• rules

    Serkan Dağlı
    Serkan Dağlı
    1 Firewall 2024-10-26 14:10:51 Appliance Access Denied N/A 0 PortA1.10 10.10.1.3 10.10.1.255 137 …
    • 6 days ago
    • Sophos Firewall
    • Discussions
  • Sophos Red 20 General Internet Access

    QCHA ITSupport
    QCHA ITSupport
    Hi, We have a RED 20 device that we recently purchased as a test device before looking to set multiple up across different sites, however we have found that our organisation's manual proxy blocks any internet access to anything not included in the proxy…
    • 11 days ago
    • Sophos Firewall
    • Discussions
  • Port Freigabe - Eingrenzung auf Herkunft?

    GG-Star
    GG-Star
    Hallo Zusammen, ich würde gerne in der Sophos XGS107 eine Portfreigabe für einen Telefoncloudanbieter einrichten. Welche Ports das sind, wird hier sehr gut beschrieben. https://www.easybell.de/hilfe/telefon-konfiguration/allgemein/firewall-fuer…
    • 14 days ago
    • Sophos Firewall
    • German Forum
  • Guest network on separate public IP

    jtaylor
    jtaylor
    We have a /29 subnet from our ISP. I want to use a dedicated public address for our guest network traffic. I've added an alias on the PPPoE port and thought I could then just use an SD-WAN rule to route the traffic, but the alias doesn't appear in the…
    • Answered
    • 15 days ago
    • Sophos Firewall
    • Discussions
  • snat multiple gateways

    midnightSun
    midnightSun
    SNAT with multiple WAN gateways isn't working.. WAN Gateway 1 = Port3 - its public with /27 worth of aliases WAN Gateway 2 = Port5 - its public with /28 worth of aliases (IP Host) SNAT with Port3 aliases work for all of the rules I've created…
    • Answered
    • 16 days ago
    • Sophos Firewall
    • Discussions
  • Howto combine 'Match known users' and 'Block clients with no heartbeat'

    FFin
    FFin
    I could not figure out the details about traffic matching critera and further filtering within firewall rules. Can someone clarify what will happen if you select "Match known users" and "Block clients with no heartbeat"? Will the rule block no heartbeat…
    • 17 days ago
    • Sophos Firewall
    • Discussions
  • LoopBack NAT is not working upon accessing WEB Application Public IP in Local Network

    Nathaniel Patalod
    Nathaniel Patalod
    Hi Sophos Geeks! I'm having a problem accessing my WEB Application using Public IP in my local network but working if I'm accessing it externally. I already configured the DNAT policy Source zone in Any Zone but still no lock. Currently my version…
    • 30 days ago
    • Sophos Firewall
    • Discussions
  • FW-Rules not working to restrict VPN-Portal?

    bmu
    bmu
    Hi there, since some days, we encounter Bruteforce-Attacks against our Mainfirewall (Sophos XGS): Access from IP address '92.53.xxx.xxx' is blocked for '30' minutes after '5' unsuccessful login attempts I've tried to block all requests from…
    • Answered
    • 1 month ago
    • Sophos Firewall
    • Discussions
  • Loopback for Firewall in LAN (behind Home Router)

    kdoberitz
    kdoberitz
    Hi Sophos Community After a lot of trial and error I'm hoping you can help me finding a solution to my scenario: In my home setup I have my wan-interface of the sophos in a transit network. My ISP router forwards any traffic to the sophos. Now…
    • 1 month ago
    • Sophos Firewall
    • Discussions
  • XGS136 is blocking STAS traffic

    Daniel Zulian
    Daniel Zulian
    Hi everyone, I have some problems with the STAS service. The picture shows the topology: I have two locations, the HQ with an XG210, and the branch with XGS136. Both are connected through a VPN tunnel. The STAS server is in HQ location. The communication…
    • 1 month ago
    • Sophos Firewall
    • Discussions
  • Schedule firewall rule - disable it after some time automatically

    LHerzog
    LHerzog
    For firewall rules that allows access to a sensitive system (host) and where access is usually not required all the time, it would be nice to have a feature to enable them manually when needed but with a timer that disables the rule after 60 minutes or…
    • 1 month ago
    • Sophos Firewall
    • Discussions
  • Gmail block

    Magus Infratech
    Magus Infratech
    Hi Team, Kindly schedule support call for Gmail block setting in Firewall.
    • 1 month ago
    • Sophos Firewall
    • Discussions
  • Firewall Rules for Microsoft One Note in Microsoft 365

    LSG Admin-Venket
    LSG Admin-Venket
    Hello there, I have been searching long time to do the following with Sophos XG 230 Firewall. But still could not find solution. Can anybody help 1. Block Microsoft 365 One Note alone. Rest of the Microsoft 365 should work. Blocking One Note on Application…
    • Answered
    • 1 month ago
    • Sophos Firewall
    • Discussions
  • "Multiple failed login attempts for WAN-facing portals on Sophos Firewall" - How to get IP

