Important note about SSL VPN compatibility for 20.0 MR1 with EoL SFOS versions and UTM9 OS. Learn more in the release notes.

  • SSL VPN SOPHOS XG 19.5 Build 197

    Hey Guys, I have followed the guides for creating an SSL-VPN that authenticates through Active Directory. When I have my laptop internal to the network and initiate a VPN connect it works fine. Connection is established. The logs show this. However…
  • Assigning static ip to SSL VPN users results in Authentication failed when switching networks

    Just upgraded from 19.5.0 GA-Build197 to 19.5.1 MR-1-Build278 in hopes that this would be resolved. The issue is mobile phones are unable to reconnect the SSL VPN when they roam between different networks, eg from a local wifi to mobile isp and vice…
  • Client VPN SSL and Static Route

    Good morning, on an XG router I have created VPN-SLL users, everything is ok, the VPNSSL users access the client LAN, but I can't reach a static route defined on the XG router, I checked the FW rules, the accessible networks in the VPN Policy, etc.…
  • Installing Tunnelblick on mac to connect to XGS126 SLL VPN

    I am trying to help a mac user to connect to our SSL VPN. Using the Sophos client connect app. It is not supported on mac according to sophos support. Sophos support sent me instructions on setting up Tunnelblick however as is often the case, the instruction…
  • DNS issue after a short period - SSL VPN

    Hi, I have a user using SSL VPN (Remote Access) to connect to the office. This worked good over the last months, but we're now having strange issues: After a short ( but undefined) period of time, he's unable to access any internal web resources…
  • Sending Remote access traffic through Site-to-site VPN, with 1:n nat translation on XGS

    Hello Sophos community, I am trying to set up a szenario where I have to send IPsec Remote access traffic through a Site-to-Site IPsec VPN with 1:n NAT translation on a XGS Firewall. It seems to work on UTM: Sending Remote access traffic through…
  • SSL VPN to Sophos Connect Migration Anomalies; Some Resources Now Unavailable

    Hi Sophos Community, We've switched from using the SSL VPN client to Sophos Connect. All configurations used for SSL VPN via the old client are now used with Sophos Connect. For the most part everything has gone smoothly, only now some actions…
  • SSL VPN GLobal Settings dosen't save

    Hello, I have a Problem with Global Settig update , save. See my attachment. What IP-Address is it ??
  • SSL VPN used in a VPN gateway, trouble accessing remote network from other networks going through the gateway. Any remedy?

    A remote vendor used his SSL VPN connection (login and OVPN file) in a VPN gateway. His goal is for various machines on multiple networks on his end to access my network through this VPN gateway. The vendor is able to reach my network from the gateway…
  • Configuring dual WAN IP with an SSL VPN client

    we have to Dual WAN with static IP- refer to below screenshot 118.189.XXX.XX is the primary WAN IP address. 165.21.XX.XX is the secondary WAN IP address. The problem is that SSL VPN is configured with the IP address 118.189.XXX.XX (Primary WAN)…
  • Create SSLVPN user certificates without user portal

    Hi, is there any way to generate the "per user certificates" used for SSLVPN without logging in to the userportal as an admin? Users are AD users. We have a big SSLVPN rollout and this would help us to do this much faster. Regards, Sebastia…
  • Firewall single Official IP with NAT causes SSLVPN not to work

    Hi everybody, I have done an Update from SFOS 18 to SFOS 19 and since the Update I am not able to connecto to SSLVPN any more. In CLI I can see that all incomming Packets are dropped for SSLVPN when running ( drop-packet-capture "port 1194"). But…
  • When will SSL VPN Users need to re-download configs?

    Hello, we are currently testing 2FA with our XG v 19.0.1 and also some VPN changes. Now every user has to download his personal config file from the user portal so he can connect. Is there a KB or something else where it is written WHICH option(s…
  • Use Remote Access SSL VPN to reach 4 different internal networks

    Hello, We convert the configuration from UTM 135 to XGS 136 and we have one Problem with Remote Access SSL VPN and sNAT. With the UTM we have a C2S SSL VPN for Homeoffice users to the main office (1). The main office has 3 additional S2S connections…
  • SSL VPN Routing Questions

    So I have SSL VPN setup and working. I need to know if there is a way to create specific routes for VPN traffic. We have an internal application that resolves to a Public Range, but our internal router has a route statement to send that instead to an…
  • Sophos XGS SSL-VPN .ovpn files wrong output

    Dear all, We are struggling with the generated .opvn Connection files users can download from the user portal on the WAN ports for VPN we do not know and cannot find it in the online help, how they are created. our setting: XGS 3100 Firewall, Firmware…
  • Access application on local subnet without login through SSL VPN connection

    Did set up a SSL VPN connection (Clients are in the 10.81.0.0/16 range.. Using an iOS device as client and could connect to my network in the 192.168.1.x range. Due to the fact that I'm not on the same subnet the application requires me to login again…
  • BUG? cant change vpn settings

    Hello. Ive got SSL-VPN on SophosXR Home. I wanted to make some changes and i just cant. its showing an error which is weird - false positive? Red arrows are fields that i wanted to change ERROR
  • Security Hearbeat over SSL VPN doesn't work

    We have 2 XGS 2300 (HA mode) with firmware 19.0.1 MR365, We tried to configure a rule for ssl vpn user with option "Block client without heartbeat" checked". Rule matchs also for clients wihout endpoint installed. We tried KB-000038254 without luck…
  • Powershell add and remove Users in SSL VPN Policy via API (Enable/disable SSL VPN Policy)

    Hi, I want to to add and remove Users to/from an existing SSL VPN Policy using an API call on the XG via Powershell. I am using SFOS 19.5.0 GA. The API Documentation and some code I've found online are not very helpful. Can anybody tell me how…
  • Add fingerprint remotely

    Hi How to add fingerprint device to server remotely using by sophos vpn
  • o serviço openvpn não está disponível

    Bom dia pessoal Tenho um notebook que tem o Windows 8.1 e ele nao conecta a VPN. Alguem ja passou por isso ? Sabem como resolver ?
  • SSLVPN logs no longer showing source IP Address since upgrade from 18.5.4 to 19.0.1

    Hey, since we upgraded from SFOS 18.5.4 to 19.0.1 we can no longer see the source IP a SSL VPN user connected from in the VPN logs. It simply shows nothing or the LAN IP Address of the Firewall in the SSL VPN IP-Range. We only see the real source…
  • SSL VPN Connection Report

    With WFH scenarios being commonplace now, how can I generate a report to show when a user connected, how long, and from where? The basic SSL VPN reporting only shows data transfer.
  • Microsoft 365 users migration for SSLVPN authentication

    I have xgs116 appliance and microsoft365 licenses. I would llike to config sslvpn ; with micrososft 365 license authentication to access on premise network. Please help to config