• Successful login notification email

    Sophos User3521
    Sophos User3521
    I just setup my new firewall XGS2100 and coming from an SG210 I am noticing that there isnt a function in the web interface so that each time a successful login to the admin webinterface an email is sent Is there a way to do it somehow as there is only…
    • Answered
    • 9 months ago
    • Sophos Firewall
    • Discussions
  • IP allowlist for WAF

    Electronic Repair & Logistics IT department
    Electronic Repair & Logistics IT department
    Using Web Server Protection, I want a web server to only be reachable from some IP lists or IP host groups. How can I achieve this? In Access permission , Allowed client networks , it seems that I can only choose individual IP hosts of networks. Am…
    • Answered
    • 9 months ago
    • Sophos Firewall
    • Discussions
  • How to modify target Host for IPsec remote access

    Fred12
    Fred12
    With Sophos Connect Admin I can modify Target host definition for IPSec remote access connection. With XG I can do same already on XG for SSL VPN (Override hostname). However, I cannot override hostname for IPSec remote access configuration via Web-console…
    • 9 months ago
    • Sophos Firewall
    • Discussions
  • UPS shutdown

    papalon
    papalon
    Hi everyone! Is there a list of UPS vendor/models compatible with Sophos Firewall that can be used to shut down in the event of a power failure? Thanks.
    • Answered
    • 9 months ago
    • Sophos Firewall
    • Discussions
  • Historical Connection log

    Peter Vroegop
    Peter Vroegop
    Hi We using de Sophos XG firewall ( XGS3100). In de firewall logging I can see current connections with the amount of consuming data. Is there a way to see this for historical sessions. User X was logged om from time A until time B and consumed a amount…
    • 10 months ago
    • Sophos Firewall
    • Discussions
  • Blocking Mac addresses from SSL VPN

    Nikolaos Zisis
    Nikolaos Zisis
    Hello Everyone I will explain the issue we came up with. In our company users use their company laptops to connect to the company through SSL VPN and then use remote desktop to connect to their computers. Some of the users they find it more comfortable…
    • 10 months ago
    • Sophos Firewall
    • Discussions
  • backup config to FTP with custom port number

    EastCoastUser
    EastCoastUser
    Configuring Sophos Firewall to back up config file to FTP server. Settings page has a field for the FTP server IP, but there seems to be no way to specify the port number. My FTP server was using Port 21, and this worked fine, so I assume that Sophos…
    • 9 months ago
    • Sophos Firewall
    • Discussions
  • 802.1x and Wake on Lan with CS101-8FP

    Linus Haake
    Linus Haake
    Hello everybody, I'm currently trying to find a way to enable some clients to be started via WoL. It appeared to be working, but since we enabled 802.1x to finalize the testing behind the switch, it does not work as it did before. For HP Switches…
    • 10 months ago
    • Sophos Switch
    • Discussions
  • Outgoing emails from mailflow marked with arc=fail

    RonnyS
    RonnyS
    Hello. Regarding to the following discussion community.sophos.com/.../outgoing-emails-from-mailflow-arrive-in-spam I have a question. We have the same problem. Is there a solution to this now? We use Sophos Mailflow and the error "arc=fail" can be found…
    • Answered
    • 10 months ago
    • Sophos Email
    • Discussions
  • DHCP addresses used/available

    TimAlbertson
    TimAlbertson
    Has Sophos figured out a way for firewall admins to see a numerical count of active DHCP leases? OR are we still relegated to paging through and counting the leases?
    • 9 months ago
    • Sophos Firewall
    • Discussions
  • Firmware menu related device security

    Akshay Hegde
    Akshay Hegde
    1. Is there any option to disable Firmware Menu ---> Factory Reset option ? 2. Is there any option to disable COM port ? We're managing through cloud central. We Also want to disable these two option as its deployed in branch office.
    • 9 months ago
    • Sophos Firewall
    • Discussions
  • smart banner / suggestion

    Tino Korth | DrehPunkt GmbH
    Tino Korth | DrehPunkt GmbH
    Hello Sophos Email friends, I'd like to suggest a new function in the "smart banner" page where we can mark messages as spam. It would be nice to have the possibility to mark the whole domain as spam, p.e. What do you think about this…
    • Answered
    • 9 months ago
    • Sophos Email
    • Discussions
  • Notification on Certificate expiration

    Niclas Lilie
    Niclas Lilie
    Hello, we have multiple environments of Sophos SG and XG Clusters. As we are not able to check every Cluster itself we automated a notification for WAF Certificate Expiration. On SG this is built-in but not so on the XG. I searched a little, and…
    • 9 months ago
    • Sophos Firewall
    • Discussions
  • Vlan add via Cli

    Rejep Annamuhammedov
    Rejep Annamuhammedov
    hi . i want to use the CLI to add VLAN ID to the lan interface . how can i do that ? i tried using the Device concole but i find that i can do that only for bridge interface. Thanks
    • Answered
    • 9 months ago
    • Sophos Firewall
    • Discussions
  • How to create a scheduled CSV report from XG125 FW?

