Important note about SSL VPN compatibility for 20.0 MR1 with EoL SFOS versions and UTM9 OS. Learn more in the release notes.

  • How to direct the traffic of OneDrive and Sharepoint access to another public network

    Hi There, We have a XG430 firewall with 2 different dedicated network, we want to route the traffic of Microsoft OneDrive and Sharepoint access to another network, as this network did not have so many access , can you show me how to do this in our firewall…
  • google play application control Sophos XG firewall

    need to block google play app via application control in Sophos XG firewall as i couldn't find it in the application filter
  • Remote VPN only to Domain Computers

    Is there a way to prevent home users to use VPN Client on the own devices? We would like to allow only Domain Computers or generate a certificate to restring user's devices. Unfortnately, I don't have Sophos Central InterceptX to use Heartbeat status…
  • most of LAN<->Server communication detected as "Torrent Clients P2P"

    We've replaced a SG by XGS 18.5 MR3 and there is now massive false positive detection of Torrent Client P2P traffic by application filter. Most firewall rules for internal traffic have the default Application filter applied: "Block high risk (Risk Level…
  • Block VPN Exntesion/Add-on On Chrome, Opera browser

    Hi guys, I've Sophos XG Home that block all Entertainment Web Browser. Problem is users use VPN add-on on Browser such as Hoxx VPN, Touch VPN, Ultrasurf,... so user still can access to Entertaintment site like "Youtube.com". I add application rule…
  • Apple iCloud IMAP blocked as it was Torrent P2P

    Found a conversation here about the same problem 6 month ago, but I can't read a solution. My firewall is reporting a lot of Torrent P2P users in my network and block the application. In the same time users reports that they can't read mail on iPhone…
  • Rejecting VPNs programs

    Hello, noticed that VPN programs bypass Sophos blocks. I would like to know if there is any common denominator among all VPN programs, so that I can create a firewall rule preventing all these VPN programs from connecting. Thanks!
  • Sky Now app not working on Sophos XG

    According to the logs its being blocked 2022-01-20 20:19:34 Invalid Traffic Denied N/A 0 192.168.1.181 54.239.35.235 54058 443 …
  • XFRM1 Traffic classified as Torrent Clients P2P

    The following syslog is showing application "Torrent Clients P2P" for all of our IPSec Tunnel Interface traffic. This traffic between our IPSec and internal server is not Torrent traffic. How do I reclassify this properly in the Sophos XG V18? date…
  • Unable to block Hotspot Shield and Betternet VPN

    Hi guys, I have been trying to block hotspot shield and Betternet VPN. I have included them in the Applications Filter. I have also changed the settings according to this guide: https://community.sophos.com/sophos-xg-firewall/f/recommended-reads…
  • Block Android Games from Accessing Internet.

    I have implemented Sophos XG on an old computer. I am very happy with it so far. But I was wondering if it could address an annoying challenge that I am facing these days. I have a 5yo child who plays games on an android device, and those games are bombarded…
  • Microsoft Teams Application exception in Firewall Rule

    I have a few PCs I want to lock down from accessing anything but a few URLs and applications. I have created a firewall rule that blocks traffic and provided exceptions for the URLs I want access to, but when I try to launch the Microsoft Teams app on…
  • XG Log Viewer Application Filter Tab Always Empty

    Hi, I have an XG125w (and before that am XG106) with SFOS 18.5.1 MR-1-Build326. When I go to the log viewer, Application Filter tab, the log is empty, It has always been empty, even with the XG106. I checked my firewall rules and they are all set to…
  • Xg - strange application behaviour

    Hi folks, I have been investigating an issue with my Apple devices using an application called manual proxy surfing. The strange behaviour is if I block proxy and tunnel then I get error rs in the application log and in the daily reports. If I don…
  • 1Password is not a "Loss of Productivity" application -- how to report to Sophos

    I've noticed that Sophos classifies 1Password as, among other things, a "Loss of Productivity" application. In fact, it may be a high productivity application that encourages security. And I notice that LastPass -- a similar application -- is not categorized…
  • Requiring that users use specific browsers?

    Is there a way with my XG, that I can require that users use specific, sanctioned browsers? Standards are being applied across the organization, and would like to ensure they are using sanctioned user agents. Exploring on my own: The Applications…
  • Shrew Soft VPN Client blocked for outgoing traffic in XG 330

    Hi, aynone an idea, why shrew soft vpn is blocked by the xg 330? I tested it with my "All you can do token", where everything is open, but xg is blocking the traffic to a external fritzbox. A computer in the vlan 100 want to connect to a fritzbox…
  • Skype chat

    Hello! Skype chat (normal version, not business) does not work on our network, video calls work fine, as well as Microsoft Teams which works perfectly (chat included). We have been checking firewall rules, FQDN host groups and it still does not…
  • Trouble with Firewalla device

    I have added a Firewalla device to my network so that I can control device access (shutting off established connections for example). I am trying to troubleshoot something in the device that isnt working (a block against a group didnt work, but should…
  • MeetAnyway / "Daily" meetings with peer to peer connections blocked as TOR proxy

    Hi, beside all the existing meeting tools, some of our users are starting to evaluate something called MeetAnyway. This tool establishes peer to peer connections on high port ranges if there are less than 4 attendees. Described in the documentation…
  • Problem with nfl app on android

    I am having an issue with the NFL app on my network. We have a firewalla device in front of the xg. I set the firewalla to not monitor traffic on a device. I don't see anything that stands out (looking at the web filtering for example) as to why it…
  • not able to block Psiphon proxy from mobile

    Hi, Dear All, I am not able to block Psiphon proxy using through mobile after blocking all the tunnel / proxy / vpn base applicartion. I have also enabled https decriptions. If any more solution is ther ekindly help!
  • Sophos XGS blocking Wireguard Traffic

    We have a customer that we just put a Sophos XGS 116 firewall in to replace a PfSense. They have a business partner that has a Wireguard VPN tunnel that they use to connect to a remote NAS. The Wiregaurd VPN runs directly on the remote NAS. Our customer…
  • Block psiphon

    hello our XG (SFOS 17.5.16) can't block psiphon3 using application policy, we want to block it without enable ( Decrypt & scan HTTPS) thanks
  • Sophos XG is not blocking Tor Browser anymore

    Hi, I was using to block Tor "proxy and tunnel", "anonymizer", "can bypass firewall", "tunnels other apps", few years ago it was working to block it, but not any more, does anybody have any idea what to do? thanks.