Important note about SSL VPN compatibility for 20.0 MR1 with EoL SFOS versions and UTM9 OS. Learn more in the release notes.

  • I cannot access WEB Admin or SOPHOS XG Portal

    Kindly help, I can not access my xg firewall but the ip is responding to ping
  • How to ACL differ from Firewall rules

    Im using the Sohpos UTM Virtual Applicance MR2 Version .. I have noticed that despite creating a drop rule for all zones, networks and services, the ACL still stands in control and firewall rules take no effect, only if the LAN Access at ACL device access…
  • invalid logins - public IP blocked for 5 minutes - can login VPN anyway. why?

    Hello, today we had a strange situation on SFOS 19.5.1: a VPN user logged in with wrong credentials several times. In the XG log this was shown as VPN auth failure in log as expected. SFOS does not log the client IP for failed logins anymore,…
  • RMA replacement for HA pair

    Hi, I have just received an RMA replacement for a secondary unit that died and was part of a HA pair. What are the steps that I need to replace this unit. I am struggling to log on to it with admin/admin, is this the wrong logon? I can see that…
  • SDWAN - IPSec Tunnel Mode does no access XG GUI

    Hi Folks, We are facing a strange behavior when using IPSEC Tunnel Mode and SDWAN routing. When using IPSEC Tunnel Mode thw access between Hosts (behind XG Firewall) from BO and HO it works as expected, but when I try access XG GUI from HO side via…
  • Sophos firewall GUI not accessing

    Hi - My sophos firewall not accessing from web GUI. Firmware updated and checked apache tomcat services, status is running. Beside this there is high device utilization as well.
  • Unable to enforce local service ACL on Sophos xg v19.0.1 MR-1

    Hi, We are trying to implement local service ACL on LAN side but it's not working. After checking on community found multiple posts but none works. Below are the Drop all rule and ACL snaps: Device Access: Added another drop management portal…
  • Invalid Certificate

    I have been using SG135 UTM for 5 years and I decided to upgrade to XGS136. Just like in the UTM, I want the web admin certificate to be valid. I have made a locally signed self-certificate, installed and trusted but I'm still having issues above. I have…
  • Allow access from Host Dns to Web Admin Console in Sophos XG

    Hello! I am needing to configure access to the Web Admin Console from a DNS Host. I managed to configure the Local service ACL exception rule on the WAN and I can enter from an external IP, but I can't find a way to allow a dyndns for example. I have…
  • Error with loggin access Web Sophos EXSi

    Hello! I'm new in the forum. I started working with a client, where he has "Sophos Firewall" virtualized on VmWare EXSi 6.7 (Firmware: SFOS 19.0.1 MR-1-Build365). The previous infrastructure technician left de company, and wrote in .txt a username (admin…
  • XGS - V19.0.2 - WAN Side Telnet (23) Open!

    Hi Guys, hi Sophos .... Why is Telnet on Port 23 on WAN open?
  • 17.5 to 18.5 Migration changes default IP for web login

    We have a problem with migrating our configuration from 17.5 > 18.5 The IP which we used to login through the weblogin has changed from 192.168.85.4 to 192.168 .89.10 The topology looks like this [FW-ASA]-[FW-SPHS] | [USER] So there are three interfaces…
  • Cannot ping or access web GUI of XG Firewall but can access console

    Hi All, I have this problem where I can access our xg Firewall through console connected via micro-usb, but I can't ping the firewall nor access it through the web GUI (I know if I can't ping it, I can't access it). The only changes I made before…
  • XGS107s behind XGS3100 can't be remoted using central

    We have (3) XGS107 which offices use to connect to our hub. At our hub we have XGS3100. The XGS107's function as routers. The XGS107 traffic must pass through the XGS3100, to get to Sophos Central. We were able to access the XGS107's via central for…
  • Sophos XG 230 Admin and user setting

    we have a problem, the problem is after we did a firmware update from 17.5.9 MR-9 to 18.0.6 and now it's on firmware 18.5.4 MR-4, to access "Admin and user settings -> admin console and end -User interaction ". before we updated the firmware (17.5.9)…
  • Unable to log in to web management due to firmware update notification

    This is far from the first time I've seen this, but switching to another browser usually does the trick. I have an XG125 running 18.5.3 MR-3. When logging in, a notification pops up prompting to update to 19.0.1, but only half loads and is unable to be…
  • warning page access to web console admin sophos xg

    Hi all, today i need to understand something about sophos certificates just at the beginning of the year it was impossible for me to access the administration console of sophos, so I emptied the cache of the browser then I was able to authenticate…
  • Emergency access to remote Sophos Firewall if tunnel is down

    Hi there, I am new to the Sophos Firewall product, and so my question might sound stupid for all the wizards here... I like the security hints and warnings the firewall shows when configuring insecure settings, such as the access to the configuration…
  • XG Firewall - rebooted and now get a 503 error when attempting to log in

    First the firewall wouldn't accept new exclusion rules, so I made it reboot. When it rebooted I now get a 503 error when attempting to log in. I am remote to the office and will need to go in and pull the power and force a reboot, but has anyone else…
  • Admin password with 2FA not synced in HA

    For the second time now we face an issue that we cannot login to XG with SSH. Either as admin or with the ssh keys we entered in WebAdmin. XG430 (SFOS 19.0.1 MR-1-Build365) This was first noticed when we upgraded from 18.5.4 to the current version…
  • Autenticação Firewall

    Ola! Hoje tenho 400 firewall para gerência, tenho 24 técnicos: alguns podem ter acessos a certas coisas, outros não, gostaria de saber se existe alguma solução onde eu consiga formalizar o acesso de cada grupo e o firewall replica nos outros, sem precise…
  • Denied packets when accessing Sophos XG GUI

    Working with Sophos XGS 126. Whenever I access the Firewall's GUI, which I can access fine, I notice that multiple Denied Packet are being logged. I am not sure if this is normal behavior, and I haven't noticed this before we updated to the SFOS 19…
  • unable to reach login page of SFOS instance on AWS

    unable to reach login page of my SFOS instance on AWS. A troubleshooting screenshot (utility provided by AWS) seems to show boot has not completed. port 3400 scans as open but 22 and 4444 do not. No console provided by AWS gives me access. I have…
  • Not Turn Off User Portal

    On my Sophos firewall, wan still appears to be open even though I have closed the user portal in the wan section under device access. please help. only sslvpn is on in wan
  • Sophos Firewall: Profile Management for Device Access in Sophos Firewall

    Disclaimer : This information is provided as-is for the benefit of the Community. Please contact Sophos Professional Services if you require assistance with your specific environment. Table of Contents Overview Step1:Add Custom Profile …