While upgrading the firmware on my HA stack of sophos XGS 3100, I got more than 70 email alerts for the HTTP virus detected Alert ID: 8001 with the messages below repeatedly:
Malware 'Unscannable' was detected and blocked in a download from crl4.digicert…
Hello everyone, I have a problem with two FW (one on Azure, one XG)
We have a lot of detections like this (ATP)
We saw that this URL centos.brontocdn.com is legit and it's an official Centos Repo. I allowed it here :
But both FW are still…
I have a strange issue today. I have a firewall rule to block OpenVPN connections in place and it seems to work. However, today I discovered data is still being transferred even the connection is denied.
I can see from the firewall log the connection…
Hi
I find odd that none of the major firewalls on the marketing have an built-in option to block or control major social networks like TikTok. TikTok and Instagram are by far one of the worst things for the bandwidth and productivity.
Rants asside…
Dear Friends,
We have recently upgrade our Firewall XG310 to latest Firmware ( SFOS 19.0.1 MR-1-Build365) , now we are facing issue in IPS Time of signature update which shows 23:08:29, Nov 11 2022 and the Pattern Updates for IPS and Application signatures…
dear guys
we have sophos XG firewall device , now when we block the VPN is working fine on iphone but in android system VPN not blocked so i mean VPN applications will block on iphone but in android still working and the applications on android and…
dear all,
I asked this question 9 months ago but unfortunately, still I have no solution for it although I have installed the Security Appliance SSL CA on the end user's machineI've Sophos XG Home that block all Entertainment Web Browser. Problem is…
Hi Sophos Community,
I was wondering for a while why some of our customers couldn't reach the Lastpass website. Now I have discovered that its being blocked by application filtering with filter "Block high risk (Risk Level 4 and 5) apps". I am aware…
Disclaimer: This information is provided as-is for the benefit of the Community. Please contact Sophos Professional Services if you require assistance with your specific environment.
______________________________________________________________________________________________________________________________________…
Good Monring,
I've an XGS v19.0.1 and want to set an Application Filter (AC) on top of existing Firewall rules. But i'm not sure if i'm understanding how this mechanism is working.
My fw-rule is from "serveral internal zones" with "several defined…
I have created a rule and applied it to a policy but still not blocking. I have attached screenshots of the rule i created and the policy i applied it in.
Hello,
in our company we got about 60-80 users. Each department got his own vlan running over one port.
XGS2100 (SFOS 19.0.1 MR-1-Build365)
Over the year i was setting up the sopho xg and adding all Firewall rules, like all department are in one…
After applying Decrypt and scan https, anydesk not working, can u pls provide the Category of ip address of Anydesk, also explain the configuration method
I have encountered a remote case with this firewall, the setup and issue is as follows:
Firewall model: XGS87
Firmware: SFOS 19.0.1 MR-1-Build365
This is a new firewall that we have deployed. Before installing this firewall the customer faced no…
Hi folks,
I started investigating why the XG115W was showing high CPU load, normally around 5%, but now showing over 20% for extended peraiod.
I checked the ATP, Avira, Sophos AV and Sophos anti spam, All but Anti spam last updated early yesterday…
Hi guys,
How to block Squid Proxy using Application Control? Few applications like Hoxx VPN use Squid Proxy over port 80/443 to evade detection.
Regards
hi,
if i have sophos XGS or XG and from lan my users start making connection with bad reputed ip address. then can firewall block it??? ATP is same or it is different?
can SOPHOS XG/ XGS also consult some IOC Feed ???
Hey,
since we installed Sophos XG we are getting a loads of app filter events regarding GaduGadu Messenger application. Strange is that this traffic is comming from almost all users and its like 100-1000 events per few minutes. Ofcourse nobody is actually…
Hi guys,
How to write custom IPS signatures for blocking applications? I have found a few VPNs which are not on the application control list and I would like to block them.
Regards
Hi everyone,
We are getting thousands of alerts from our Sophos XG at the moment, and with the below error alert ID and message:
Any possible causes of this?
Alert ID: 8001
Message: Malware 'Unscannable' was detected and blocked in a download…
Helo
I realy dont know how sophos still dont have an TikTok App Control. This app its terrible for productivity and bandwidth.
Can you please add TikTok to Application Control?
How can i block this app?
So, while setting up IPS on the system, I want to *block* the usual badness including scanners, etc.
However, I have regular vulnerability scanning done by US DHS/CISA as part of their Cyber Hygeine program, and they scan regularly. As such, using scanner…