Important note about SSL VPN compatibility for 20.0 MR1 with EoL SFOS versions and UTM9 OS. Learn more in the release notes.

  • VPN-Verbindungsprobleme

    Grüß Euch! Wir haben hier aus heiterem Himmel ein seltsames VPN-Verbindungsproblem, mit glücklicherweise vorerst nur einem Benutzer. Am Abend ging es noch, in der Früh des nächsten Tages hat er berichtet, dass er im Home-Office keine VPN-Verbindung…
  • Route based SSL-VPN problem

    Hello everyone and thanks in advance for your support. We have a person 192.168.1.X who connect to OUR network (192.168.0.0/16) via SSLVPN (Use tunnel as default gateway or not, doesn't make any difference) Sometimes things go wrong randomly (i…
  • TAP - Adapter Windows hat nur 100 mBit - Connect

    Hallo allerseits, es geht um eine Client2Site Verbindung, die funktioniert soweit gut, aber die Bandbreite reicht nicht. Die Gegenstelle (Sophos XGS3200) würde 1Gbit annehmen. In den Netzwerkadapter Einstellungen ist die MTU auf 1400 limitiert. …
  • How to clear IPSEC VPN SA via CLI on Sophos XGS?

    Hi, is it possible to clear single IPSEC VPN security associations via Device Console or Advanced Shell on Sophos XGS? E.g. I would like to disconnect all VPNs to one specific gateway. Thank you. Greetings, Torsten
  • Can't establish a IPSEC tunnel btw Sophos XG and Fortigate

    Hello there. I have doing some labs and until now I have achieved to make a Sophos-Sophos and Forti-Forti Ipsec tunnel. However I am trying to make a Sophos XG-Fortigate IPSEC tunnel but my tunnel does not wake up. I have followed this guide and configure…
  • Unable to connect remote vpn when secondary node as a primary.

    I am having an issue with an HA hardware pair. When the secondary node is the master SSL VPN users cannot connect with a remote VPN. Please help me on it.
  • Request for Assistance: Upgrading Sophos Connect via Group Policy (GPO)

    Dear Community Members, I am immensely grateful for being part of this wonderful community. Could someone kindly provide guidance on how to upgrade SophosConnect_2.2.90.msi to SophosConnect_2.3.0.msi using Group Policy (GPO)? Alternatively, if there is…
  • kein IPsec VPN nach Upgrade auf SFOS 20.0.1 MR-1-Build342

    Hello, all our Site-to-Site-VPN don't work again after upgrading from SFOS 20.0.0 GA-Build222 to SFOS 20.0.1 MR-1-Build342. In the log we find: (unnamed) - Couldn't parse IKE message from .. Also all outgoing remote IPSec don't work again after…
  • Sophos XG Firewall IPSec Failover to Azure.

    Hi all, I was hoping I can seek some guidance on this forum. Currently, we are using our Sophos XG Firewall to connect to our network on Azure using an IPSec VPN Tunnel. We do have two ISP running in our building one being main and other being backup…
  • L2 Connection Between XGS2100

    I am having issues configuring a connection between two Sophos firewalls and i am hoping someone can help. The firewalls are installed in two datacenters which are operated by the same provider, both sites are currently configured with a WAN/internet…
  • SSL VPN Use Static IP

    Hello, We have an application that requires reverse DNS lookup. When users are on SSL VPN they are getting a new IP address via dhcp on the firewall frequently and the Ip Address does not get a PTR record created in the reverse lookup. I've seen…
  • Start IPsec connection via console

    I have an IPSec connection that I would like to start the connection via Console. Which commands do I need for this? I am referring to the second button that can be found next to Activate connection in the SFOS web interface.
  • XGS136 Firewall

    Guten Tag, wir haben seit Sonntag eine XGS136 Firewall im Einsatz, welche besten Gewissens identisch zu unserer alten SG135 konfiguriert wurde. Alles funktioniert auch soweit einwandfrei, allerdings bekommen Clients, welche eine bestimmte VOIP Software…
  • site to site vpn

    Hi, I need help connecting the headquarters containing device ruijie rg-nbr6210-e and the branch containing device SOPHOS. I have made all the required settings, but there is no connection to find out more. I am at your disposal. Thank you.
  • Sophos Connect SSLVPN Service Unavailable - Only on some Windows Profiles, regular fixes don't work

    I'm dealing with two stubborn workstations that are giving the "Service Unavailable" error in Sophos Connect when used with SSLVPN. This is a brand new deployment, everything is fresh. The services appear fine and if I switch the Windows user to a different…
  • Set source IP for site to site IPSec VPN using 'Tunnel Interface' connection type linking multiple subnets

    We have multiple site to site VPNs setup with connection type 'Tunnel Interface'. The VPN links connect multiple remote subnets. How does XG pick a source IP because it seems to be random and can change when we re-establish a connection. This causes issues…
  • Desinstalación Forzada de SSL VPN Sophos (Semáforo)

    Buenas tardes, Me pueden ayudar por favor con algún comando o instrucción para forzar la desinstalación de la VPN "SSL VPN Sophos (Semáforo)" de forma desatendida (Remota) en 150 equipos para luego actualizar e instalar a Sophos Connect, Muchas gracias…
  • Sophos connect

    Hello, we are doing a migration from old XG330 to a XGS3300 I have a question regarding the sophos connect client, which is currently used with the XG. the current sophos client is openvpn 2.3.8 The new one is in version 2.3, but, do we have a…
  • Sophos 18.5.5 (FIPS) to Microsoft Azure Local Network Gateway

    So I've seen some articles around on how to setup a Sophos to Azure site to site using tunnel interface, however all my research and talking with Sophos indicates this can only work if the Sophos firewall has a static IP on the WAN. In my scenerio, the…
  • Sophos SSL VPN issue on 2.3 version - Case 07368183

    Case is not resolved. Please open the case. Sophos team has migrated cyberoam to Sophos firewall & Its working properly from last 3years with Cyberaom certificate which expiry is 2036. The issue is Sophos connect 2.3 is not working but 2.2 & 2…
  • Route based VPN loopback

    I have a Route based VPN from SOPHOS to SOPHOS. I need to create a loopback to allow a connection back to a server. I am not able to find any information regarding this. In fact from what I can see I am not sure I can even do this with a normal IPSEC…
  • Sophos VPN Client Zugangsdaten Probleme Mac

    Hallo, ich habe einen aktuelles Macbook Pro und mir über unsere Sophos User Seite die Client Installationsdatei und die Config heruntergeladen. Wenn ich die Config importieren möchte kommt immer Fehler beim importieren. Auf einem Windows PC mit…
  • Clientloser Zugriff - Mouse Courser nur ein X

    Hallo zusammen, bei unserem XGS "Clientloser-Zugriff" ist der Mouse Course auf dem RDP Server nur ein X. Insbesondere für ältere Anwender ist das Kreuzchen sehr schlecht sichtbar. Gibt es eine Möglichkeit das umzustellen? Das Thema wurde auch hier…
  • DNS Resolution Issues with Sophos Connect

    Recently, I had a problem with a client and their VPN. I noticed that when connecting to the VPN using Sophos Connect, all the DNS requests I make are resolved by the XG. In other words, when I run an nslookup google.com while connected to the VPN, the…
  • DNS resolution over VPN issue when LLMNR is disabled - Sophos Conect 2.3

    I have the same problem as described in the following post: RE: LLMNR disabled - DNS resolution no longer works over VPN I have now updated to 20v1 MR1 and installed the current Connect Client. Unfortunately, the error is still not fixed with Sophos…