• Sophos XG 19.0 and 19.5-traffic choosing wrong firewall rule if using SDWAN rules to far end subnet

    Administrator User395
    Administrator User395
    We have a main HA firewall XG210 pair, currently in 19.0 latest MR release, connecting to various XG and XGS units in the field. We have dedicated links to the far end locations, and on the XG210 at the head office it is configured as being over LAN…
    • 10 months ago
    • Sophos Firewall
    • Discussions
  • Allow Guest Wirless to VPN for testing

    StopTheBeat
    StopTheBeat
    I would like to allow access to our IPSec VPN from our guest Wi-Fi for testing purposes. I have created a simple rule that allows internet access. Unfortunately, I always get an error when setting up the VPN connection. Anyone know a solution…
    • 10 months ago
    • Sophos Firewall
    • Discussions
  • In Sophos XGS 136 firewall we can configure specific networks to specific users.

    kiran kondaveeti
    kiran kondaveeti
    In Sophos XGS 136 firewall , we have four internet providers. Is there any possible to configure specific network to specific user
    • 10 months ago
    • Sophos Firewall
    • Discussions
  • Subnet issue

    feroz syed
    feroz syed
    hello, i have two ip subnet on port-1 Lan interface (Vlan), the host pc can able to ping the Firewall Gw ip but from FIrewall to Host ping not work, i checked the Local windows firewall its already turned off. Now 100.0/22 subnet not reach to 15.0…
    • 10 months ago
    • Sophos Firewall
    • Discussions
  • How Do I Switch from one internet connection to another when it down?

    almrvc
    almrvc
    I have two internet connections from two different ISPs. Let one be called X and the other be called Y. X and Y are separately connected to a firewall. I use X actively. I want Y to be active when X loses internet connection. Then, when X internet connection…
    • 11 months ago
    • UTM Firewall
    • Network Protection: Firewall, NAT, QoS, & IPS
  • How disable firewall functions?

    EastCoastUser
    EastCoastUser
    My XG 125 is blocking me from reaching hulu.com, and also blocking google shopping when it redirects me to googleadservice.com. As a test, I temporarily bypassed the XG, and I could get to those sites. So I know that the XG is blocking those sites. Then…
    • Answered
    • 11 months ago
    • Sophos Firewall
    • Discussions
  • Block port 25 or SMTP port for non replay LAN IPs

    Ahmed Naveed
    Ahmed Naveed
    we configured Sophos XG in MTA mode. We need to restrict access to Port 25 for SMTP traffic to specific terminals only. Currently Port 25 is accessible from all LAN networks
    • 11 months ago
    • Sophos Firewall
    • Discussions
  • Why it is not possible to add a linked NAT rule to a FW rule?

    Tomas Z
    Tomas Z
    I am creating a new firewall rule and want to add a linked NAT rule to it, but the fields for adding source, destination and other parameters are greyed out: That warning which is visible in the printscreen does not make sense to me - can someone…
    • Answered
    • 11 months ago
    • Sophos Firewall
    • Discussions
  • Firewall Regel ausgegraut

    ChrisV
    ChrisV
    Servus liebe Leute, mich würde interessieren warum diese (siehe Screenshot) Firewall Regel ausgegraut ist bzw. was diese bewirkt!? Über Antworten würde ich mich sehr freuen.
    • Answered
    • 11 months ago
    • Sophos Firewall
    • German Forum
  • problems witch conection in a apk service

    Andre Marcelo Pacheco Zenteno
    Andre Marcelo Pacheco Zenteno
    good mornig i have a problem with mi firewall cgs3100 in my institucion, the development area made an apk service and my firewall block the conection with this apk, actually we try everything change rules of conection, made news rules en webs without…
    • 11 months ago
    • Sophos Firewall
    • Discussions
  • Sophos UTM, Network Protections, Rules -- Order does not count???

    V M Smith
    V M Smith
    Does the order of Sophos UTM "Network Protection" firewall rules matter at all?!?!?! On my sophos utm, the "Network Protection" firewall rules are as follows (summarizing) Top Rule = deny PrivateIP#1... any protocol... to any external ip (block…
    • 11 months ago
    • UTM Firewall
    • Network Protection: Firewall, NAT, QoS, & IPS
  • What is the best method to inventorize the traffic matrix of a Sophos UTM?

    vcc033
    vcc033
    I have a couple of UTM clusters that each has more than 200 firewall rules, and I want to load them in excel to make a traffic matrix. The firewalls are managed by SUM but I didn’t find a way to export the rules to a file. While it's possible to do…
    • 11 months ago
    • UTM Firewall
    • Network Protection: Firewall, NAT, QoS, & IPS
  • allow all port and ip access in internal for dedicated machine

    hasan bozkuty
    hasan bozkuty
    Hello everyone, we have sophos utm 9. We want to do white-box testing with a dedicated kali host. we want to give all access permission for the host to scan all port and ip of internal network. What should I do for this purpose? Any help would…
    • over 1 year ago
    • UTM Firewall
    • Network Protection: Firewall, NAT, QoS, & IPS
  • Wireless not working through SFVH firewall

