Browse By Tags

  • How can I make network definition a member of network group using RESTful API?

    Hello, My restd version is 1.2.1 on UTM 9.505004. I can make a new network definition using API, but I can't find API way to make this network definition a member of existing network group definition. Any ideas? Regards, Jan
  • 2 machines sharing one WAN port and IP unintentionlly

    I have a physical machine (PM) with physical ports eth0 and eth1. It is running a virtual machine VM0 via KVM. As consequence, eth0 appears aliased to virbr0, such that the only ports that are "up" are eth1 and virbr0. Other VM's lay behind VM0, which…
  • Routing all traffic from LAN to Internet over VPN Tunnel in DMZ

    Sophos UTM Configuration Interfaces External (WAN) 82.x.x.x DMZ 10.0.0.1 /8 Internal (LAN) 192.168.0.1 /24 Network Services - DNS - Global - Allowed Networks DMZ Network LAN Network Forwarders - DNS Forwarders Google DNS…
  • DMZ, VPN Client, Routing, FW

    DMZ, VPN Client, Routing, FW Hello, I would like to setup a router (VPN Client) in a DMZ and route traffic from LAN over DMZ to Open VPN Tunnel. I have the following configuration till now: WAN Interface (Ethernet) : 82.x.x.x LAN: 192…
  • Can static routing be done on SOPHOS SG Series Bridged Interfaces ?

    I have got 2 sites connected via L2 Point to Point. Site A which the SIP Server, and other VOIP Call server resources are located Site B which all the IP Phones and Clients are located i am unable to do static routing on the bridge interface. The…
  • Odd Networking Scenario - any ideas?

    Hi, This is an odd networking scenario, so bare with me - TL;DR - How do I get both networks accessible through the UTM? I have 2 internet connections - one with a block of static IP's behind the UTM 220 for servers, one with a DHCP IP that is a gig…
  • VPN - Zugriff auf Teile eines jeden Subnetzes

    Hallo Zusammen, wir haben einen VPN, um einem Dienstleister Zugriff auf seine Geräte zu gewähren. Er hat in jedem Subnetz ein Gerät mit der 10.x.x.10 als IP-Adresse. Per VPN hat der Dienstleister nun Zugriff auf das Netz 10.0.0.0/8 Er soll aber in…
  • Using UTM 9 as commercial router.

    Hi guys. I'm having a big Dell severs, ruining Sophos UTM 9 Software. Until now, I was using Cisco 2921 as Router, in front my UTM. I have 200 MB syn. Wan Ethernet line, and need to increase it to 300 or 400Mb, which mean i have to buy another bigger…
  • Enabling Anti-DoS/Flooding slows download speed by over 300 Mbps. Does that seem right?

    The network in question was getting DDoS attacks almost daily so IPS was enabled and configured which stopped the attacks. In the Anti-DoS/Flooding tab TCP SYN Flood Protection, UDP Flood Protection, and ICMP Flood Protection have all been applied. Since…
  • Site to Site VPN Tunnels

    Hello, We are having several customers that they host their solutions to our data center. Until now each customer had their own firewall and their own IP range. With the current configuration we used a different firewall brand for each customer. Each…
  • Hello all I'm looking for a bit of advise.

    Please see the attached network topology, I'm looking for opinions on the best configuration based on performance and security. I welcome any suggestions that the experts on the forum can provide to assist with this config. I would also welcome…
  • Blocked entire "Unclassified Applications"

    Hi guys, I just wanna ask help or any suggestions how can I blocked entirely "Unclassified Applications" that eat most of my bandwidth? See reports below: Any recommendations will be much appreciated. Thank you. Regards, Anthony
  • Interface eth2 is being renamed to "rename4" at each boot

    Hello, I'm unsure if this is the right group to report this, but feel free to move the message to most appropriate one. I have just upgraded to version 9.408-4 and I have a big problem with one of my network interfaces, which they're all virtual …
  • New interface and how to block traffic from lan

    Hi, Internal LAN is 192.168.157.0/24 and the new interface added is 192.168.158.0/24. Our Sophos SG 125 has 192.168.157.70 ip I´d like to block all traffic between LAN and 192.168.158.0/24 but the existing rule rejecting all traffic does not work…
  • NPR Podcasts won't download

    Sophos UTM 9.403-4. Download of NPR podcasts used to work, but began failing 10 days ago. No changes on my side other than UTM maintenance patches, but I don't know if NPR made changes. Trying to download NPR podcasts on Android devices and now receive…
  • Unable to add-apt-repository ppa:nginx/stable

    I have two Sophos AWS instances that are connected via a hotswap configuration with each of them in their own public subnets in the VPC. Behind that I have two private subnets that they send traffic to and I'm unable to connect via https to any site.…
  • Site-to-Site VPN issues with SG210 and SonicWall TZ105

    Is there a way to investigate the VPN disconnect between Astaro SG210 and SonicWall TZ105? The logs indicate VPN connection established; but did not notice VPN disconnect or WAN port disconnect.
  • Sophos UTM 9 double NAT

    I am new to this and just finding my way around setting up utm/firewalls i have a 2 firewall setup an internal sophos utm 9 ffirewall and an external firewall The internal firewall sophos utm 9 is setup where all computers and mobile devices are behind…
  • Will the firewall refuse to forward "private" IP address blocks?

    I tried setting up sophos today in a test environment to see how much throughput I could get, but I couldn't get far. My core network is on a 10. subnet and I setup a computer and assigned it with 192.168.2.20 subnet IP. Sophos was the router between…
  • How to get WOL working on different subnets?

    Hey there, we got plenty of VLANs/subnets for client-PCs which we'd like to wake up in the middle of the night for update issues. Unluckily after switching to our new SG450 WOL doesn't seem to work anymore which it did with our old Cisco ASAs. I read…
  • Best practice amalgamating two networks

    I currently have two separate networks in the same building and a remote RED connecting to network A Network A, uses a fibre BB connection, 10/100/1000 switch, 20x PCs/ servers/ printers, on 192.168.100.1/24 through a Sophos 110/120 UTM Current setup…
  • How can I find out how many and what are the devices IPs currently connected to LAN

    Under Wireless Protection I Can click at Wireless Clients to see what clients are connected to the WiFi. Can I do the same for LAN devices? I do have DHCP enabled on the UTM.
  • Interface communications not working

    Hello all... New to Sophos I'm very excited to have found this free UTM for home use as I simply do not feel I am in control of my home network. I have set up the Sophos on a Dell Optiplex 780 (I think) and added NICs to a total of 6 interfaces. What…
  • Best way to create source NAT for inbound port forwarding

    Hi everyone, In TMG when you create a generic port listener for you to change the source address of the incoming packet to the server. I've typically used this in the past to mitigate against asymmetric routing when there's multiple outbound gateways…
  • Creating DMZ with VLANs

    Hi all, I have a SG330 and I want to setup a DMZ, to put my edge transport Exchange server in. The Exchange server will be a virtual machine, hosted on a Hyper-V 2012 R2 core host, that currently resides on the internal network. My question is, whats…