Important note about SSL VPN compatibility for 20.0 MR1 with EoL SFOS versions and UTM9 OS. Learn more in the release notes.

  • Routing Tabelle auf XG 85w wird nicht aktualisiert ( deutsch / english)

    Guten Tag, ich habe einen VPN Tunnel zwischen einer Sophos XG 85 w SFOS 17.0.8 und einer SG 230 hergestellen. Der Tunnel geht online und soweit ist alles gut, nur wird traffic von der XG 85 w Seite nicht in den Tunnel geroutet. Ich habe in der…
  • Routing/Firewalling - two gateways on Head Office LAN segment

    Hi all, I've hunted through the forum but I am unable to find precisely what I am experiencing. I think my issues is related to firewalling. I have a network with two gateways. One is a managed router controlling access to all of our remote sites…
  • Sophos XG Azure Site-to-Site to Point-to-Site routing issue

    Hi everyone! I'm setting up a lab for a customer PoC and I'm having trouble routing from On-Prem connected by IPSEC Site 2 Site Azure VPN to users dialled in via Azure IKEv2 Point 2 Site and vice versa.. Please see below: The on-prem server can…
  • Static routing issue (Devices under same network every few min get network disconnection)

    Hi Sophos experts, Now I have two gateways one is for internet other is for IDC as below. Sophos XG (192.168.1.66) Router (192.168.1.52) PC (192.168.1.0/24) Now XG has static routing for IDC as below -IP/Netmask : 192.168.101.0/24 …
  • Access across subnets

    Goal: Allow persons on the guest network to stream iTunes to Airport Express units connected to the main LAN network. XG firewall with 3 networks: Port1 LAN 192.168.7.1/255.255.255.0 Kids Wifi 172.16.40.1 /255.255.255.0 Guest Wifi 172.16.50…
  • Active sessions don't fail back when primary gateway restored

    Hardware: XG-125 Firmware version: 17.06 ---------------------------- Configuration: - Gateway 1 - Active, weight 1, connected to a low latency terrestrial connection - Gateway 2 - Backup, inherit weight from primary, connected to a satellite…
  • Route LAN Traffic over VPN to break out WAN

    Good day all, I have a XG135 at a client site and setup a SSL VPN (Site 2 Site) with our Firewall XG 115. I have successfully setup the SSL VPN and have created the Firewall Rules to see from the client site my Datacentre network. (Backup server…
  • Sophos Anti-virus blocking Cisco VPN Clients

    Buenos días Quería consultar lo siguiente, tengo un equipo con sophos Endpoint Security and control 10.8. Cuando conecto el equipo por medio de un Wifi y después abro la aplicación del cisco System VPN me manda un error 51 como el adjunto, después de…
  • Cisco router and switch behind a sophos firewall

    Hi Team, I would like to ask something regarding on my setup, I will have this kind of setup ISP>SOPHOS FIREWALL> CISCO ROUTER> CISCO CORE SWITCH> DISTRO SWITCH> ACCESS SWITCH. The router and switches will not be a problem for me on routing them to…
  • redirect multiple https ports to single ip adress Sophos XG sfos17.06

    We have got the following situation: we want to redirect multiple dns hosts to a single ip adres. For example: External dns record https://test1.companyname.com redirects to 123.123.123.1 In the firewall i want https://test1.companyname.com redirected…
  • Routing from WAN to LAN - Some help needed

    Hello everybody, I need some help here. I recently migrated from pfSense to Sophos XG home and I really like it, but I have some trouble getting my routing configured. Basically I want to configure remote access to my media servers. What I did is…
  • Zugriff von Standort A über VPN auf spezielle externe IP-Adresse über Feste-IP von Standort B

    Hallo zusammen, ich probiere hier schon ewig rum, evtl. kann mir von euch jemand einen Tipp geben. Welches Problem habe ich? <Client> -> <SITE A> -> <IPSec-VPN> -> <SITE B> -> <STATIC EXTERNAL IP> -> <Backend> Ich müsste vom Standort A über den VPN…
  • Best practice for protecting a business centre with multiple clients

    Hi all, we have taken on a business centre as a client. They have a draytek firewall that has a primary and secondary internet connection but there is no segregation of the network between clients. All clients connect into the same network switches on…
  • When ISP modem in router mode - whats the best setup for XG WAN?

