Important note about SSL VPN compatibility for 20.0 MR1 with EoL SFOS versions and UTM9 OS. Learn more in the release notes.

  • Sophos XG HA PPPoE slow reconnect

    Hello! I have 2 PPPoE WAN connection to each other Sophos appliances If i switch to the passive device manually or if one of the monitored interfaces goes down the pppoe reconnect time is so long, maybe this caused by the ISP modems? I am interested in…
  • Sanity Check: Cabling dual ISPs

    Sanity Check: Cabling dual ISPs into separate VLANs and then plugging each one into the Sophos WAN port. Hey All, How are you doing? I wanted to reach out and ask my fellow network engineers at Sophos for a sanity check on my setup. I have a cluster…
  • Server on Different Interface not Reachable from LAN

    I have a server on interface A with its own zone and a static IPv4. It is not reachable from the LAN zone on interface B, even though I have a firewall rule with logging on top of any other rule that says allow from LAN, Any host to Server_Zone, Any host…
  • Configure and Test Best Practice

    Hi, (First, apologies. If this question makes more sense in the UTM forums I'll start there, but I imagine doing it wrong would cause problems with my XGS too before I even get started.) After many years, and some trepidation, I'm moving from a UTM…
  • Sophos XG v18.5.1 - Disable an Interface

    I read in several forum posts that the ability to disable and enable an interface was slated for a v18 feature set, but I do not see it - so I suspect it was not implemented? That would be a pretty big step back to still be missing after 4 years of planned…
  • Help with dual WAN config and second router

    Dear community- I have a scenario I would like to achieve with XG330 and a Synology router. Background story: We have a small office setup with a Synology router, that handles our WAN, LAN, Wifi and VPN (IPSec to GCP as well as L2TP for road warriors…
  • Sophos XG Home: Select interfaces or allow > 5 ?

    The server I have in my lab has 4x10G SFP+ and 4x1gbit ethernet built into the board. Sophos is detecting the 4xSFP+ and only 1x1gbit. Is there anyway to force Sophos to see all 8 or have it ignore the 4x10G SFP+? It looks like Linux under the hood but…
  • Traffic between two interfaces (LAN to LAN) only works one way.

    Hello everyone, I am trying to connect two LAN's that I setup on two separate interfaces (Port 1 and Port 5). I also created a new zone for the LAN on port 5 called TEST_LAN. Here are my rules. RULE 1: LAN to TEST LAN Source Zone: LAN …
  • XG configuration with Optimum and Arris TG1672G

    Hi Can someone help set up Arris and XG firewall? I just got cable internet form Optimum but wish to use my own cable modem. It is Arris TG1672G which I am able to configure fine until I plug in coax form cable company and it gets provider's config…
  • XG Home Edition Issue

    I have a device with 3 ports, Port 1 is 172.16.16.16 and works, hands out IP addresses OK. Subnet is 255.255.255.0 Port 2 is WAN, working OK Port 3 in LAN, tried Static IP, DHCP but it will not hand out IP addresses. Tried adding DHCP, but…
  • Anyone have Starlink working with an XG/XGS?

    There was a previous thread around a year ago where Casey Luchsinger was having issues getting a Starlink device working on an XG. The thread showed no resolution. One of our customers has ordered a Starlink service (to our surprise). Has anyone successfully…
  • Issue with ALIAS ip's op WAN interface

    Hi, We are in a migration traject from barracuda firewalls to a Sophos 2300 A/P cluster. Our cluster is running: SFOS 18.5.2 MR-2-Build380. Yesterday evenening we tried to implement our new firewalls but we have hit a issue where we were not able…
  • Sophos XG "crashing" VDSL modem

    I am not sure how this is possible, but I have issues where the XG firewall causes my FTTN DSL modem to stop responding. Intended Layout (worked for years using VMware workstation edition, recently moved to Hyper-V but think it worked for a while) is…
  • Remove ip address from a physical interface with VLANs

    Hi, I have the WAN port and the LAN port with 2 VLANs on each. Since it is possible from SFOS 18 to have no IP address on physical interfaces with VLANs, I need to get rid of the "dummy" addresses, but : if I uncheck IPV4 configuration on the…
  • Heads-Up: SFOS 18.5.2 MR-2-Build380 losing PPPoE-Passwords

    Just a quick heads-up: I did the newest MR-2-Update on a few Customers-XG devices and all of them lost their PPPoE Passwords. All I needed todo was re-enter the correct password and everything was fine again. Keep in mind: Your ISP might lock your Account…
  • Invalid TCP state.

    Have three static routes for the LAN network. We can ping from the the IP that is in the static route system but we cannot HTTPs or any other application. We get an Invalid TCP state but than other times it shows as being allowed. We have a firewall rule…
  • XGS116 and Vodafone leased line

    We have an XGS116 and a new leased line connection over Vodafone (500/1Gb) we have minimal config interface but when vodafone line is connected to the firewall there is no activity but if we connect a laptop direct with the same config we get a connection…
  • Add LAN/WAN Pool

    Hello, Our ISP has given us a /30 IP for WAN and a /29 Pool of IP for LAN, I have configured the WAN IP but am unable to use /29 pool. I have assigned the /29 pool on a new interface but struggling to get it working. Please advise how to proceed.…
  • Sophos XG(Software) - Not internet access when WAN IP address changed.

    I was staging a Sophos XG(Software) using an internal network. Everything was working fine. However, when I change the WAN to a 4G modem with static IP and passthrough, I was unable to access the internet from the LAN or other subnet. WAN IP was correct…
  • SFOS 18.5.2 MR2-Build380 pppoe problems

    hello our current sfos is SFOS 18.5.1 MR-1-Build326 , and we have 3 WAN [PPPoE (DSL)] , everything works perfect and all WANs connected successfully. But I downloaded SFOS 18.5.2 MR2-Build380 update (from id.sophos.com) and upgrade manually, when…
  • Sophos WAN problem

    I am trying to setup Sophos and I am having some problem with the WAN. The LAN come in my server in a port and I am trying to use the second port as a WAN to go out in my switch. Sophos says my port2 is active but the status is RED and the gateway is…
  • Mirror my traffic on the wan port to a unused NIC on the Qotom computer - can I just let the XG stay in discover mode?

    Hi, I have installed Sophos on a qotom computer. It comes with 8 nics. Now - I'm looking a ZyXEL to get a complete 2,5gbe ethernet network in my house, however, their switch lacks span/mirror possibility. I would like to have it since I feed all the…
  • Sophos XG and Airtel FTTH with static IP address

    Hello, I am working with a customer and facing a strange issue. They have 2 ISP links: Leased Line - Vendor One OTT - Static IP - works absolutely fine FTTH - Airtel - Static IP - works fine with Sophos WAN interface set to DHCP, however face issues…
  • Sopho xg and utm additional interface

    How to create additional interfaces on sopho xg like utm? I cannot find additional interface option on sopho xg. And can i get the same services like server load balancing setting in sopho xg like utm?
  • Configuring Sophos XG136 Firewall port for connecting switches.

    We have 40 Srvers and we want all the users to connect the servers through XG-136. We have 40 Switches out of which 4 are connected to servers. All of these switches which are connected to servers I want to connect them to North End of the Firewall and…