• Adding FQDN host object causes restart of DNS and failure in name resolution.

    Rieski
    Rieski
    Every time FQDN hosts object is being added to firewall it causes dnscache to restart. During restart name resolution using firewall fails. New FQDN host object being added to firewall, notice how PID changes for dnscache process. Instead of reloading…
    • over 2 years ago
    • Sophos Firewall
    • Discussions
  • DNS service in "SOPHOSXG"

    jerzon quispe
    jerzon quispe
    Dear one query, I do not have an internal DNS server to resolve my zimbra internally, I have searched for a DNS service in sophos, I have added the FQDN and internal IP but it does not resolve, does anyone know how said DNS service is applied?
    • Answered
    • over 2 years ago
    • Sophos Firewall
    • Discussions
  • Red60 DNS settings when used with XG for a red tunnel

    Matthew LaComb
    Matthew LaComb
    Google searching not successful; how do I set up the DHCP server "dns settings" to push from an XG to a remote Red60 (i.e. client laptop needs to see our domain suffix + name servers)
    • over 2 years ago
    • Sophos Firewall
    • Discussions
  • DNS Sink Holing to identify infected hosts

    Datapac
    Datapac
    Are there any plans for Sophos XG to implement DNS sinkholing where malicious DNS requests are resolved to a "Black Holed" IP address and once a host tries to communicate with this IP address, we can identify the infected host. This would save a hugh…
    • over 2 years ago
    • Sophos Firewall
    • Discussions
  • DNS Host Entry doesn't work for some VLANs

    Pete B1
    Pete B1
    I recently updated to SFOS 19.0.1 MR-1-Build365. Since the update my DNS host entries aren't working on all VLANs except the VLAN the firewall is connected to. They were previously working in 18.5 and I haven't made any configuration changes. I have…
    • Answered
    • over 2 years ago
    • Sophos Firewall
    • Discussions
  • Split DNS via internal AD DNS over SSLVPN does not work with Connect based clients

    RCA_Sophos
    RCA_Sophos
    Hi all, we have the following setup: - XGS 126, configured for SSLVPN - The global SSLVPN settings contain the IPs for both internal AD DNS servers and the AD FQDN (i.e. contoso.local) - The internal DNS is configured for Split-DNS to resolve external…
    • Answered
    • over 2 years ago
    • Sophos Firewall
    • Discussions
  • Subdomain to port

    Tony B
    Tony B
    Hi, Please forgive this question. I am a complete novice so not sure even if this is possible. My situation: I have one server with a static IP On this server I have various web applications that are being served on different ports. Ie: Service 1…
    • over 2 years ago
    • Sophos Firewall
    • Discussions
  • Sophos Firewall: SafeSearch - Enforcement when using the DPI Engine

    Michael Dunn
    Michael Dunn
    Disclaimer : This information is provided as-is for the benefit of the Community. Please contact Sophos Professional Services if you require assistance with your specific environment. During the webcast on November 14, 2019 there was the following…
    • Answered
    • over 5 years ago
    • Sophos Firewall
    • Recommended Reads
  • Sophos Firewall: Troubleshooting network and connectivity issues

    Dennis Huagan
    Dennis Huagan
    Disclaimer : This information is provided as-is for the benefit of the Community. Please contact Sophos Professional Services if you require assistance with your specific environment. Table Of Contents Overview Information Physical Computer…
    • over 2 years ago
    • Sophos Firewall
    • Recommended Reads
  • How to find DNS querys from LAN zone to WAN Zone

    Juan Michel
    Juan Michel
    Hello, I need to see the DNS queries generated from my LAN zone to the WAN zone of the XG Firewall. Through the DHCP of the firewall I am assigning the same Firewall as the DNS server. But I cannot identify or find anything in the logs or reports that…
    • Answered
    • over 2 years ago
    • Sophos Firewall
    • Discussions
  • Have I setup DNS correctly on my XGS136?

    Sean Rome
    Sean Rome
    Greetings everyone! I'm going to replace my UTM tonight with my new XGS136. Our domain controller will be primary DNS, and the XGS will be secondary. On the domain controller I set the forwarder to be the firewall. These are my settings. Have I set…
    • Answered
    • over 2 years ago
    • Sophos Firewall
    • Discussions
  • XG Firewall blocking Domain Controller DNS Lookup

    Marco_Rolo
    Marco_Rolo
    Hello All, I'm switching over to an XG firewall, and I can't get my Domain Controllers' DNS to resolve their forwarders. I can see the packets being allowed out and seem to have upstream bandwidth, but in Live Connections under DNS the downstream…
    • over 2 years ago
    • Sophos Firewall
    • Discussions
  • DNS Not working through ipsec VPN

    Ian Coan
    Ian Coan
    I have a Sophos XG 85 v17 with a site-to-site vpn running to a Ubiquiti UDM Pro. The tunnel is working great despite DNS not resolving from either end through the tunnel. The XG subnet is 10.10.10.0/24 and the Ubiquiti subnet is 10.0.0.0/24. I can ping…
    • over 2 years ago
    • Sophos Firewall
    • Discussions
  • Network Design with Layer 3 Switch and UTM

