Browse By Tags

  • how to Sophos firewall YouTube and Facebook access block specify users with static IP address

    YouTube and Facebook access block specify users with static IP address
  • Can't receive an IP from a newly created VLAN using DHCP

    Everytime I create a new VLAN, I cannot receive a valid IP. Here's an example: Here's the configuration for my newly created DHCP for VLAN 130 -------------- -------------------- ---------- Sophos Router is connected to our Core…
  • UTM Home 9.706 Webadmin IP changed to public IP after reboot

    Hoping for help... I updated my Sophos Home UTM and upon reboot, couldn't access my WiFi or the webadmin page. WiFi connection says no internet. I connected a monitor to my UTM and discovered that the IP address for webadmin has changed to my public…
  • I do have 34 devices but get the "License usage: EXCEEDING 100% OF USER COUNT on Sophos UTM"

    Hello, I am sorry for this post as there are numerous other posts on this topic but I am stuck. I tried and read all similar posts and still cannot solve my problem. I use the solution since the good old Astaro times and I have never had a problem like…
  • Binding von IP Adressen für lokale Dienste auf der UTM

    Es mag eine triviale Frage sein, aber wie erzwingt man eine bestimmte IP Adresse als Source Adresse für Dienste auf der UTM (z.B. Up2Date). Ich hätte ja gehofft, dass default die IP Adresse auf der UTM verwendet wird die ein default Gateway hat.
  • Can't Ping Internal Users

    Hi Guys, My clients can PING every host on the internet but not on the local net and internal. When I try to ping google.com, I get a reply. But when I try to ping the I.P's on our internal network we cant ping them at al. All ICMP rules are set,…
  • What Are Some Use-Cases For Dedicated IP Address?

    Just recently I came to the realization that a Dedicated IP is very useful if you are a website owner (for restricted access), a gamer (in case of hosting dedicated servers), a community person (who's participates in different communities). Besides these…
  • IP Telefon geht nicht bzw. nur sporadisch

    Hallo liebe Forumsfreunde, ich habe folgendes Problem: Ich habe eine - XG 115 / Firmware SFOS 17.1.2 MR-2 192.168.11.2 - Telefonanlage AGFEO ES 628 IT 192.168.11.50 - Telefone AGFEO ST 42IP, das zum Testen hat die 192.168.11.52 Ich habe…
  • A LOT of random connections to Twitter, among others - please advise

    Hi there, New user here, could someone please explain these connections to me? I have default WAN to LAN IPS and the default firewall on for now (which allows any connections). I would hope that the IPS blocks malicious connections and keeps ports…
  • Sender Genotype false positives.

    Hi Everyone, Wondered if anyone has any feedback or help on the Sender Genotype functionality? I have been testing it but find 95%+ of the emails that are blocked are genuine? Upon tracking the logs - Example: The sender is using a gmail.com account…
  • Why Shrewsoft Tunnel to UTM9 does not complete?

    Hello guys I got an strange issue. I needed a long time to complete a configuration between my Sophos UTM9 and my ShrewSoft Client to bring up a tunnel with an X509 certificate. A preshared key is unwanted. Now this is completed with 99%. The problem…
  • When I change IP, I can no longer access the web application

    So I had this working not so long ago but decided to restart it after I changed a few IP addresses and couldn't access it. So plugged monitor and keyboard into my box and selected the "factory reset" option. So; my device has 4 network ports and I'm…
  • IPS attacks with source IP addresses of UTM

    FormerMember
    FormerMember
    Hi, today, i've got many IPS alerts with the source IP of UTM's LAN and WAN ports. Is this normal? Regards Meghan P.S. The address No.1 in Screenshot 1 is the LAN IP of UTM and address No.2 is the WAN IP of UTM
  • Log (and other UIs) showing IP's instead of names for defined hosts

    I finally got my Sophos UTM Home machine up and running, and so I have several refinement questions I'm struggling with. To help others who may have the same issue, I'm posting them separately rather than all together. This one deals with the Firewall…
  • Site-to-Site; IPSEC-Tunnel; Vpn Connection zwischen 2 Firmen erstellen

    Hallo Leute, Könnt ihr mir vlt helfen? Also ich kenne mich mit Sophos gar nicht aus, aber ich habe jetzt Aufgabe gekriegt, dass ich zwischen 2 Firmen eine VPN Verbindung erstellen muss also mithilfe von IPSEC-Tunnel. Ich weiß nur dass ich auf Site…
  • Sophos UTM9 Firewall Rule shadowed by Web / App Protection?

    Hello There :) I have a simple drop rule from my Internal Networks - Any - External IP Subnet with Drop. I already have Web and Application Protection in place without a proxy. When i activate the rule the UTM will still pass traffic forward…
  • SMTP Scanning - Sender IP address is blacklisted

    Hello, I am currently getting quite a few emails suddenly being blocked and the email log is showing 'Sender IP address is blacklisted'. Yet when i check the IP's against the mx toolbox blacklist check they aren't on any of the lists. Is there a…
  • look up ip from hostname on firewalls dns server

    I have a question here. i used to be able to do reverse dns lookups from my router when it was the dns server for my clients but now i have installed a Sophos Firewall XG home edition and disabled the dhcp server on the router i cant do lookups anymore…
  • [Workaround] Quarantine Digest Email IP instead of hostname

    The Quarantine Digest Email settings only let you select an IP address based on Port/Alias, instead of allowing you to specify a hostname. This causes a certificate error when clicking the "My Account" or "Release" links in the email. The admin console…
  • Site to Site SSL VPN failing when sending traffic through

    Hi All, I am hoping you guys can help me, I have been working on this for the past 8 hours with no luck We have recently changed our internet provider for one of our satellite offices in a remote part of WA Australia. The previous connection was a…
  • if my theory is correct...

    I feel like laughing like Tom Hanks in the movie The Money Pit when his bathtub feel through the floor. Tom Hanks - Laughing Because of Asymmetric routing, I had to enter a bypass-stateful rule for My LAN to My Datacenter's LAN, then My Datacenter's…
  • Report on all outbound IP traffic by source

    Hi, hopefully i'm missing something obvious (although not holding my breath on that) Background: I am looking into identifying the source and type of some unexplained outbound traffic on a network connection, essentially there are a number of…
  • sophos xg firewall traffic shaping by ip its possible?

    I have ip ranges or groups like 192.168.110.1-10 | Group A | Can use facebook | 20mb down, 5mb up 192.168.110.11-254 | Group B | No service | 0mb down, 0mb up 192.168.111.1-254 | Group C | Service without social networks | 10mb down, 2mb up (this…
  • XG Firewall - How to add and specific firewall rule for an specific dhcp range?

    Hi, im new with Sophos XG Firewall, mine is working greate, Im using a DHCP relay, so im getting my ips from my router (modem <--> router <--> sophos xg firewall <--> switch), and i have a default rule where im blocking proxies and apps that can make…
  • IPsec, OSPF and RED Tunnels

    Hello, I wanted to share some information for those of you that are looking to build OSPF network via RED Tunnels and might currently still have IPsec in play. If you have IPec tunnels built to sites that have RED tunnels that are in use with OSPF…