Browse By Tags

  • Site-To-Site Sophos <-> AWS VPC: BGP Issues

    Hi, we have a site-to-site tunnel from Sophos Firewall to AWS. Several local (sophos side) networks are appearing in AWS routing tables correctly. However, the SSL-VPN network will not appear in AWS routing tables. When I check bgp information…
  • XGS4500 (SFOS 20.0.2 MR-2-Build378) after Firmware update from 20GA to MR2 stays dead

    Hello Sophos Community, we just updated two XGS4500 (in HA) to 20 MR2 and now the SSLVPN stays dead: After checking the admin interfance I logged into the shell: I used the command: service sslvpn:restart -ds nosync 503 Service Failed We don't…
  • Established sSite to Site SSL VPN, Voip phones only working partially

    Hello - I have an XGS 2100 at HQ. We were using a RED device to connect the branch office Phone and LAN traffic via VPN to the HQ PBX/LAN and everything worked fine. Given the rollout of the latest OS, the RED is no longer compatible, so we are attempting…
  • Using SG Firewall as a RED device

    Hello, can you continue to use the SGs at the secondary locations as RED devices with an XGS or should you switch to an SD-RED 20 or SD-RED 60? Thank you very much
  • Site-to-site-VPN SSL feste IP Adresse?

    Hallo, ich habe zwei Sophos-XGS per site-to-site VPN SSL gekoppelt. Die Verbindung bekommt immer eine IP-Adresse aus dem SSL- Bereich per DHCP zugewiesen. Kann ich diese Adresse zuweisen bzw zumindest reservieren? z.B. soll die Sophos üner diesen…
  • Sophos XGS site-to-site SSL VPN static IP address for client

    Hello, I have Sophos XG 2300 with firmware 19.5.3 MR-3. I'm trying to set a static IP address for a site-to-site SSL VPN client. Is there any way to achieve this? Whatever I do it keeps getting leased IP address from Global DHCP pool or the VPN…
  • Sophos XGS Site-To-Site SSL VPN will not auto connect after reboot

    Hi, We have a Sophos XGS 107 (Client) connecting to another unit XGS 2100 (Server) via Site-To-Site SSL VPN. We noticed the Site-to-Site SSL VPN will not auto connect after the Client unit get restarted When it happened, we manually on/off the SSL…
  • SSL-VPN Firewall Routing

    Hallo zusammen, seit dem Update auf Version 20.0.0 GA Build222 kommt es in unregelmäßigen Abständen zu dem Problem, dass sich Benutzer die über einen SSL-VPN (egal ob es ein Endpoint per Sophos Connect oder eine Site-to-Site VPN per SSL über 2 Sophos…
  • No SSL S2S Tunnel after SSD Upgrade

    Hello Folks, a customer installed the ssd upgrade and after the reboot all ssl site-2-site tunnels don't work. ssl remote access works, ipsec tunnels are working. here are some lines from the sslvpn.log: we created a new connection, same issue…
  • Site To Site SSL VPN random disconnection

    Hi everyone, We have a cloud Sophos 19.5 appliance with a public IP. We use it to setup a site to site SSL VPN to another Sophos 19.5 with is located behind a 3rd party firewall. For some reason, the VPN behaviour is erratic. It could work for few…
  • Help configuring VPN site-to-site on Sophos XGS

    Hello, I hope you can help me, Currently I need to configure a site-to-site SSL VPN, the problem I have is that the ISP is giving me a private IP and I cannot manage the modem to give the public IP to the WAN of the sophos XGS. Is there a way to configure…
  • Site to Site SSL VPN connection established, but cannot access network resources

    The connection is established: But my client is unable to access server-side resources, nor my server-side hosts are able to access client-side resources.
  • HPE ILO Access via SSLVPN

    Hi, I am connected with SSL VPN, everything is accessible. The HP ILO is unfortunately only accessible from the lan, but I would like to access it via SSL VPN. What is the best way to do this? Regards Markus
  • SSLVPN Outbound interface choose

