I quickly set up an EAP 19 test machine yesterday.1. obviously the whole thing does not work with Central!No template task is created and therefore nothing is pushed to the firewall.2. login restrictions to the Advanced shell is absolutely unacceptable until Sophos fixes the issues that have been known for a long time and can only be fixed via Advanced Shell (WAF, complete log, etc).To follow later...... ;-)Not the first time that Sophos promises things that are never delivered.E.g. the APX 320X should already be manageable via the XG from Q1/2021 (17.5.15).Regards Gerd
try this, unregister from sophos central
seems to be linked with this
Sophos Firewall: Unable to register Firewall with Sophos Central
login to CLI enter this on the main unit
mount -o rw,remount /cp "/conf/certificate/internalcas/cloud-ca.crt" "/conf/certificate/internalcas/cloud-ca.crt.org"cp "/_conf/certificate/internalcas/cloud-ca.crt" "/conf/certificate/internalcas/cloud-ca.crt"mount -o remount,ro /
if you have HA than SSH from the main unit to the secondary and enter the same commands
give it about 2 mins and then reregister to sophos central.
the certs are not getting updated when migrating over.