Important note about SSL VPN compatibility for 20.0 MR1 with EoL SFOS versions and UTM9 OS. Learn more in the release notes.

  • HOW TO CHECK FOR UP TIME IN IPSEC VPN TUNNEL

    Hello All, The client has requested to know the uptime in the IPSEC VPN Tunnel. Sophos Model: XGS4500 Thank you
  • No local DNS when connected to SSL VPN

    From my Android phone using openvpn and the ovpn config from my Sophos box, I can connect to my network. I can get to my servers from using their IP, but I cannot get hostnames to resolve. In System > Administration I have DNS turned on for VPN 10…
  • Planning RED60 with XGS WAN failover

    Hello together, we have a use case at a customer and want to offer him RED60 and XGS126. This is the planning location outside central office --------------------------------------------------------------------------------------------------------…
  • XGS87 (SFOS 20.0.2 MR-2-Build378) VPN Routing Problem

    Hello, we have a problem which with the routing over VPN. A user is connected to SSL VPN with the XGS. The XGS has a site to site IPsec VPN connection to resources in the cloud. A request from the user's client using SSL VPN for resources in the…
  • IPSEC connection showing this error Couldn't authenticate the local gateway. Check the authentication settings on both devices.

    We are trying to setup a IPSEC tunnel between a Sophos Firewall and a ISR4300 After activating its showing error Couldn't authenticate the local gateway. Check the authentication settings on both devices.
  • SAP system not responding when connected on SLL VPN on a Starling network

    We have configured an ssl vpn, when we connect with a Starling network the Sophos connect is connecting normally but when we try to use SAP systems it's not responding after logging. The system will be slow to open. However if we connect the vpn with…
  • VPN connection for outsiders

    I am trying to get users connected to my vpn, I have follow the ssl vpn setup guide however they are still unable to connect to my address which i had setup the ddns.What else is required to complete the setup, what am i missing? only time i am able to…
  • WIFI "separate zone" didn't work over IPSec

    Hi all, AP configuration works. I am able to remove & add the AP's. AP's are recognized and shown as active. I can see the traffic between AP & XGS Port 2712. Traffic to port 8472 from firewall to AP is not answered, but i see packets from AP to APIPA…
  • VPN Menu Missing from User Portal

    Hi there, I am using a Sophos XG 115 firewall. Yesterday the VPN stopped functioning after I installed the most recent firmware version MR-2-Build378 (20.0.2), and the VPN menu vanished from the user interface. I am able to download the Sophos Connect…
  • Firewall IPsec Site2Site settings page slowdown

    Hi all, when we try to add or change a configuration on the IPsec settings page on our XG/XGS Firewalls we always have to wait for about 2 minutes for the site to load and for it to be usable. The web browser shows the message "This page is slowing…
  • firmware SFVH (SFOS 20.0.2 MR-2-Build378) - RED ISSUE

    i have a problem with red configuration after new firmware SFVH (SFOS 20.0.2 MR-2-Build378) when i create a new red interface the red server Uplink IP: n/a or the red client Uplink IP: n/a the connection between red server and red client not stab…
  • Disconnection Ipsec with fritz

    After update to my xg firewall to v20 ipsec is become unstable. Randomly disconnection. openvpn client work without issue only ipsec have problem Some info: this setup worked for 2 year without a problem (another bug on v19 but fixed). Sophos firewall…
  • VPN global setting not applying changes

    Hi, i recently just updated the frimware to the latest 20.0 ver. Problem now i cant save the new ip range in the vpn global setting. As theres and know issue of the range thats need to correct from .5 to .0 after update. Only 2 firewalls seem to be having…
  • SOLVED: Sophos Connect broken after Windows Update 2024-08 - Service not available

    Hello community, since installation of Windows Updates - "KB5041580" ( https://support.microsoft.com/en-us/topic/august-13-2024-kb5041580-os-builds-19044-4780-and-19045-4780-2ef55b0d-bb01-41c8-8629-4146929792ad ) on Windows 10 22H2 and - "KB5041585…
  • Remote IPSEC VPN Disconnections

    Hello Sophos Community, Is there any documentation or procedure to troubleshoot end user disconnection from our remote access IPsec VPN? I have been looking on how to look at the firewall logs but I couldn't finds anything usefull.
  • IKEv1 PSK with same Gateways

    Hello @all, it is known that with IKEv1 on SFOS a new PSK overwrites all others PSKs if the gateways do not differ in the connections. Sadly I can not use IKEv2. Is it sufficient if just the local ID is different in connections and the remote ID is ANY…
  • SD RED 20 wifi module registers on wrong firewall

    Hi there, I've got a SD RED 20 with integrated wifi module, which was connected to a Firewall in Germany before. I set up a new RED config and shipped the Box to our branch in the USA. The Firewalls in USA and Germany are connected through IPSEC-Tunnel…
  • IPSEC down/up e-mail notification every 30 minutes

    Good morning. I have several XG/XGS of different clients configured with IPSEC against the same central, this central uses a CISCO firewall (we do not manage it). The problem we have is that every 30 minutes we receive an email from all the XG/XGS indicating…
  • VPN config broken, no server_dn is NULL in SQL after restore

    I had to restore my firewall from a backup, and now I can't download SSL VPN config from the portal anymore. Checking the log I get the following error: /home/jenkins/root/workspace/OmC/CI_64/build_dir/target-x86_64_glibc/vpnportal-1/internal/vpndownload…
  • VPN

    Ola boa noite, tenho 2 firewall configurado em Tunel RED,Dentro da rede consigo enchergar a rede do outro Firewall , mais quando estou em rede externa, e uso a VPN Sophos connect client, so consigo ping em uma rede, nao consigo da outra, quero acessar…
  • Policy Mis-Match Error on Sophos VPN Client.

    Hello, we are using Sohpos XG virtual firewall to connect VPN, it was working fine till few days before. Now on connecting we are observing error which states that "Policy mismatch error. Import a new policy for this connection." Please note that applied…
  • XGS4500 (SFOS 20.0.2 MR-2-Build378) after Firmware update from 20GA to MR2 stays dead

    Hello Sophos Community, we just updated two XGS4500 (in HA) to 20 MR2 and now the SSLVPN stays dead: After checking the admin interfance I logged into the shell: I used the command: service sslvpn:restart -ds nosync 503 Service Failed We don't…
  • XGS3300 MFA for SSL VPN

    Hey, is there a possibility to set up MFA for SSL VPN on the XGS 3300? Maybe even a SAML authentication with the MS authenticator? Can't find any infos on that in the documentation, neither can i find an optiuon the the admin panel. Can anyone…
  • SFOS 20.0.2 SSL VPN connection problem only on work laptop

    Hey everyone, I was recently given a SG115 firewall to mess around with and installed SFOS on it. While learning how to use it I've setup an SSL VPN connection that works on every computer except for my work laptop, which oddly enough is able to connect…
  • Multiple Gateways in Branch Office

    Hi, What is the proper way to connect a branch having multiple internet gateways but the head office has only one gateway? The branch office WAN1 interface has a Real IP but WAN2 uses DDNS with a dynamic IP. Should the branch office have a failover…