Important note about SSL VPN compatibility for 20.0 MR1 with EoL SFOS versions and UTM9 OS. Learn more in the release notes.

  • Nice Bug on XG/XGS with non-standard port for User-Portal Access

    Hello,MR I think I found a nice bug on Sophos firewall (XG/XGS) Version 19.0 and 19.0.1 As soon as you change the port for "User portal access" from default = 443 to something else, you can access it from any zone, no matter what you checked under…
  • Same Websites blocked and allowed in wrong catagory

    Hi, We have setup network DLP before the firewall which is connected like, Endpoint >> L2Switch >> Network DLP (centos uses Proxy) >> Sophos Firewall. For Example website Web.workline.hr This website comes under the hrms category which is allowed…
  • Skype is not working in Sophos XG210

    Hi, I want to allow skype messenger(non business) to LAN. Block other access to LAN. How to achieve this? Tried whitelisted below domains and allow http, https and dns ports, not working conn.skype.com api.skype.com pipe.skype.com gateway.messanger…
  • Re-Image failed XGS87 - NPU was not found on PCI BUS!

    Hi, I'm not able to re-image a Sophos Firewall XGS87. Error: NPU was not found on PCI BUS! ###################################################### Sophos FIRMWARE INSTALLER Created on: #Fri Aug 5 06:22:35 UTC 2022 Firmware version: #19.0.1.365…
  • XGS 136 Restore logs 19.01 MR1 B365

    Hello, where i can find logs regarding backup/restore operation (with secure master key set)? Thanks.
  • SPX encryption does not send notification to sender - XG115 Transparent Mode

    Hello, I have a XG 115 with SFOS 19.0.1 MR-1-Build365 installed. The problem was already with SFOS 18.0 but it's not gone yet. My mail server is a synology DiskStation with Kopano installed. I tried every type of spx template but the strange…
  • Reports not including all traffic

    Hi, I've been copying a lot of data over SSL this weekend, and I've noticed that while the current activities window shows the traffic, and also includes the total downloaded, the reporting side of things doesn't This is using the latest v19 MR1…
  • Unable to boot Sophos home firewall

    Hello folks, I have used Sophos Firewall home in the past with ESXI and was so happy about that got a machine to be used as router. I performed the installation via UEFI on a 256gb nvme drive and everything went well. When I rebooted the PC, the…
  • Interface speed Stuck at 10 Mbps - Half Duplex, Auto-negotiated, Grayed out.

    I have never been able to change my Network, Interfaces, Connection, PortA=LAN or PortB=WAN, Interface speed. The Interface speed is set to Auto negotiate and "Grayed out". I am running on a VMware® Workstation 16 Pro, with NICs set to bridged mode…
  • 1x laptop will not complete connection to sslvpn

    Issue 1x Laptop will not complete connection to sslvpn. After filling in the user credentials for the Sophos Connect and hitting connect, the connection never complete. Firewall logs say user is connected. About one out of every 30 connections it will…
  • MATCH KNOWN USERS ISSUE WITH PROXY

    Hello, I'm using Sophos XG2300 SFOS 19.0.1 MR-1-Build365 and I would like to ask why do I get blocked when I'm trying to browse the internet with configured proxy, match known users turned on and web filtering set to none. Through testing and searching…
  • Error Message-Couldn't Update the IPS Status

    So I have IPS protection turned on as shown below: I know that the pattern is updating as shown below: So I have 2 questions. 1. Shouldn't the 'Time of signature update' change dates when IPS and Application signatures are updated? Mine doesn…
  • Mesh network - Internet performance degradation

    Hi all, I am using 2 AP 15 with XG 19.01. The first AP is connected to XG while the second one is connected via mesh to the first AP. As soon I create the mesh network, the internet speed test drops to half speed. My question is: since AP 15 does…
  • VLANs Working but Crashing when too much Inter-VLAN Traffic occurs (Connection Reset issues)

    Thanks in advance, I have a Sophos XG virtual Firewall running on Vmware ESXI. I have multiple VLANs in my home network. VLAN 40 is supposed to be a service VLAN that allows SSL VPN Connections to come in and access certain VM services (This is working…
  • Sophos V.19.0.1 gns 3 GUI problem

    Hi, I have KVM Firewall XG Sophos in gns 3 installed.But there is a problem with Login with GUL by using Firefox. The problem is in the photo. Hopefully to get the solution.
  • Web Admin Logs out Despite "Logout admin session after" being Unchecked.

    When I'm using the web admin gui, I get logged out periodically, anywhere from an hour or so to several hours, even though I don't have " Logout admin session after" checked. Sometimes it doesn't log out at all, which is what I want. How can I prevent…
  • New Firewall polices not betting added

    When i add new policies to Sophos i keep getting warning message " The operation will take time to complete. The status can be viewed from the "Log viewer" page ". When in check Log Viewer there's nothing in the log viewer. The firewall is not yet in…
  • invvalid tcp state and HA failed in active-active setup with LAG in LAN side

    Hi, We have sophos xgs4500 and 19.0.1 MR1 firmware. we configured LAG in LAN side with 2 interface. We have setup both firewall as active-active. After this setup, we are getting invalid tcp state log and some website stopped working. Later on HA…
  • SNAT - randomize outgoing source port with iptables

    Hi all, Semi-newcomer here, as I haven't used Sophos Firewall since XG 17.5. When it went EOL, I tried out pfSense for a short while before finally deciding to retire our old, but reliable UTM 110/120 appliance. The UTM 110/120 only has 2GB RAM, so…
  • Cloudflare DDNS Update Behavior in Sophos XG v19.0.1 MR-1

    I noticed some odd behavior with how the built-in DDNS client handles errors. I use Cloudflare to manage the public DNS for several of my domains. I recently changed the email address associated with my account. I didn't think to update the account…
  • DHCP Server Not handing out Leases

    Hi all, I am new with Sophos, literally day 3 for this to run on my network. DHCP Server is behaving very strange. Sometimes it would work flawlessly and other times it would just stop handing out leases. I have to turn off the status of the…
  • XGS4500s Hang on Restart

    I have two 4500s. Whenever a reboot/restart is performed they both hang. We find the device with a blank LCD screen, We have to manually power them down and then back on. A recent example was the firmware update from SFOS 19.0.0 GA-Build317 to SFOS 19…
  • IPsec Connection down

    I am configuring some IPsec vpn between my client's main office and 10 branch offices. In the main office I installed a Sophos xgs116 (SFOS 19.0.1 MR-1-Build365) to replace an old Zyxel Usg 300 and in the peripheral offices there are 8 Sophos XG85 (SFOS…
  • MTA RBL syntax

    XG310 (SFOS 19.0.1 MR-1-Build365) All documentation examples for MTA RBL show usage with hostname only. Is it allowed to add information on the types of answers to consider? Background: spamhaus.org has blocklists in 127.0.0.0/24, but returns error…
  • SSL VPN Only Blocking inbound Communication

    XGS4500 (SFOS 19.0.1 MR-1-Build365) Our SSL VPN stopped allowing two-way communications. We can ping the VPN Client IP from inside the network. Once the client connects, the client cannot communicate to anything (full tunnel). NSLOOKUP, PING, etc. …