Browse By Tags

  • XGS on 19.5.0 and SNMP Interface ID

    Hi, We use SNMP to monitor interface utilisation on a XGS 107 [firmware 19.5.0]. The XGS recently lost power and the SNMP Interface ID number changed when the power was restored. My SNMP server had to rescan the XGS to learn the new SNMP Interface ID…
  • How to enable SNMP via WAN on Sophos XG v19.5

    Running SFOS 19.5.0 GA-Build197 How to enable SNMP via WAN port? I have enabled: System > Administration > Device Access > SNMP on WAN and LAN There is no response to SNMP queries from the WAN. However, it works fine in LAN. What else needs to…
  • PRTG SNMP monitoring on UTM9

    Hi All, i have PRTG configured with the MIB file i found online (on this forum) i was wondering, for the moment i'm not able to monitor my traffic on the eth ports, that is actually the most important thing for me. my knowledge of SNMP is limited…
  • Sophos XG v19.0 - SNMP Read-Only Access and restrict SNMP Access to specific Hosts

    Is it possible to setup a Read-Only SNMP (v3) Account or is SNMP (v3) always Read-Only? Is it possible to restrict SNMP Access to specific hosts? AFAIK you can restrict SNMP Access only to specific Zone. Restricted Access to SNMP is not possible via…
  • XG Firewall SNMP to UNMS/ UISP

    I am attempting to add my XG firewall to Ubiquiti's "UISP" which used to be called UNMS. The UISP will add 3rd party routers and switches that has SNMP. It wants the public IP and SNMP Community string. Ive tried a few things such as the name as…
  • I don't receive the notification or report mails to my gmail address.

    I receive notifications and reports to my ccorporate mail but nothing comes to my gmail inbox, anyone knows the reason?
  • Switching from SNMPv2 to v3

    I have successfully gotten our UTM to respond to SNMP v3 queries. I am surprised that it is still responding to SNMP v1 and v2 queries. I cannot find a way to disable this. Am I missing something? Firmware version: 9.711-5
  • SFOS 18 firmware seems to break SNMP via WAN

    Hi all. I have been successfully remotely monitoring a Sophos XG Firewall via SNMP (using MRTG), mainly to monitor incoming and outgoing bandwidth on all 3 Ethernet ports. To clarify... there is an MRTG server out on the Internet, connecting to the Sophos…
  • Sophos XG - SNMP - Monitor tunnel status

    Hi, I'm trying to monitor the status of my policy based ipsec s2s tunnels. I already found the Nod "sfosXGTunnelInfo", but that is only the intended configuration and not a live status. Has anybody managed to get that status from a Sophos XG? Is it…
  • sfosDeviceAPName not fetchable via SNMP-Walk

    Hi everyone, a snmpwalk through 1.3.6.1.4.1.2604.5.1.7.1 did not show the sfosDeviceAPName (1.3.6.1.4.1.2604.5.1.7.1.1.1). All other OIDs (1.3.6.1.4.1.2604.5.1.7.1.1.[2-6]) show correct values. SfosDeviceAPEntry ::= SEQUENCE { sfosDeviceAPName…
  • SNMPD memory usage keeps increasing

    Hi everyone, since we query all firewalls with the SNMP MIB, SNMPD memory usage keeps increasing. After a certain time the firewall crashes. Reproducible SFOS versions: 18.5.2, 18.5.3, 19.0 ATOP - localhost 2022/05/06 10:12:35 ----x--------- 10s…
  • SNMP: No Response

    Trying to setup SNMP monitoring but Paessler SNMP Tester keeps returning Value: No response... SNMP error 2003 I have enabled the snmp agent and created a trap in Administration -> SNMP and also flipped the switch for SNMP traps in System services …
  • SNMP: Welche SHA Version bei v3 ?

    Hi, ich habe auf der UTM snmp v3 aktiviert. Nun möchte ich check_mk nutzen, um die UTM abzufragen. In check_mk muss man allerdings bei SHA die detaillierten Angaben machen, also ob nun sha-256 sha-512 etc. In der UTM steht lediglich, dass sha und…
  • Monitoring sophos XG firewall with zabbix

    Hi, i need to monitor a firewall with zabbix by snmp, do you have configuration settings document or guide for this, templates, mibs are useful too, somebody has any idea? Regards.
  • Is it possible to get status of a vpn-tunnel in Sophos UTM 9 ?

    Hello there! I had a problem recently where the VPN IPSEC stopped working, but the weird thing was that not all of the VPN Tunnels were down... Only a few of them (Two, to be more specific) stopped working. I have a monitoring system that was watching…
  • SPQ interface flapping

    Hi All, After updating about 10 firewalls to XG18 for one of our customers we had another go at enabling SNMP-traps. (after the abysmal functionality that snmp-traps where in XG17). I cannot say that it has improved much. some traps are still being…
  • receiving too many messages on the SNMP TRAP (XG v18)

    Hello everybody, I use Zabbix to monitor Traps. In some firewalls i'm receiving/sending VARIOUS MESSAGES from AuthenticationFailure at 169.254.234.5 (interface ipsec0). I dunno what this message is about. I looked at all the xg firewall logs, but there…
  • Monitoring Traffic Shaping Policies/Queue Usage

    Hi a common issue we face is as customers sites expand the QOS policies need to be adjusted or expanded to deal with the increased devices or bandwidth required for such a service.Unfortunately troubleshooting issues like these are difficult at times…
  • SNMP problem after FW upgrade

    Hello, I recently upgraded our Sophos XG firewalls to version 18.0.4 MR-4 and after the reboot I could not see the ports traffic through SNMP. I still can see other information like CPU and Memory and this happened in all Sophos Firewalls we use after…
  • Site2Site VPN Bandwith usage

    Hi, is there a way to monitor realtime bandwith usage of individual Site2Site VPNs? So far, i could not find any graph displaying VPN bandwith with history or realtime values. In the latest XG Academy webinar i was told to monitor using CLI and "iftop…
  • SNMP - Number of VPN Users?

    Is there an SNMP OID for polling the current number of IPSec/Sophos Connect users? I see one for "sfos live users count" but that seems to pull a number from all total firewall sessions not just VPN. It's essentially meaningless due to the inaccuracy…
  • SNMP Monitoring Down for a VLAN

    Our SNMP monitoring has fallen off for a particular VLAN (Down SNMP), looking at XG logviewer I can see the DENY ALL policy denied traffic to the destination UDP Port 161 to where the SNMP agent is, there hasn't been any other changes, and I have restarted…
  • sophos XG230 zabbix snmp

    Hi, I am using Zabbix 3.4.1 on CentOS and connecting to a Sophos XG virtual appliance (formerly Cyberoam). I am using the following templates with this device: Template MIB XG-FIREWALL-MIB - sophos Template Module Generic SNMPv2 Template Module Interfaces…
  • Getting wrong data from XG via SNMP

    Hi, I've got some Sophos XG SFV1C2_KV01 (KVM Edition) with firmware 17.1.1 MR-1. Polling the XG via SNMP I'm getting wrong data: snmpwalk -v 2c -m +ALL -c public x.x.x.x 1.3.6.1.4.1.21067.2.1.3 XG-FIREWALL-MIB::appRegStatus.0 = INTEGER: unregistered…
  • SNMP and OID

    Hi everybody I found in MIB some information like WARN-727 NOTIFICATION-TYPE STATUS current DESCRIPTION "RED connection is down" ::= { warn 727 } Somebody can tell me witch OID is used for this SNMP Warning ?