    Hi. We've a FW with 2 WAN interfaces in the office: - 1 slower with fixed IP - 1 faster with dynamic IP This FW establishes a SSLVPN site-to-site to another Sophos FW in our Datacenter. But this is the thing, I cannot choose outbound interface…
  • SSL VPN Port Forwarding zu einer zweiten Firewall

    Hallo, ich hätte ein paar Fragen bezüglich der Möglichkeit der Port Weiterleitung der SSL-VPN-Verbindung von einer Sophos SG125 ( 9.716-2 ). Aufbau der VPN-Verbindung: Hintergrund: Die Sophos soll den VPN-Traffic handhaben und es soll eine…
  • Site-to-Site-Verbindung Anschluss tauschen - A-Record setzen

    Hallo, wir haben über unser SG115 eine Außenstelle via SSl (Site-to-Site-Verbindung) angebunden. In den Einstellungen der Verbindung ist unter Hostname Umgehen: …xxxx.de eingetragen. Dafür besteht bei unserem Provider auch ein A-Record-Eintrag, der…
  • XG210 SSL Site-to-Site Konfigurationsdatei lässt sich nicht herunterladen

    Hallo liebe Form-User, ich habe seit längerem das Problem (SFOS 18.5.0 & 18.5.1), dass ich im Webinterface der XG210 unter VPN -> SSL-VPN (Standort-zu-Standort) die Konfigurationsdateien (.apc-Dateien) der entsprechen VPN-Verbindungen nicht herunterladen…
  • XG Firewall VPN Einwahl nur aus internem WLAN Zulassen?

    Guten Abend, wir nutzen die XG seit Monaten für unsere VPN Anbindung um das Homeoffice für die Nutzer zu realisieren. Dies funktioniert soweit ohne Probleme. Nun wollen wir das einige Nutzer aus unseren Internen WLAN´s eine VPN Verbindung aufbauen…
  • SSLVPN Einwahl auf das interne WLAN als Quelle beschränken?

    Guten Abend, wir nutzen die XG seit Monaten für unsere VPN Anbindung um das Homeoffice für die Nutzer zu realisieren. Dies funktioniert soweit ohne Probleme. Nun wollen wir das einige Nutzer aus unseren Internen WLAN´s eine VPN Verbindung aufbauen…
  • AMIT IDG500 LTE Router SSL-VPN Standort-zu-Standort. Benutzername/Kennwort zu lang

    Liebe Community, folgendes Problem habe ich: Auf der Sophos XG habe ich eine SSL-VPN Standort-zu-Standort Verbindung eingerichtet. Die apc Datei heruntergeladen und in eine ovpn Datei umgewandelt und diese in den LTE Router eingebunden. Zusätzlich…
  • SSL Site to Site VPN: Can only ping some endpoints

    Hi all I have a Site to Site SSL VPN configured between two locations, with Subnets 192.168.100.0 /24 server side and 172.16.18.0 /24 client side. The connection says its active and I have added rules on both firewalls to allow from LAN to VPN and…
  • VPN Site to site no ping on one way

    Hi, I've depolyed a site-to-site SSL VPN between two XGS (HO Server and BO Client) HO network is 192.168.3.0/24 and BO network is 192.168.2.0/24. I'm able to ping from BO to HO but not the opposite. Tha packet capture says IP_Spoof - Violation…
  • VPN SSL Site to Site

    Good afternoon, I am starting to test the options that XG Firewall has to work with VPN. Currently I want to set up a Site to Site SSL VPN with two geographically separated XG. The example configuration of both is as follows: XG1 and VPN server…
  • XGS Firewall DNS Request Route over SSL Site2Site VPN

    Hello everyone. I have 2 XGS Firewalls connected via SSL Site2Site VPN, which works good. I created a DNS Request Route for contoso.com (changed of course to my setup) to go to DC DNS IP in main office. This worked for quite some time, now it does…
  • Site to Site SSL VPN cannot connect with another LAN

    Hello Expert, I've issue with Site to Site SSL VPN to connected with another LAN (File Share Server). I've tried many times to connect with the server but not success. My issue is PC2 cannot access (ping/trace route) with the File Share Server (ip…