. LAN1 is on, but I can not ping 172.16.16.16. And I did not…
  • Sophos XG Home on XG125 Appliance - Cannot connect.

    Hi All, We are Non profit who do charity work. We cannot afford to by new equipment's so got XG 125 donated but without license, We swapped the HDD and managed to get the XG home Edition installed. The SW image we used were SW-19.0.1_MR-1-365. The issue…
  • HowTo Login to XG 19.0.0 GA ? - Blank Message Box

    How do i login to a XG 19.0.0 GA? After i login to the firewall i am presented with a white message box. I tried to switch the URL, but i am redirected to the login page and get the same white message box after login? I tried Edge, Chrome and Chrome…
  • Cannot access Firewall admin via Https on adjacent lan network

    Firewall Https is giving a connection refused when trying to connect via a Lan network connected to the lan network connected to the firewall. firewall is on lan network 10.10.1.0/24 Computer is on 10.3.1.0/24 connected via a router on the lan side…
  • CVE-2022-3236 - Sophos Firewall RCE - Sept 2022

    It is good that Sophos has released fixes for this RCE vulnerability and we know that making sure Webadmin and the User Portal are not exposed to the Internet at large effectively mitigate the threat, but are there any IOCs that can be hunted for to determine…
  • New code injection vulnerability in the User Portal and Webadmin of Sophos Firewall

    Surprised there is no 'banner' announcement of this in the community forum (I learnt about it from a third party security mailing list). I've said it before but I will say it again, I think it is a major failing of Sophos not to have a security alert…
  • Web Admin Logs out Despite "Logout admin session after" being Unchecked.

    When I'm using the web admin gui, I get logged out periodically, anywhere from an hour or so to several hours, even though I don't have " Logout admin session after" checked. Sometimes it doesn't log out at all, which is what I want. How can I prevent…
  • Unable to access Web Admin - Port 4444

    Hello Folks, Firstly this is a Sophos XG Home License so as to my understanding no support from Sophos so I need all your help. I have a Lab Setup at my house which connectec to 2 friends Lab's via VPN. This has been online and working for about 2 years…
  • Appliance access denied error

    Good Day We are currently using sophos XG Firewall. We need to whitelist a range of ip addresses in sophos so we can enable mail fetching for our manage engine service desk plus cloud application. After creating a new firewall rule with the selected…
  • Sophos XGS 126 : access seems impossible

    Hi, I've been trying to access XGS-126 from a web browser. I use MacOS within the network managed by the XGS. The procedure is in https://docs.sophos.com/nsg/sophos-firewall/v17.0.9/PDF/Sophos%20XG%20Firewall%20Web%20Interface%20Reference%20Guide.pdf…
  • Appliance Access denied ? What is really mean?

    Hi All i want to ask about log Comp = Appliance Access denied on log viewer, we currently having a lot of Appliance Access on log viewer i read some artical it said it just a droped broadcast packet form internal (LAN) and external (WAN) but if it was…
  • SOPHOS CAN ONLY BE ACCESSED FROM PUBLIC ADDRESS AND MGMT PORT

    Hi all, we have sophos XGS4300 (SFOS 19.0.0 GA-Build317) and there is some weird condition going on : - Sophos suddenly cant be acces from the local network, we tried plug a laptop directly to the LAN port but nothing work, we can only access it from…
  • Tunnel traffic - unable to access web admin for "HO" firewall (previously worked on UTM)

    Trying to replace a BO UTM with a XG. Running into issues where allowed networks are not allowed to access the HO :4444 (or any other web traffic within the tunnel). The issue effects all SSL/TLS traffic. Any web traffic (regardless of port) times out…
  • Unable to access Local devices Gui

    Dear Team, I have configured XG firewall & SSL VPN . In this case every thing is working fine VPN users able to access server as well as machine but from VPN connection unable to access ROuter GUI ..(Webpage ) Please guide
  • Unable to access Sophos XG when over remote SSL VPN with static IP

    I have created an ACL to allow myself access to my Sophos XG when I connect in using remote SSL VPN. It has always worked fine, but after enabling the use of a static IP, I can no longer access the sophos XG over HTTPS. I can access other devices on my…
  • Unable to connect to Sophos xg 115

    I was working on setting up a port forward, when I lost connection to the Sophos. I rebooted the Sophos and since then I can not access it. I've tried the admin portal and user portal which both fail to load the page. I've also connected my computer to…
  • Pls help me change SSH settings in Device Console ?

    Hello everyone, I am using Sophos XG (Home) v18.5 MR4. I would like to change my SSH listen address to only 192.168.1.1 and port xx ( other than 22). According to Sophos XG's CLI guide, I should be disabling connectivity over SSH first, then re-enabling…
  • XGS Webadmin not loading some pages when connecting over ipsec0

    We have a strange issue to one location connected via IPSec Site-2-Site. The XGS is connected to a SG firewall. The Webadmin of the XGS on that remote location is a bit slow but me an a colleague cannot open the Rules and policies page. Other pages…
  • Sophos - Good meant Popups / Spam in SFOS

    Hello Sophos-Team, is there a way to permanently disable the Popup Spam while logging in to Firewalls of the XGS Series? I know it is meant to highlight the features that are new and can help in many ways but after a while it just gets old fast. …
  • Sophos XG firewall

    How to Access My XG sophos firewall through WAN by domain / host name instead of wan IP address
  • Device Access: SSL-VPN from VPN Zone greyed out - like from Site-2-Site

    We're having the situation that we cannot allow SSL VPN Device Access to a central XG Firewall from locations connected by Site-2-Site IPSec tunnels. That's because the remote locations are automatically assigned to VPN zone in XG. And SFOS does not…
  • Admin not available over ipsec tunnel with traffic selectors.

    When setting up ipsec tunnels between various xgs we see an issue where if using tunnel interfaces with traffic selectors we cannot access the admin 4444 page from another office. SSH and ping work fine so the routes are working . If we use site to site…
  • Why when blocking https does that stop access to the XG GUI?

    Hi folks, due to a little accident I added https to a drop firewall rule, that stopped the vpn from working and also all other devices using https on that network. I was connected to the GUI at the time and lost the connection. Why did the connection…