Browse By Tags

  • XGS4500 (SFOS 20.0.2 MR-2-Build378) after Firmware update from 20GA to MR2 stays dead

    Hello Sophos Community, we just updated two XGS4500 (in HA) to 20 MR2 and now the SSLVPN stays dead: After checking the admin interfance I logged into the shell: I used the command: service sslvpn:restart -ds nosync 503 Service Failed We don't…
  • No SSL S2S Tunnel after SSD Upgrade

    Hello Folks, a customer installed the ssd upgrade and after the reboot all ssl site-2-site tunnels don't work. ssl remote access works, ipsec tunnels are working. here are some lines from the sslvpn.log: we created a new connection, same issue…
  • Site To Site SSL VPN random disconnection

    Hi everyone, We have a cloud Sophos 19.5 appliance with a public IP. We use it to setup a site to site SSL VPN to another Sophos 19.5 with is located behind a 3rd party firewall. For some reason, the VPN behaviour is erratic. It could work for few…
  • Help configuring VPN site-to-site on Sophos XGS

    Hello, I hope you can help me, Currently I need to configure a site-to-site SSL VPN, the problem I have is that the ISP is giving me a private IP and I cannot manage the modem to give the public IP to the WAN of the sophos XGS. Is there a way to configure…
  • Site to Site SSL VPN connection established, but cannot access network resources

    The connection is established: But my client is unable to access server-side resources, nor my server-side hosts are able to access client-side resources.
  • SSLVPN Outbound interface choose

    Hi. We've a FW with 2 WAN interfaces in the office: - 1 slower with fixed IP - 1 faster with dynamic IP This FW establishes a SSLVPN site-to-site to another Sophos FW in our Datacenter. But this is the thing, I cannot choose outbound interface…
  • VPN Site to site no ping on one way

    Hi, I've depolyed a site-to-site SSL VPN between two XGS (HO Server and BO Client) HO network is 192.168.3.0/24 and BO network is 192.168.2.0/24. I'm able to ping from BO to HO but not the opposite. Tha packet capture says IP_Spoof - Violation…
  • Sophos XGS remote VPN to remote network

    Good morning, I would appreciate some help to find a soution to reach a remote BO network throught a remote connection to HO Firewall. Here's some details of the setup: HO XGS107w with 192.168.3.0/24 network and BO XGS87w with 192.168.2.0/24 network…
  • Printer SMTP to Printerserver - over SSL site-to-site VPN

    Hello, After 4days searching, I need to post my question here... We changed from expensive MPLS to SSL VPN (site-to-site) between 2 XG-Firewalls. Since this change, we have (only) one thing not working. We have a printerserver (MyQ) running in HQ…
  • Site to site SSL VPN static route from remote site to HQ not working!

    I have an issue with Static routes on Sophos. I will try to keep this as clean and easy as possible. I have a site to site SSL VPN connection from 192.168.21.254 (HQ site) to 192.168.43.254 (Remote site) On the HQ site i have a DHL Firewall with…
  • Query

    Good morning I have a question, I have two sophos connected to each other by sslvpn site to site, in one of them there is a wan connection that allows external connection to a client. Is it possible to connect from the sophos that does not have a wan…
  • Site to Site SSL vpn

    Hi, I have one site to site ssl VPN tunnel from Site office to HO DC firewall. I am getting authentication failure in logs. I am not able to understand why I am getting these logs. Can anyone help to solve this issue.
  • SSL VPN S2S configured

    Hi, I have configured based on the KB - SSL VPN Site to Site. But not aware as to how to connect from remote PC to SSL VPN S2S. Kindly advise.
  • SSL VPN site to site

    Hi, Is SSL -VPN site to site requires XG Appliance at both the ends. ?
  • Site to Site SSL VPN: How to choose/force a gateway for multi-WAN client?

    Hello, I have the following SSL VPN (site-to-site) connections : I've 2 WAN interfaces ( configured as Active/Active with a 50% balance - which is exactly what I want): As a client firewall, I'd simply like to force the SSL VPN (site-to…
  • vpn ssl site to site sophos xg without public ip

    Team, I have a question, currently, we have two firewalls, but we don't have Public IP, I mean we have internet with Private IP. We want to know how to connect both appliances through SSL VPN SITE TO SITE , it is possible? Thanks for your…
  • Sophos XG (server) to UTM (client) SSL VPN (site-to-site) not establishing, LOCAL_ACL violation

    Hello, I am new to the forum. When trying to connect a Sophos XG and UTM via SSL VPN site-to-site the connection does not establish. My plan is to connect a Sophos XG (running as a SSL VPN site to site server, Software version SFOS 18.0.4 MR-4)…
  • Find the source IP of the SSL VPN site-to-site client

    Hello, I have a branch office with 2 ISPs, I recently configured an SSL VPN site-to-site tunnel between this branch and the head office. The weight in both links is 1, and I need to know which link is used by the branch office device to establish the…
  • XG Firewall Upgrade to Version 18

    I am planning on upgrading two XG firewalls at separate locations to version: HW-18.0.5_MR-5.SF300-586 Current status is: Site A: XG115 - FW: SFOS 17.5.11 MR-11 (Current) Site B: XG106 - FW: SFOS 17.5.13 MR-13 (Current) Both of the above XGs…
  • XG Firewall SSL VPN Site to Site to UTM 9

    Figured I would try the new XG since I recently got a rental and thought I could try a VPN back to my UTM 9 device. Well it's not going to well so far. I configured the VPN Server on the UTM 9 device. I added the Internal Network of the UTM 9 as the…
  • SSL VPN site-to-site Client connection FIle

    Hi all, i want to establish SSLVPN Client Connection that is using a static Key authentication. I am struggling to create a apc or epc File that is importable into the XG FIrewall, because the convert Scripts that is found require ca and client certificate…
  • Rule setup for AD Domain Trust

    XG 18.0.3 on 2 networks connected via SSL-VPN (s2s) and Im trying to create a domain trust relationship between sites. VPN is connected and can ping across both, but name resolution is failing. Not sure if its failing because of WAN DNS or if its…
  • Site-to-Site SSL VPN with Public IP from SSL VPN server?

    Hi How do I add on my client SSL VPN (firewall 1) default gateway from my server SSL VPN (firewall 2)? I would like all my clients receive public IP from my server SSL VPN. Any help? Thanks! JL