    Comfortably Numb
    Comfortably Numb
    Dear all, Just having a problem creating a scheduled compliance report on my XG125 in a CSV format via email, Steps taken are as follows: Reports > Compliance > 'Show events' > 'System Events' in the table presented I filter by contains 'DHCP Server…
    • 9 months ago
    • Sophos Firewall
    • Discussions
  • Sophos email security - not show error XGEMAIL_0009

    Maurizio Troilo
    Maurizio Troilo
    Hello, in email security I would like the blocked sender not to receive the email with error XGEMAIL_0009. Is it possible to configure something like this? Thank you
    • 11 months ago
    • Sophos Email
    • Discussions
  • Remote access VPN IPsec - Gateway/Address in SCX/Provisioning file

    Jeff Yankowski
    Jeff Yankowski
    Currently when you export the SCX file (or use a provisioning/pro file to automatically update the VPN configuration in the Sophos Connect client) the file's "gateway" parameter has the WAN IP of the Sophos XG firewall. Our firewall is currently behind…
    • 10 months ago
    • Sophos Firewall
    • Discussions
  • XGS - Show reason why mail is quarantined

    marcus33241
    marcus33241
    We get notify mails from our customer XGS 116 with SFOS 20 that mails are quarantined due to a detected virus (Malware 'Troj/MSIL-SSP,CXmail/MalPE-BP' detected and blocked) When looking at the device, I can't see any hint at the dashboard that a mail…
    • Answered
    • 10 months ago
    • Sophos Firewall
    • Discussions
  • Make specific URL with parameters available to the public and simplify it

    Thomas Schachtner
    Thomas Schachtner
    Hi there, we have an internal URL (like server1/.../access.php This link is designed to be accessed directly from the Internet and we would like to make it available to the public. But as this link is quite complicated and as it might reveal details…
    • 10 months ago
    • Sophos Firewall
    • Discussions
  • Any idea when AP6 will support "Guest Network" setting?

    DG1
    DG1
    We just got our delivery of AP6 840's and realized this feature not available yet. I will be setting up the vlan workaround, but any ideas when this feature will be available?
    • over 1 year ago
    • Sophos Wireless
    • Discussions
  • MLAG Support

    NetGuy
    NetGuy
    Looking through the datasheets I see that LAG is supported. Is MLAG supported or planned to be supported?
    • over 2 years ago
    • Sophos Switch
    • Discussions
  • How to receive the status change when the AP becomes UP?

    ymita
    ymita
    Hi, The AP currently does not support a feature that sends alert mail when it becomes Up state. How can I know when the AP becomes Up? Can anyone share a workaround for this?
    • 11 months ago
    • Sophos Wireless
    • Discussions
  • Controlled Zero Touch GA?

    FFin
    FFin
    As "Controlled Zero Touch" (=real Zero Touch) is available in Early Access since SFOS 19 MR1 (mid 2022) - is there an ETA for this feature to go live for everyone? Meanwhile all new appliances being shipped should have at least 19 MR1 preinstalled,…
    • Answered
    • 11 months ago
    • Sophos Firewall
    • Discussions
  • SNMP acces to spesific ip adreses

    Ozan Can
    Ozan Can
    Hi; I want to do monitoring from snmp service but I don't want to open snmp service to the all world , I only want to allow snmp to the specific ip adress. for this process; I am going to system -> administration -> snmp and activated the snmp service…
    • 11 months ago
    • Sophos Firewall
    • Discussions
  • hen the VPN is connected with firewall just the local application/network should be accessible.

    naveen User
    naveen User
    SSL VPN is used as full tunnel and the requirement is when the VPN is connected with firewall just the local application/network should be accessible. Checked the configuration and it was proper NO VPN to WAN rule was present hence the WAN traffic…
    • 11 months ago
    • Sophos Firewall
    • Discussions
<>