Important note about SSL VPN compatibility for 20.0 MR1 with EoL SFOS versions and UTM9 OS. Learn more in the release notes.

  • Webserver Protection for Host behind IP tunnel

    Hello everybody, I'm currently trying to establish the WAF setup for the current confirguration: Two sites are connected via IP Tunnel and everything is properly working with the static routes set-up. Now we have the need to setup Webserver Protection…
  • WAF for Web-Server behind IPsec-Connection

    Hello, I have the problem with an XGS 107 (19.5.2-B624) that a web server (10.203.111.101), which is located behind an IPsec connection, is not reachable via the WAF. When accessing the web server via the Internet, I get the code 503. However, the problem…
  • Reverse Proxy WebServer behind IPSec Tunnel

    Hello, I have a VPN tunnel to another site, there is a web server that should be reached via a reverse proxy on the XG. The XG has an additional IP address (192.168.0.140) on the LAN interface (the LAN interface has IP 192.168.0.2). The IPSec tunnel…
  • Internal Webserver trought VPN

    Hello Everyone. I have a Sophos XG firewall with severals Web Server protected trought WAF. Eveything works fine. But I need to do a specific configuration : I have to block a specific path so that it can be access only trought an IP address (that…
  • WAF access via B2B (with NAT) not working

    Discovered a scenario that I can't get working in Azure, which seems like a limitation on the XG. We setup a policy-based VPN to one of our customers which needs to access one of our web-apps. The customer requires that RFC-1918 is not used in VPN traffic…
  • Add server across site-to-site VPN to Protected web servers

    We have a Sophos 18.5 firewall. Behind this we have two identical servers (WEB01 & WEB05) running a website. In the WAF rule, I can toggle between the two servers in the "Protected Servers" Web server list just fine and the website continues to work.…