• Sophos XG - L2TP / Radius Authentication failed

    fromthenorth
    fromthenorth
    Hallo zusammen, durch einen VPN Tunnel hat die Sophos XG Kontakt zum Zentralnetz bzw. den DCs. Die Authentifizierung zu den DCs klappt ohne Probleme. User können sich über STAS authentifizieren usw. Geplant ist eine VPN-Einwahl über Windows 10 mittels…
    • over 3 years ago
    • Sophos Firewall
    • German Forum
  • XG125 VPN AD Sync

    Pascal Beck1
    Pascal Beck1
    Hallo zusammen, bei unserer XG125 ist unter Konfiguration -> Authentifizierung -> Server "DC1" -> Dienste -> "SSL-VPN-Authentifizierungsmethoden" der primäre DC als Authentifizierungsserver ausgewählt. Wenn man nun unter Konfiguration -> VPN -> SSL…
    • over 3 years ago
    • Sophos Firewall
    • German Forum
  • Sophos XG Terminal Server SATC mit Chrome

    Prätorius GmbH
    Prätorius GmbH
    Guten Tag zusammen, Seit einiger Zeit ist ja schon bekannt, dass SATC mit Chrome nicht mehr funktioniert und SATC mit etwas ausgetauscht werden soll. Ich habe schon länger nach der Ablösung geschaut und vieles dazu gelesen, aber ich lese dazu immer…
    • over 3 years ago
    • Sophos Firewall
    • German Forum
  • XGS 19.6: AD user prefetch icl. Mail attribute

    Chris69
    Chris69
    Hello, In Sophos UTM SG there was a user prefetch - I am really missing this feature because I need to send quarantine-mails to every user on our on-prem exchange. Can´t believe that this is not longer implemented and users are only created when they…
    • Answered
    • over 1 year ago
    • Sophos Firewall
    • Discussions
  • Radius SSO for wired devices

    Dragos Avram1
    Dragos Avram1
    Hello everyone, I would like to set up the firewall for radius sso. My radius server and switches are configured correct as i can get network access and vlan assignmet and failover based on my policies. My problem is the captive portal as the firewall…
    • over 1 year ago
    • Sophos Firewall
    • Discussions
  • Azure SAML auth for SSL VPN

    Brandon Dale
    Brandon Dale
    When is Sophos implementing Azure SAML support for the SSL VPN? It's already available in the user portal how long until we can configure this for the VPN, we are contemplating dumping Sophos and moving to something else to get this feature.
    • over 1 year ago
    • Sophos Firewall
    • Discussions
  • Authenticate XG230 with ZimbraLDAP - Test connection failed due to incorrect credential

    Helson Victorino
    Helson Victorino
    im Trying to Authenticate Sophos XH230 with Zimbra LDAP, and i can't it always says "Test connection failed due to incorrect credential". help
    • over 1 year ago
    • Sophos Firewall
    • Discussions
  • Change the name of the authentication server

    schmiegi
    schmiegi
    Hello, can I change the display name of the authentication server without creating a new server ? I can change everything except the display name. The option is grayed out. Thx
    • over 1 year ago
    • Sophos Firewall
    • Discussions
  • Users not getting matched to to AD Groups and falling in Default Group

    Moeed Aziz
    Moeed Aziz
    Hi, I have been using Sophos 18.0.1 with AD authentication and its working fine. I have recently installed Sophos SFOS 19.5.1 MR-1-Build278 for testing. Initially it was having NTLM authentication issue, which i sorted out by deleting the nasm and…
    • over 1 year ago
    • Sophos Firewall
    • Discussions
  • STAS logon type is 3 ??

    Fotit
    Fotit
    Hi all, FW XG v (SFOS 19.0.1 MR-1-Build365) I just have 2 DCs with stas installed. I think stas authentication is working as you like in the capture, logon type is 3 !! But logon type 3 as defined: The STAS agent runs on a member server and…
    • over 1 year ago
    • Sophos Firewall
    • Discussions
  • Sophos XGS STAS IPv6 support

    Oldrich Cuda
    Oldrich Cuda
    Hi there, are there any plans that STAS will support IPv6? We are using IPv6 and STAS agent is not able to work if user is using IPv6. Besr regards, Oldrich
    • over 1 year ago
    • Sophos Firewall
    • Discussions
  • Remote users, Azure AD and always on VPN

    Eduardo Diaz Comellas
    Eduardo Diaz Comellas
    Hi, For a project I'm working with it is required to allow remote users with company provided laptops. This laptops are intended for business purposes only and should start a vpn to the in-house XGS firewall and block any direct connection to Internet…
    • over 1 year ago
    • Sophos Firewall
    • Discussions
  • can't delete AD user in FW XG

