Important note about SSL VPN compatibility for 20.0 MR1 with EoL SFOS versions and UTM9 OS. Learn more in the release notes.

  • XG115 web gui timeout issue

    I received a replacement XG115 device from Sophos (old v2 from 2018) as the old one failed and it seems to have an issue. I restored the backup fine and it seems to pass traffic ok (will know more tomorrow when users are in the office) but the web interface…
  • SSH login to XG with powershell

    Hello Community, has anybody a working Powershell script to connect to the XG Firewall? I'm testing with POSH-SSH module. If I try to connect to the XG with this command "New-SSHSession -ComputerName firewall" I get after entering my credentials this…
  • Sophos XG Admin Password lost

    Hi all Unfortunately, the link from Ifferara in this post doesn't work here: https://community.sophos.com/sophos-xg-firewall/f/discussions/75632/xg105-admin-password-lost I have the following XG Version: SFVH (SFOS 18.0.5 MR-5-Build586) Is it possible…
  • SSH disabled on WAN port and LAN port but get notification of so many different public IP access to ssh

    Hello, We disabled ssh access on WAN port and LAN port, but we get mail notification of many different public IP try to login via ssh.. Below notification which we gets. Message: User 'root' failed to login from '61.177.173.16' using ssh because…
  • HTTP ERROR 404 or 502,403

    Hello we get 404, 403 or 502 errors daily. We need to turn the device off and on continuously for about 40 days in this way. We cannot get support from our seller.
  • Web gui not accessible - Firewall ist starting - Sophos XG - Tomcat Server DEAD can't be restarted

    Sohos XG 18.0.5 MR-5-Build 586 Hi, I'm not able to connect to my Sophos XG via web gui and SSH. The web gui states 'Firewall is starting' all the time. SSH states 'remote side unexpectedly closed network connection'. I followed the steps in this…
  • From SSL VPN Client - Unable to Log into Remote Site Sophos Web - Invalid Traffic

    From SSL VPN Client at Head Office to a Remote Sophos unable to connect to Web Interface either on 4444 or 443. I am able to SSH to the device with no issues. All of the firewall rules are in place at both ends, have multiple sites that work with…
  • unable to ssh

    Hi Am able access the firewall web GUI but not able to access the CLI using SSH and it is showing access denied. Anyone help me on this. Thanks in Advance
  • Nach Restore SSH nicht möglich

    Hallo in die Community nachdem ich eine XG230 aus einem Restore in Betrieb genommen hatte, bin ich nun wieder per WebAdmin fleissig am administrieren. Ich habe aktuell DREI AdminUser mit denen ich in den WebAdmin kommen, User und Kennwort sind also…
  • WAN port respond to admin port only (i.e. 443 and 4444)

    We can only access port 4434 and 4444 from WAN interface. We setup forwarding (i.e. port 81 to internal DVR). Port forwarding doesn't work. Can anyone help, please?
  • password at boot

    Hi, I install the HW-18.0.5_MR-5-586 but i have a prompt password at boot. I think it's ok for the first boot, but after restored by utm migrated configuration, il have still the promt for the admin password . I reimage 3 times but it didn't change…
  • I can only access the web GUI from the same subnet.

    Hello All, I am new to Sophos and I am attempting to configure an XG310 to work in Active-Passive as our backup to our primary FW. I went through the initial setup and assigned a static IP to the FW but I can only access the web GUI from the same subnet…
  • XG FW not reachable after install/initial

    Hi guys, Seems i'm lost in config somewhere, i had to reinstall XG Home VM, tried both 18.0.1 and 18.0.5 versions. After finishing setup, firewall is unreachable on wan and lan ports, cant ping anything until i login true console from host and use…
  • sophos xg firewall-do not have either the IP of my firewall or the password admin

    basically i could not access the web admin or anything else.
  • Delete a DNAt Rule from CLI , accidently forwarded all ports to another machine

    Hello, i accidently click incoming connection to any while setting up Dnat and now i cant access sophos webportal, how can i delete this DNAT rule , is there any way to delete from cli?
  • I cannot search on this site with the following "log comp Appliance access"

    ok When I search for the following all kinds of things come up 2000-4000 posts. But nothing that describes what I am seeing in my log file. I have a log that shows Appliance Access. I can not search for its meaning or what to do about it on here.…
  • Authentication: Locked out by disabling WAN access

    Hi, I did something silly. I clicked to disable WAN admin services and accidentally saved, now I can't login to the admin console any more. The screenshot is from a youtube video I found to show you what I changed. It was this and a box close to it…
  • Nach Erstellung neuer NAT Regel kein Zugriff mehr auf die Weboberfläche

    Hallo Zusammen, ich wollte die Ports für die Verwendung einer App für die Telefonanlage vom Kunden freigeben. Dabei habe ich eine NAT erstellt. Ich war leider zu schnell und habe aus versehen das Quell und Ziel Netz auf "Alle" stehen gelassen. …
  • unable to access admin console and user portal from IPSec (remote access) VPN connection

    Hi everybody. I setup the Sophos Connect client today (we were using SSL-VPN before) and connection to internal lan works great. (webservers, sql, all that) The issue is - I can't access the Web interface of the Sophos. Neither the User Portal…
  • FQDN for Local service ACL exception rule

    Hi, Is it still not possible to add an FQDN host to the Local Service ACL to limit the WAN access to the firewall? What if you have a dynamic IP and want to use dynamic dns in ACL? Thanks.
  • I am Not able to Access WAN IP with specific port from LAN Network Sophos XG135 OS 18

    Hello, I have just received new Filrewall Sophos XG135 and Partner has configured it. We are not able to to Access WAN IP with specific port from LAN Network Sophos XG135 OS 18. Please guide with explaination of rule creation. Vikas
  • Access from the WAN denied

    I have a problem that probably started with a IOS upgrade to 17.5 and 18.4. Our Sophos XG could allowed our users to download vpn client by contacting our public interface, however, that is only possible after activating appliance_access on the console…
  • How can i grant device access to specific VPN-Users?

    Hello, i want to grant device access for a specific VPN-user connection. It seems to me that this is not possible? I can only grant access for the whole VPN zone which is not what i want. In UTM this is absolutely no problem because every VPN-user has…
  • BUG? Can't change Device Access Settings

    Hi! We are migrating from UTM to XG using the migration tool. We generated the config and imported it into our spare SG. We are now seeing an error when editing the local Service ACL in "Administration -> Device Access". We edited it before, but…
  • WebAdmin Access From a Specified Group of Public IPs to XG WAN interface

    Hi, Has anyone tried to configure WebAdmin access through firewall policies and coming from a specific group of public ip only, and accessing the wan interface ip of the xg?