    Hi all - we are new to Sophos XG firewalls. We have a client that has a vodafone vDSL router that when put it in bridge mode, the Sophos XG won't connect to it for some reason. It seems we can only retain internet connectivity if the Vodafone device is…
  • Need help settings up a Sophos XG router on a DOT network

    Basically i currently have a DOT system (Digital Office Technology) with a router that handles all phones so i can't get rid of it, i would like to setup the Sophos XG behind this router and also use it to do my VPN, is this possible? What is the best…
  • XG Blocking DNS Lookup - DNS Request Timeout Error

    Hi all, I recently tried to point our DNS servers to our XG230 but when I run an nslookup I'm receiving the error "dns request timed out. timeout was 2 seconds". Our setup is pretty simple. We have 2 x Windows 2012 DNS servers. Each server points…
  • Layer 3 switch and ipsec problem: connections denied and UNREPLIED from remote site but ping work

    Hello, i have this nasty problem and i don't know to bang my head anymore. I cannot reach a device on a remote site from HQ site and another remote site via IPSEC. Topology: Introduction: i have 4 XG in 4 location and a HUB-SPOKE IPSEC VPN setup…
  • Route Remote site through Site 2 Site tunnel in order to access host

    Here is our current setup - We have 3 sites, remote site is 192.168.0.0, HQ is 192.168.1.0, and a site to site tunnel to a hosting site where we access one host (192.168.216.3). The tunnel is configured between HQ and the hosting company, that connection…
  • Why no inbound traffic on an IPsec site-to-site VPN using pre-shared key between SOPHOS to Sonicwall

    Hello, We have an IPSec site-to-site VPN which is Active and Connected but we're not getting any inbound traffic, we can't ping from the Remote to any Local IP's but it works the other way around. Tried a bunch of different combinations of Policy…
  • Traffic not routing back to tun0 with SSL VPN

    Sophos XG 210 is NOT the default gateway on my current LAN, nor should it be. Port 1 - 192.168.10.2/24 & 192.168.200.2/24 Port 2 - Public WAN IPs SSL VPN 10.10.200.20/24 I am able to successfully connect to the SSL VPN, using LDAP (AD) authentication…
  • VPN Verbindung von WLAN ins LAN

    Wir haben eine Firewall XG. Mit dem SSL VPN Client verbinden wir uns ins LAN. Das funktioniert soweit. Nun haben wir auf der Firewall einen weiteren Port auf dem das WLAN in einem anderen Subnetz liegt. Das WLAN hat keinen Zugriff auf das LAN. Um vom…
  • Remote SSL VPN to IPSEC Site2Site VPNs

    Have setup SSL Remote VPN Connects fine and is able to access the LAN of the XG What i want to achieve is to be able to access IPSEC VPNs to other remote LANs via the XG. I have tried setting the VPN settings to use as default gateway and adding…
  • Sophos XG redirecting ping

    Hi. I have a problem with connectivity between two subnets on my sophos XG. The Sophos XG is my router and firewall and have 2 interfaces, one for wan and one for LAN. The LAN interface has 3 alias with 3 subnets, lets say 10.1.1.0/24, 10.1.2.0/24 and…
  • Routing ins WAN/Internet funktioniert nicht

    Hallo liebe Community, egal aus welchem Netz ich komme, die Sophos routet nicht ins WAN-Netz/Internet weiter. WAF und der Ping von der Sophos ins Internet klappt ohne Probleme, Default Route hat er auch das richtige Gateway. Schnittstellen…
  • Windows update on secondary / backup link

    We have 2 x WAN links, one as a primary the second as a backup. we have found windows update killing our primary link of late so would like to send all windows update based traffic on the secondary/backup link. We are running a Sophos XG 16.05.8 MR…