Browse By Tags

  • Define rules according to the user of the local AD-Server?

    Hi, I am using a Sophos XG135. In my Domain I habe a AD-Server with all users, that are working in this domain. Is it possible that I import the local users from the domain and define rules (firewall, web, etc.) according to this users instead of…
  • Sophos Firewall: How to integrate Active Directory with SSL/TLS or STARTTLS Connection security

    FormerMember
    FormerMember
    Disclaimer : This information is provided as-is for the benefit of the Community. Please contact Sophos Professional Services if you require assistance with your specific environment. ______________________________________________________________________________________________________________________________________…
  • AD SSO Authentication Fails

    XG Firewall SFOS 18.0.4 MR-4 We are using the XG as Web Proxy for approx. 1000 users. Its setup to authenticate against AD Servers using Kerberos and NTLM This works absolutely fine for the majority if users but we have roughly 75 users it fails on…
  • how to add active imported user in local group

    hi, i have XG integrted with AD. imported groups from AD. when user login then i start seeing users in XG. My questions are: Q1: can i add that AD user that i can see in XG in a group that i created local on firewall??? i created a local group added…
  • Datacenter firewall between users and servers

    How to implement from the scratch Datacenter firewall, I have XG210 firewall and needed to install between users and servers (VMware)
  • Authenticating AD Users and Match known Users

    Hello, We want Active directory users to get access to the internet through XG 230 Firewall running the latest Firmware. Current Setup: Using STAS on Windows Server All users were migrated from AD to Sophos Firewall rule created (attached…
  • XG210 reaching AD server over IPsec

    Under Configure > Authentication, I’ve added an AD server that is reachable over an IPsec connection, however I have been unable to have a successful test. Details: The Sophos XG210 is at 10.2.30.1 The IPsec site-to-site connection name is IPSECAD The…
  • IPSec VPN setup with Active Directory

    Hi, I have set an IPSec VPN connection and successfully connected using a local user account. Problem is I am unable to get it to connect using an AD login. The errors is "User Authentication Failed" I have a SSL VPN connection that does successfully…
  • LDAP Auth problem over IPSec

    Hi, We have a problem randomly happening. Users are using to AD Auth for SSLVPN. And sometimes gives an error. When I was check the SSLVPN application; "auth error". After then was check the Sophos XG and gives a same error. If i do manually disconnect…
  • General question about AD sync with XG

    In my environment i have enabled SSL VPN on my XG. Authentication is through AD. I have an AD security group which synchronises with XG. I add AD members to this group and SSL VPN access is granted to the users of this AD security group. I have some…
  • Recipient Verification Active Directory

    Hello, we are Using Sophos XG 230 on SFOS 18.04 MR-4 If i try to set up Recipient Verification to AD nothing happens. Every Mail is redirected to the Exchange 2016. It does not Check against additional smtp Addresses or anything. Does anybody…
  • Sophos XG s2s vpn - offiste Domain Controller for authentication ssl vpn

    Hello all, we have a nearly exact setup which is described in the below link. So we have s2s ipsec vpn tunnel between two sophos XGs. https://support.sophos.com/support/s/article/KB-000035830?language=en_US We did this configuration to be able…
  • Sophos XG210 MR4 OTP Token with AD authentication - error 17705 and 17711

    Dear community, i got some problems with Sophos XG210 MR4. I created a new AD user for testing, activated OTP and assigned the testuser to it. I got a new hardware token i integratet and assigned to the testuser. Now i done some testing, testuser…
  • SafeGuard Enterprise: Synchronization of Active Directory objects fails

    Disclaimer: Please contact Sophos Professional Services if you require assistance with your specific environment. Issue Active Directory synchronization fails either completely or partly for some Active Directory objects. Applies to the following…
  • SafeGuard Enterprise: Password cannot be changed although Active Directory password complexity requirement has been met

    Disclaimer: Please contact Sophos Professional Services if you require assistance with your specific environment. Issue The password cannot be changed, although it meets the complexity required in the Active Directory. The wizard stops and mentions…
  • SEC Decommission Active Directory Users/Groups

    We have migrated from SEC to Sophos Central. The old SEC server has been removed, but we still have Sophos Users/Groups in Active Directory. Is there any special way these must be removed? Thank you,
  • Sophos AD Integration - Authentication proble

    Hello Team, I´m new in the community, I Have a Sophos XG 330 productive one with SFOS 17.5.12 MR-12 and another Sophos XG 330 for backup SFOS 18.0.4 MR-4 both with AD integration working for SSO and L"TP/IPSEC VPN access but when an AD user change the…
  • Active Directory failed authenticating users of subdomains

    Hi all, I have a Sophos XG device integrated with Active Directory. My Active Directory has 15 sub domains in my network. This works as intended but we have some trouble with the AD connection. We have a root-domain and 15 subdomains. We have a global…
  • Radius test failed

    I am setting up Sophos XG Wireless for the first time, and having some trouble with Radius. I have a ticket open with Sophos support, but wanted to reach out to the community to get their take on the issue. I followed the instructions by Sophos for setting…
  • User can't log in with STAS - XG 210 SFOS 17.5.14

    I have a problem that is bothering me for a couple of weeks now, we have an Windows Server 2012 R2 Standard with STAS SSO installed and configured, everything works fine(we have 50~ users), except for one specific user, that simply doesn't authenticate…
  • Sophos Firewall: Integrate Sophos Firewall with Azure AD

    Disclaimer: This information is provided as-is for the benefit of the Community. Please contact Sophos Professional Services if you require assistance with your specific environment. Table of Contents Overview Azure configuration Firewall…
  • Remove authentication server from XG

    Hi, I am new to XG and playing in a test environment. So far I have been successful in getting everything I have tried up and running. Through some hiccups I have caused by messing with stuff, I have eliminated the domain controller that I had added…
  • Issue moving firewall to firewall group in Sophos Central

    We moved a firewall into a firewall group in Sophos Central and upon synchronizing it will give the following Error: Firewall Transaction Details ID : 1 | STATUS: FAILED | EVENT : UPDATE AD server \"{srvname}\" could not be updated Error:: servertype…
  • AD Users cannot log into Sophos Portal

    I just configured New AD Server windows 2019. I configured users on sophos for vpn remote access. For downloading the client certificate , when I try to logon to Sophos portal it fails On windows side i can see successful log on and immediated…
  • Sophos UTM Quota by Size

    Hello Everyone, I want to setup a Quota for internet usage on my company, this Quota will be setup based on Users each one will have 700Mb per day , all these user are authenticated through an Active Directory Server. Wondering if you can help me…