Important note about SSL VPN compatibility for 20.0 MR1 with EoL SFOS versions and UTM9 OS. Learn more in the release notes.

  • Site-To-Site Sophos <-> AWS VPC: BGP Issues

    Hi, we have a site-to-site tunnel from Sophos Firewall to AWS. Several local (sophos side) networks are appearing in AWS routing tables correctly. However, the SSL-VPN network will not appear in AWS routing tables. When I check bgp information…
  • XGS4500 (SFOS 20.0.2 MR-2-Build378) after Firmware update from 20GA to MR2 stays dead

    Hello Sophos Community, we just updated two XGS4500 (in HA) to 20 MR2 and now the SSLVPN stays dead: After checking the admin interfance I logged into the shell: I used the command: service sslvpn:restart -ds nosync 503 Service Failed We don't…
  • Established sSite to Site SSL VPN, Voip phones only working partially

    Hello - I have an XGS 2100 at HQ. We were using a RED device to connect the branch office Phone and LAN traffic via VPN to the HQ PBX/LAN and everything worked fine. Given the rollout of the latest OS, the RED is no longer compatible, so we are attempting…
  • Using SG Firewall as a RED device

    Hello, can you continue to use the SGs at the secondary locations as RED devices with an XGS or should you switch to an SD-RED 20 or SD-RED 60? Thank you very much
  • Sophos XGS site-to-site SSL VPN static IP address for client

    Hello, I have Sophos XG 2300 with firmware 19.5.3 MR-3. I'm trying to set a static IP address for a site-to-site SSL VPN client. Is there any way to achieve this? Whatever I do it keeps getting leased IP address from Global DHCP pool or the VPN…
  • Sophos XGS Site-To-Site SSL VPN will not auto connect after reboot

    Hi, We have a Sophos XGS 107 (Client) connecting to another unit XGS 2100 (Server) via Site-To-Site SSL VPN. We noticed the Site-to-Site SSL VPN will not auto connect after the Client unit get restarted When it happened, we manually on/off the SSL…
  • No SSL S2S Tunnel after SSD Upgrade

    Hello Folks, a customer installed the ssd upgrade and after the reboot all ssl site-2-site tunnels don't work. ssl remote access works, ipsec tunnels are working. here are some lines from the sslvpn.log: we created a new connection, same issue…
  • Site To Site SSL VPN random disconnection

    Hi everyone, We have a cloud Sophos 19.5 appliance with a public IP. We use it to setup a site to site SSL VPN to another Sophos 19.5 with is located behind a 3rd party firewall. For some reason, the VPN behaviour is erratic. It could work for few…
  • Help configuring VPN site-to-site on Sophos XGS

    Hello, I hope you can help me, Currently I need to configure a site-to-site SSL VPN, the problem I have is that the ISP is giving me a private IP and I cannot manage the modem to give the public IP to the WAN of the sophos XGS. Is there a way to configure…
  • Site to Site SSL VPN connection established, but cannot access network resources

    The connection is established: But my client is unable to access server-side resources, nor my server-side hosts are able to access client-side resources.
  • HPE ILO Access via SSLVPN

    Hi, I am connected with SSL VPN, everything is accessible. The HP ILO is unfortunately only accessible from the lan, but I would like to access it via SSL VPN. What is the best way to do this? Regards Markus
  • SSLVPN Outbound interface choose

    Hi. We've a FW with 2 WAN interfaces in the office: - 1 slower with fixed IP - 1 faster with dynamic IP This FW establishes a SSLVPN site-to-site to another Sophos FW in our Datacenter. But this is the thing, I cannot choose outbound interface…
  • SSL Site to Site VPN: Can only ping some endpoints

    Hi all I have a Site to Site SSL VPN configured between two locations, with Subnets 192.168.100.0 /24 server side and 172.16.18.0 /24 client side. The connection says its active and I have added rules on both firewalls to allow from LAN to VPN and…
  • VPN Site to site no ping on one way

    Hi, I've depolyed a site-to-site SSL VPN between two XGS (HO Server and BO Client) HO network is 192.168.3.0/24 and BO network is 192.168.2.0/24. I'm able to ping from BO to HO but not the opposite. Tha packet capture says IP_Spoof - Violation…
  • VPN SSL Site to Site

    Good afternoon, I am starting to test the options that XG Firewall has to work with VPN. Currently I want to set up a Site to Site SSL VPN with two geographically separated XG. The example configuration of both is as follows: XG1 and VPN server…
  • XGS Firewall DNS Request Route over SSL Site2Site VPN

    Hello everyone. I have 2 XGS Firewalls connected via SSL Site2Site VPN, which works good. I created a DNS Request Route for contoso.com (changed of course to my setup) to go to DC DNS IP in main office. This worked for quite some time, now it does…
  • Site to Site SSL VPN cannot connect with another LAN

    Hello Expert, I've issue with Site to Site SSL VPN to connected with another LAN (File Share Server). I've tried many times to connect with the server but not success. My issue is PC2 cannot access (ping/trace route) with the File Share Server (ip…
  • XG86 Random Issue on SSL Site to Site VPN after upgrade to 19

    I have a Site to Site (XG is server) and before upgrade all work for year. After upgrade randomly (i think this happen on night for some sevice restart maybe?) the firewall not use the Tunnel to Route the traffic The VPN is working from the other…
  • Printer SMTP to Printerserver - over SSL site-to-site VPN

    Hello, After 4days searching, I need to post my question here... We changed from expensive MPLS to SSL VPN (site-to-site) between 2 XG-Firewalls. Since this change, we have (only) one thing not working. We have a printerserver (MyQ) running in HQ…
  • Site to site SSL VPN static route from remote site to HQ not working!

    I have an issue with Static routes on Sophos. I will try to keep this as clean and easy as possible. I have a site to site SSL VPN connection from 192.168.21.254 (HQ site) to 192.168.43.254 (Remote site) On the HQ site i have a DHL Firewall with…
  • Query

    Good morning I have a question, I have two sophos connected to each other by sslvpn site to site, in one of them there is a wan connection that allows external connection to a client. Is it possible to connect from the sophos that does not have a wan…
  • Site to Site SSL vpn

    Hi, I have one site to site ssl VPN tunnel from Site office to HO DC firewall. I am getting authentication failure in logs. I am not able to understand why I am getting these logs. Can anyone help to solve this issue.
  • SSL VPN S2S configured

    Hi, I have configured based on the KB - SSL VPN Site to Site. But not aware as to how to connect from remote PC to SSL VPN S2S. Kindly advise.
  • SSL VPN site to site

    Hi, Is SSL -VPN site to site requires XG Appliance at both the ends. ?