Important note about SSL VPN compatibility for 20.0 MR1 with EoL SFOS versions and UTM9 OS. Learn more in the release notes.

  • During upgrade to XGS 19.5 firmware, got more than 70 email alerts for HTTP virus detected

    While upgrading the firmware on my HA stack of sophos XGS 3100, I got more than 70 email alerts for the HTTP virus detected Alert ID: 8001 with the messages below repeatedly: Malware 'Unscannable' was detected and blocked in a download from crl4.digicert…
  • ATP Exceptions is not working

    Hello everyone, I have a problem with two FW (one on Azure, one XG) We have a lot of detections like this (ATP) We saw that this URL centos.brontocdn.com is legit and it's an official Centos Repo. I allowed it here : But both FW are still…
  • Denied OpenVPN connection still transferring data

    I have a strange issue today. I have a firewall rule to block OpenVPN connections in place and it seems to work. However, today I discovered data is still being transferred even the connection is denied. I can see from the firewall log the connection…
  • Block TikTok on Sophos Firewall

    Hi I find odd that none of the major firewalls on the marketing have an built-in option to block or control major social networks like TikTok. TikTok and Instagram are by far one of the worst things for the bandwidth and productivity. Rants asside…
  • IPS Time of signature update issue.

    Dear Friends, We have recently upgrade our Firewall XG310 to latest Firmware ( SFOS 19.0.1 MR-1-Build365) , now we are facing issue in IPS Time of signature update which shows 23:08:29, Nov 11 2022 and the Pattern Updates for IPS and Application signatures…
  • VPN issue

    dear guys we have sophos XG firewall device , now when we block the VPN is working fine on iphone but in android system VPN not blocked so i mean VPN applications will block on iphone but in android still working and the applications on android and…
  • Block VPN Exntesion/Add-on On Chrome, Opera browser

    dear all, I asked this question 9 months ago but unfortunately, still I have no solution for it although I have installed the Security Appliance SSL CA on the end user's machineI've Sophos XG Home that block all Entertainment Web Browser. Problem is…
  • Lastpass blocked by application filtering (Block high risk (Risk Level 4 and 5) apps)

    Hi Sophos Community, I was wondering for a while why some of our customers couldn't reach the Lastpass website. Now I have discovered that its being blocked by application filtering with filter "Block high risk (Risk Level 4 and 5) apps". I am aware…
  • Behaviour of Application Control

    Good Monring, I've an XGS v19.0.1 and want to set an Application Filter (AC) on top of existing Firewall rules. But i'm not sure if i'm understanding how this mechanism is working. My fw-rule is from "serveral internal zones" with "several defined…
  • Block computers from updating windows

    I have created a rule and applied it to a policy but still not blocking. I have attached screenshots of the rule i created and the policy i applied it in.
  • Intrusion Prevention (IPS) high cpu usage - Snort

    Hello, in our company we got about 60-80 users. Each department got his own vlan running over one port. XGS2100 (SFOS 19.0.1 MR-1-Build365) Over the year i was setting up the sopho xg and adding all Firewall rules, like all department are in one…
  • Sophos XGS 4300 application control can't block specific games like mobile legends

    Sophos XGS 4300 application control can't block specific games like mobile legends. Below are the screenshot of the configuration: Thank you,
  • Category of ip address of Anydesk

    After applying Decrypt and scan https, anydesk not working, can u pls provide the Category of ip address of Anydesk, also explain the configuration method
  • Internet and Reporting issue with XGS87

    I have encountered a remote case with this firewall, the setup and issue is as follows: Firewall model: XGS87 Firmware: SFOS 19.0.1 MR-1-Build365 This is a new firewall that we have deployed. Before installing this firewall the customer faced no…
  • No anti updates for nearly 24 hours

    Hi folks, I started investigating why the XG115W was showing high CPU load, normally around 5%, but now showing over 20% for extended peraiod. I checked the ATP, Avira, Sophos AV and Sophos anti spam, All but Anti spam last updated early yesterday…
  • How to block Squid Proxy using Application Control?

    Hi guys, How to block Squid Proxy using Application Control? Few applications like Hoxx VPN use Squid Proxy over port 80/443 to evade detection. Regards
  • connection with bad ip address

    hi, if i have sophos XGS or XG and from lan my users start making connection with bad reputed ip address. then can firewall block it??? ATP is same or it is different? can SOPHOS XG/ XGS also consult some IOC Feed ???
  • application filter events

    Hey, since we installed Sophos XG we are getting a loads of app filter events regarding GaduGadu Messenger application. Strange is that this traffic is comming from almost all users and its like 100-1000 events per few minutes. Ofcourse nobody is actually…
  • How to write custom IPS signatures for blocking applications?

    Hi guys, How to write custom IPS signatures for blocking applications? I have found a few VPNs which are not on the application control list and I would like to block them. Regards
  • "Malware 'Unscannable' was detected and blocked in a download" Every Minutes

    Hi, i've got this message every minute since yesterday. Have you got a any idea ?
  • Malware 'Unscannable' was detected and blocked / *ALERT* Sophos XG Firewall - HTTP virus detected

    Hi everyone, We are getting thousands of alerts from our Sophos XG at the moment, and with the below error alert ID and message: Any possible causes of this? Alert ID: 8001 Message: Malware 'Unscannable' was detected and blocked in a download…
  • Sophos Blocking www.msftconnecttest.com

    Seems as of this morning Sophos XG is blocking the connection page for the msftconnecttest.com anyone else have the same issue? Kent.
  • TikTok Application Control

    Helo I realy dont know how sophos still dont have an TikTok App Control. This app its terrible for productivity and bandwidth. Can you please add TikTok to Application Control? How can i block this app?
  • XG Custom IPS Signatures: Proper Syntax/Capabilities/Usage Question

    So, while setting up IPS on the system, I want to *block* the usual badness including scanners, etc. However, I have regular vulnerability scanning done by US DHS/CISA as part of their Cyber Hygeine program, and they scan regularly. As such, using scanner…
  • Agrab

    Hi, Im starting to get "SCAN Zgrab Scanning Attempt Detected" alerts, I understand who would use these, however how do I stop the alerts as they are ~+ Im sure