    PMIAdmin
    PMIAdmin
    Our network will consist of 5 access switches connected to a layer 3 core switch connected to a SG430. We will have several VLANS consisting of computers, VoIP phones, security cameras and card access readers. Total users will be around 100. We are fully…
    • over 2 years ago
    • UTM Firewall
    • General Discussion
  • DNS across VLANs

    Robin Rieger
    Robin Rieger
    Hey, So I have this DHCP VLANS all like this and DNS like this From any computer in VLAN 100 I can ping another computer in VLAN100 like this ping cws-yellow-room But, if I try to ping a server (by name and not…
    • Answered
    • over 2 years ago
    • Sophos Firewall
    • Discussions
  • Sophos v19 - Web Proxy or DPI-SSL web filtering & DNS requests

    ADJ
    ADJ
    Hi, I have a question about Web content filtering using either Web proxy or DPI-SSL and DNS requests/resolution. I have Sophos firewall set up in bridge mode with Netgear router as the gateway and for DNS. The Netgear router handles DHCP and DNS…
    • over 2 years ago
    • Sophos Firewall
    • Discussions
  • Sophos XG as DNS server (for local entries) and forwarder (for public entries)

    Shadow82
    Shadow82
    Hi! Recently I implemented my Sophos XG as local DNS server, but it does not resolve public DNS names. My setup is that I have some router working as DHCP server. Sophos is "work in progress", with WAN interface on the same subnet as router. It also…
    • over 2 years ago
    • Sophos Firewall
    • Discussions
  • DNS Suffix not applying for hosts on different IP ranges

    morilythari
    morilythari
    When users (even me) connect via the SSL VPN client there are certain webapps that will not load without the fqdn. Examples: https://app1 = Fine https://app2 = Not Fine https://app2.domain.local.com = Fine You can ping and tracert "app2" and it resolves…
    • over 2 years ago
    • UTM Firewall
    • General Discussion
  • DNS Not Working through IPSEC Remote Access

    JeffCooper
    JeffCooper
    Hi, I got a Remote Access IPSEC working on an XGS2300 (v19). It worked but was unusably slow. Sophos support suggested I disable "Use as default gateway" and explicitely add resources VPN clients could see. I want them to see the entire LAN, and the…
    • Answered
    • over 2 years ago
    • Sophos Firewall
    • Discussions
  • KISS (Stupid, Simple) DNS Configuration, DNS Issues, and Possible DNS Bug on UTM

    utmadm
    utmadm
    I have a basic DNS setup for a home UTM configuration. The UTM is the only DNS server and also the DHCP server. All internal devices have DNS configured with the UTM LAN address as their DNS server. DHCP is also configured to provide the UTM's LAN address…
    • over 2 years ago
    • UTM Firewall
    • General Discussion
  • TCP Latency and DNS retry issues

    UJay
    UJay
    Hi In my network environment, i am noticing a lot of TCP Latency and DNS retry issues. Currently i am using Unifi Switches and Unifi APs as network devices and they channel the traffic to the XG-115. I have reached out to Unifi support team to see…
    • over 2 years ago
    • Sophos Firewall
    • Discussions
  • VPN does not resolve local hosts on linux

    oldgoodname
    oldgoodname
    Hi guys, I am using a Sophos XG v19 as gateway and try to connect via SSL VPN from a Linux notebook. I configured the SSL VPN as in the sophos own video-tutorial and I found some other tutorials showing the same steps. When I try to connect from…
    • over 2 years ago
    • Sophos Firewall
    • Discussions
  • DNS request timed out VPN

    Jonas Messing
    Jonas Messing
    Hello, I think i'm stupid. When i connect with the Sophos SSL VPN client and if I then try to access my NAS via DNS names, it is not found. If I \\myNAS. use it works. nslookup has a DNS request timed out, but he resolves it. Can someone tell me how…
    • over 2 years ago
    • Sophos Firewall
    • Discussions
  • Hostname mit FQDN ist nur Extern erreichbar. DNS-Forwarder wird als "keine" angezeigt

    mucsav1977
    mucsav1977
    Hallo Leute, ich habe aktuell FritzBox 6591 (10.0.0.1/24) und ein Öffentliches 30er Subnetz mit der Sophos SG230 OS 9.7xx Habe von der FritzBox 2 Lan Kabel an der Sophos. FritzBox LAN1 auf die Sophos ETH0 (10.0.0.254/24) Statisch FritzBox LAN2…
    • Answered
    • over 2 years ago
    • UTM Firewall
    • German Forum
  • DNS Resolution slow using Connect 2.0 and IPSec VPN connection

    AllanD
    AllanD
    We have a ongoing issue with Sophos Connect 2.0 and IPSec VPN connections where DNS resolution is extremely slow at first and sometimes never resolves itself. For example a user connects to the VPN and then tries to open a network drive then gets a error…
    • over 2 years ago
    • Sophos Firewall
    • Discussions
<>