Important note about SSL VPN compatibility for 20.0 MR1 with EoL SFOS versions and UTM9 OS. Learn more in the release notes.

  • OID WAN link manager

    Hi, Does anybody know what the OID and name is of the XGS WAN link manager is so I can monitor this with SNMP? I'm having trouble finding it in the MIB files.
  • ROUTING TRAFFIC TO A DESTINATION VIA A SPECIFIC WAN INTERFACE [SD-WAN ROUTING]

    Hi All, Scenario: XGS 136 firewall with two WAN links [Wan1 and Wan2] Server/URL on the Internet that has a static IP [x.x.x.x] Single LAN for the internal users Requirement: LAN users to use WAN1 for general Internet traffic LAN users…
  • Limit total traffic of each client on open Wi-Fi

    Hello. We have an open Wi-Fi network that anyone can connect to without authenticating. We want each client who connects to be able to browse at most 1Gb of data per day. (of any type, navigation, online video, etc.) Is it possible to do this? Thank…
  • Sophos XGS 3100 LAN to LAN using NAT

    Today we want to replace our old UTM with an XGS 3100 cluster. In advance, we had created rules manually. But we were only able to test it today. We have a LAN port 1 (192.168.2.0/24) and a 2nd LAN on port 7 (192.168.201.0/24) When I access 192.168…
  • Multiple gateways issue

    Hello, I have two different gateways as follows: 1: ISP (pppoe) 2: Wireguard (192.168.1.10) I have a rule that forwards specific destination fqdns/ips via wireguard gateway, nat rule with translated snat as Wireguard (192.168.1.10). Everything…
  • Disabling a Physical Port through a rule - i.e Disabling WAN Physical Port when internet goes down.

    I am facing a very unique scenario where I simply want to disable the one ISP which in going in through Physical port in Firewall when that particular ISP goes down, don't want it as backup or primary, just want that port to turn itself off when ISP goes…
  • Sophos XG115 F/W v19.5 : Opening a range of ports

    I have a Sophos Firewall XG115 with Firmware revision 19.5 I am trying to open ports associated with a LAN Host , using DNAT assistant. There is a range of ports to be opened ports 40,000 to 60,000. I have created a service with ports 1:65535 mapped…
  • port Forwarding not working in sophos XG135

    Dear Sophos Support Team XG135 sophos firewall port forwarding not working properly on our customer ..he has remote access on IPPBX branch..how can i solve this issue
  • SBI site problem

    Ii have to internet One airtel and the other is jio SBI site working on Airtel but when I turn on jio sbi site trum off This is happening on sophos xgs107 firewall
  • (SG210 SFOS 20.0.0) What does weight signify with backup gateway?

    Hey everyone, I'm just wondering what weight is meant to represent when it comes to a backup gateway? Is it a percentage thing? Meaning if the primary gateway goes down, the backup will handle 20% of traffic?
  • Load Balancing Sophos XGS87 Firewall

    Hi all, I am using sophos XGS87 firewall with latest firmware version (SFOS 20.0.0 GA-Build222). I am facing issue with load balancing. Load balancing was working fine till yesterday. But today it is not working all the traffic is passing through…
  • Sophos Firewall: WAN link Manager

    Hi, I need help with two things. Firstly, regarding WAN link manager. We have two ISP to us. ISP-A being primary and ISP-B being secondary usage (Both ISPs are Active type, there are no Backup type). ISP-B status is always displayed as Inactive. I am…
  • Sophos XG cannot ping particulars Domains or IP Addresses

    Hello, we have a problem with a partner, that our system have not access to a domain or ip. In Sophos XG under diagnostis the same. The firewall cannot ping this domain/ip We have set exclusions on web. On Applications are the most services…
  • Sophos Firewall Home Edition v20 with Sky ISP - DHCP Issue on WAN interface

    Hi. I am having what seems a very basic issue getting my WAN connection connected to Sophos Home Firewall version 20, I'm hoping someone can help? I've found various posts regarding this over the years but am still unclear exactly why it's still an…
  • Firewall Subnets on LAN

    I would like to get an opinion on firewalled subnets for security. This would be LAN subnets only. Subnet A is servers and subnet B is desktops. Subnets A and B have outbound internet access only. Subnet B (desktops) need to access Subnet A (Servers)…
  • Need help portforwarding to strongswan IKEv2 vpn server

    I have an IKEV2 vpn server with internal IP 10.83.185.200. I am attempting to portforward traffic from my WAN port to to LAN port. For some reason, I am able to access the vpn server from the LAN side using my public IP. However, when I attempt to access…
  • Integrating NVR Cam system to the network.

    Hello all We have 2 different NVR devices integrated to the Sophos XG firewall Lan zone via regular network switch. Is this type of integration without any VLAN definitions and different Ports is preferable ? This screens are latest situation…
  • Accessing subdomains.

    Hello all. I'm a newb home user coming from OpnSense. I'm having an issue accessing my subdomains. This is something simple that I'm just not understanding. A couple pics will help explain what I'm trying to accomplish, and my setup. Interfaces …
  • IPv6 gateway is not work

    Hello everyone. I had some trouble setting up the XGS136. I have set up an IPOE connection, but the gateway is not enabled. I think this is the reason, but I can't connect to the internet. I have the settings as shown in the image, but is there something…
  • How to block malicious IP or IPs on Sophos firewall

    How to block malicious IP or IPs on Sophos firewall ?
  • DMZ issues with new XGS 3300 firewall

    Hello. We had 2 XG330 firewalls in our environment that failed within a week of each other. I was able to back up the configuration from the working firewall before it failed. We installed 2 new XGS3300 firewalls and restored the configuration to those…
  • Multiple WAN links configuration to different LAN networks

    I Have configured 3 WAN links and all are active, i have also assigned each WAN link to unique LAN network, the links are working well but when i do speed tests i receive a mix up of public IPs from the ISP
  • Setup Static Public IP on firewall from 5G Router

    I have the static IP from the provider. They said there was no gateway, subnet or dns, just APN. I'm looking to connect this similar to a WAN interface for a circuit. I know we have to setup the router as a bridge/pass through. I need the firewall…
  • Problem snat between directly connected interfaces

    Hello community, We have recently transitioned from the SG 230 UTM to the XGS 2300, and we've recreated all our firewall rules from the UTM for the new XGS device. All NAT rules were also recreated. While DNAT rules are functioning perfectly,…
  • cannot ping server over vpn when using reserved IP add

    Hi team, been stuck on this one for a while now. we have an on prem server, and cloud servers, both networks are connected using Amazon VPC VPN. all services, features etc work perfectly fine when in the DHCP dynamic range, i can ping all servers…