    Markus Quirmbach
    Markus Quirmbach
    Hello, We've seen a message on the Sophos Firewall WEB-UI leading us to this article: "Multiple failed login (brute force) attempts for WAN-facing portals on Sophos Firewall" https://support.sophos.com/support/s/article/KBA-000009932?language=en_US…
    • Answered
    • 1 month ago
    • Sophos Firewall
    • Discussions
  • Moving from UTM to SFOS Want to remove NAT

    Nick Gale
    Nick Gale
    Hi Folks, I'm moving from UTM to SFOS. Getting it setup with the basics was all fine but something I've been wanting to try for a while was to remove the masq rules as sophos is my back firewall in a back to back config. I ran into an issue though…
    • 1 month ago
    • Sophos Firewall
    • Discussions
  • If you are not registered in Active Directory, you cannot access the internet?

    duzcebelediye bilgiislem
    duzcebelediye bilgiislem
    If you are not registered in Active Directory, you cannot access the internet. How can I do it?
    • 1 month ago
    • Sophos Firewall
    • Discussions
  • Wildcard FQDN Stopped Working After Upgrade

    CV_Sophos
    CV_Sophos
    Hello, Over the holiday weekend we upgraded our XG330's from 19.5.4 to 20.0.2 MR-2-Build378. After the upgrade none of our wildcard FQDN rules are resolving/working. They worked perfectly fine prior. This is causing quite a bit of issues for user authentication…
    • Answered
    • 1 month ago
    • Sophos Firewall
    • Discussions
  • Alert ID: 17913

    leo leo
    leo leo
    Hallo zusammen, seit Donnerstag bekomme ich ständig die Warnung mit folgender Nachricht: Message: Access from IP address '92.53.65.166' is blocked for '5' minutes after '5' unsuccessful login attempt. Unsere Firewall ist Alert for XGS2100…
    • 1 month ago
    • Sophos Firewall
    • Discussions
  • VPN Portal getting hammered by password spraying attacks - Russia and elsewhere

    DG1
    DG1
    On September 4, our Firewall VPN Portal was attacked from IP 92.53.65.166 (Russia) with hundreds of login attempts for different usernames. After bloicking this, today (September 8) we have been hammered by another attack, this time from hundreds of different…
    • Answered
    • 1 month ago
    • Sophos Firewall
    • Discussions
  • How to create a sample rule for password spraying attacks

    duzcebelediye bilgiislem
    duzcebelediye bilgiislem
    Since today we have been experiencing massive password spraying attacks on many Sophos firewalls, especially on the VPN portal, which listens to port 443. Apparently these are attacks from Russia with the IP 92.53.65.166. How can I create a rule to prevent…
    • Answered
    • 1 month ago
    • Sophos Firewall
    • Discussions
  • Website bzw. NginxProxyManager hinter Firewall hosten und freigeben

    Yannick Steinhäuser
    Yannick Steinhäuser
    Hey, Ich bin noch komplett neu in der ganzen Sophos Thematik also bitte Nachsicht. Mein aktueller Aufbau ist wie folgt: Fritzbox --- Sophos Home FW(neuste Version) --- DMZ( Webserver auf VM auf Proxmox) Bis jetzt hatte ich den 0815 Aufbau mit einem…
    • Answered
    • 2 months ago
    • Sophos Firewall
    • German Forum
  • Impact to the internet speed when creating firewall exceptions

    David Grahammer
    David Grahammer
    Hey there, How much of an impact to the internet speed does it make, if I create a new firewall exception? Since the firewall has to go through the entire ruleset, it should slow down every request a little bit. Is there an upper bound of…
    • Answered
    • 2 months ago
    • Sophos Firewall
    • Discussions
  • Can't Ping DNAT Host Remotely

    Clay Tsuhako
    Clay Tsuhako
    have created a new alias port (Port 5:0) on our Sophos XG 210 (SFOS 20.0.2 MR-2-Build378) and created a local host at internal IP of 10.0.0.71). I have also created a firewall rule to allow access to this host from several specified remote hosts that…
    • Answered
    • 2 months ago
    • Sophos Firewall
    • Discussions
  • WEBSER SERVER NOT ACCESS THROUGH VPN

    SatyabrataB
    SatyabrataB
    hi, we have webserver in LAN zone that server access through private IP address IN LAN zone. issue-Right now user in china and access webserver through Vpn but in china vpn not connected only indian sim with roaming will work.how to access webserver…
    • 2 months ago
    • Sophos Firewall
    • Discussions
  • Open ports

    Bill Bird
    Bill Bird
    Had a colleague port scan my WAN port after replacing my dead XG230 with a new XG230. I show all these open ports: I did not have this issue with previous fw (my previous config would not load, sadly). What am I missing? Thanks ahead of time…
    • 2 months ago
    • Sophos Firewall
    • Discussions
>