    Chevyavalanche
    Chevyavalanche
    Hello, So I'm running SFVH (SFOS 19.5.3 MR-3-Build652). The firewall is running on a VP2410 mini PC. My Asus router is 'bridged' to this unit and everthing works fine with one exception: The WiFi on the Asus is somehow being blocked by my Firewall and…
    • over 1 year ago
    • Sophos Firewall
    • Discussions
  • Using firewall rule XXXX -> ANY -> Internet causes YouTube connection speed to drop below usable rate on that device / network

    Neblex
    Neblex
    Hello Sophos Community, I noticed a strange phenomenon when I wanted to set up a guest network. Since this network has no access to other networks and should be able to browse the internet freely, I created a firewall rule as follows: Guest network -…
    • over 1 year ago
    • UTM Firewall
    • Network Protection: Firewall, NAT, QoS, & IPS
  • NAT Rule not working

    Sarabjit Singh
    Sarabjit Singh
    NAT rule is not working. Tried both ways (DNAT / Firewall+NAT Rule). My WAN interface named BSNL and LAN interface is on Port #8..
    • over 1 year ago
    • Sophos Firewall
    • Discussions
  • Route all Netflix traffic through VPN

    Daniel Cook2
    Daniel Cook2
    Hello, Hoping I can get some help - tried searching but its still not 100% clear to me so hopefully someone can provide some insight. LAN > multiple ports , 1 feeding a linux box which has my server that handles things like plex etc AP device > feeds…
    • over 1 year ago
    • Sophos Firewall
    • Discussions
  • Traffic wird Denied obwohl es erlaubt ist

    Alwin Schmidt
    Alwin Schmidt
    Hallo, wir hatten gestern einen Stromausfall und seitdem geht ein Teil der Telefonie nicht. SIP Module ist ausgeschaltet. Regel habe ich auch einmal neu gemacht. Es ist eine XGS126 (SFOS 19.5.2 MR-2-Build624). PCAP funktioniert leider nicht zeigt…
    • over 1 year ago
    • Sophos Firewall
    • German Forum
  • VLAN to LAN Rule

    Daniel Capek
    Daniel Capek
    Hallo zusammen, ich habe folgendes Problem bei meinen VLANS: Ich habe insgesamt 4 VLANS erstellt. Ich habe die jeweiligen Zonen angelegt und den DHCP für jedes VLAN. Die Geräte im VLAN bekommen auch die jeweilige IP zugewiesen. Es gibt eine…
    • Answered
    • over 1 year ago
    • Sophos Firewall
    • German Forum
  • Can't establish HTTPS connection - INVALID_TRAFFIC

    Angelone
    Angelone
    Hi all, I'm struggling with an issue since few days. I'm using SFOS 19.5.3 MR-3-Build652 and I can't establish a TLS connection between two hosts on different VLAN. I've a firewall rule that allows the hosts to communicate each other, the first…
    • Answered
    • over 1 year ago
    • Sophos Firewall
    • Discussions
  • Regras para nao permitir acesso a internet

    Administrador TI Notável
    Administrador TI Notável
    Bom dia a todos. Alguem sabe se é possivel criar uma regra para nao permitir que alguns dispositivos acessem a internet somente consigam acessar a rede interna da empresa. Estou pensando em pegar os dispositivos pelo MAC e criar a regra para que…
    • over 1 year ago
    • Sophos Firewall
    • Discussions
  • Rule and Policies Order Best Practice

    Trio Fandi
    Trio Fandi
    Hello Friends, I just using Sophos Firewall XG310 SFOS 19.5.3 MR-3. All I know that order/sort of Rule and Policies position is affect to how Firewall Treatment on traffic flow. Kindly need advice, if I have a set of rule as below pict, what is the…
    • Answered
    • over 1 year ago
    • Sophos Firewall
    • Discussions
  • Struggling to connect to CCTV system from the WAN

    Werner Smit
    Werner Smit
    Good Day, Could anyone assist me? I have created a VLAN for CCTV to sperate from the company network. Want to allow the CCTV to be connecting from the WAN Port from our ISP to use the Public IP so that we can monitor the CCTV remotely without VPN…
    • Answered
    • over 1 year ago
    • Sophos Firewall
    • Discussions
  • my network exposed

    Feras Alkhfajy
    Feras Alkhfajy
    hello today i tried to ipscan my network with a very larg range to check my network, the result shows there are many ranges that i am not aware of and they are not in my network, i ping them and i was able to run some ips in the browsers shows they…
    • Answered
    • over 1 year ago
    • Sophos Firewall
    • Discussions
  • 3CX Full Cone error

    LeeShellard
    LeeShellard
    Hi I have a XG and im trying to get 3CX working correctly. I have nat and firewall rules set but when i run a test from 3cx I'm getting the full cone error i cant see what I'm missing
    • over 1 year ago
    • Sophos Firewall
    • Discussions
<>