    Fabiano Pamplona dos Santos
    Fabiano Pamplona dos Santos
    Hi guys, We can't delete some users from sophos firewall. When we tried do this, this message was presented: " Couldn't delete user. A firewall rule, VPN connection, web policy rule, or SSL/TLS inspection rule exists for this user " We already delete…
    • over 1 year ago
    • Sophos Firewall
    • Discussions
  • Multi Site XG and MFA

    Ray Banville
    Ray Banville
    We have had 1 site for a long time - we have an XG appliance. we have users vpn to the site and then user RDP to connect to internal resources. The user id and logon on the XG are seperate from AD user logon and we are using Sophos MFA. We recently…
    • over 1 year ago
    • Sophos Firewall
    • Discussions
  • Sophos X Active Directory authentication with multiple managed domains

    Guilherme Silva1
    Guilherme Silva1
    Hello guys! I currently have a scenario that uses authentication between the firewall and Active Directory. In this same Active Directory, in addition to the main domain, I have other domains with linked users. In the authentication configuration…
    • over 1 year ago
    • Sophos Firewall
    • Discussions
  • QR code missing in SFOS 19.5.0

    itguy318
    itguy318
    Upgraded from 18.5 to 19.5 recently and found that i am unable to view user / admin QR codes under the authentication / one time password section. If a user changed a phone or lost, we would usually login to XG and see the QR code and scan it on the user…
    • Answered
    • over 1 year ago
    • Sophos Firewall
    • Discussions
  • Will SOPHOS Be Adding User Support for Web browsing from Azure AD for Web Filtering

    James Gaydusek
    James Gaydusek
    We are currently using SOPHOS for our Firewall. We would like to tie it into our Azure AD. Since we had issues with RW, we will not put in a AD server on premise and according to Microsoft that AD was going to be phased out and Azure AD was going to be…
    • over 1 year ago
    • Sophos Firewall
    • Discussions
  • How to identify AD-imported groups in SFOS?

    LHerzog
    LHerzog
    Is it somehow possible to identify which groups in SFOS have their source in Active Directory? To me local and AD groups all look the same on SFOS. Even after export of them as entities.tar. That makes managing larger environments with local groups…
    • over 1 year ago
    • Sophos Firewall
    • Discussions
  • SSL VPN with and without radius/mfa

    Louis D
    Louis D
    hello, we need to use both ssl authentication with radius/mfa for admins and no mfa for normal users. ssl authentication servers are radius and AD. when i (admin user) connect to openvpn, i need to use mfa but if i wait without validating mfa, i…
    • over 1 year ago
    • Sophos Firewall
    • Discussions
  • Sophos Central Azure AD WLAN certificates

    ADHero
    ADHero
    Hello all, We are currently trying to change the authentication of our Wifi to certificates authentication, but are currently failing in the selection and setup of the RADIUS server. We use an Azure AD (no local Active Directory available) and have…
    • over 1 year ago
    • Sophos Firewall
    • Discussions
  • Regla de Enrutamiento Estatico

    Roman Laboreo
    Roman Laboreo
    HOla! tengo un problema y a ver si alguien le ha pasado lo mismo y como puedo solucionarlo. Tengo un DC con DNS "pepito.local" donde tengo un servidor Web publicado al exterior por el dns https://CRM.pepito.com . En la zona LOCAL tengo creada…
    • over 1 year ago
    • Sophos Firewall
    • Discussions
  • Sophos XG Firewall not collecting AD Users

    Stuart Gay
    Stuart Gay
    So I have an XG firewall that is Authenticated with our 2 local AD Servers and was looking for some assistance with the below. 1. I did a migration to 2 new 2019 DCs last year and even though we kept the IPs the same, the names changed. Now for some…
    • Answered
    • over 1 year ago
    • Sophos Firewall
    • Discussions
  • Import Group Wizard hangs

    TrupiD
    TrupiD
    Hi, there is already discussion from 4 years ago (+) Import Group Wizard hangs at "Select AD groups to import" - Discussions - Sophos Firewall - Sophos Community that got solved. I have this exact problem also today on an XG 230 Appliance that…
    • Answered
    • over 1 year ago
    • Sophos Firewall
    • Discussions
  • Authentication

    Stuart James
    Stuart James
    I understand that using Kerberos is the new recommendation from Sophos to replace STAS so that nothing needs to be installed/configured on the DC's themselves. I've followed this document: https://docs.sophos.com/nsg/sophos-firewall/18.5/Help/en-us…
    • over 1 year ago
    • Sophos Firewall
    • Discussions
  • SATC: Syntax of Option SatcExcludedUsers

    IT BLD
    IT BLD
    Hello Community, I configured some Terminalservers with Intercept X and SATC (Sophos Authentication for Thin client) and User Accounts are recognized and can be used in XGS3300 Firewall rules. So far so good! Now I wish to exclude some User Accounts…
    • Answered
    • over 1 year ago
    • Sophos Firewall
    • Discussions
<>