• XG115 Firewall and 1to1 NAT

    Thierry MICHELS
    Thierry MICHELS
    Hi There, I’m new in the Sophos world and I have some trouble configuring 1to1 NAT. My case: XG115 Firewall (XG115 (SFOS 19.0.1 MR-1-Build365), 1 Server in the LAN (no DMZ), 1 public address for this Server. I want to access my Server from Internet…
    • over 1 year ago
    • Sophos Firewall
    • Discussions
  • Sophos Firewall and SQL Server Management to Azure SQL

    SGICT
    SGICT
    Hi, I have Sophos Firewall v19 and a internally computer that needs to connect to Azure SQL using SQL Server Management tool. If I create a rule that allows the computer outbound on destination ANY service, it connects, great. I want to lock it…
    • over 1 year ago
    • Sophos Firewall
    • Discussions
  • Configure two WAN for WIFI zone

    Authorized
    Authorized
    Added second WAN zone network port5 ipv4 192.168.101.2/27 gateway ip 192.168.101.1 SSID new network DHCP Firewall Rule WAN link manager information able to connect Tablet to Wifi and i get DCHP release result block firewall…
    • Answered
    • over 1 year ago
    • Sophos Firewall
    • Discussions
  • XG 85 and 105 not resolving specific hostname

    Sulpasso
    Sulpasso
    Greetings guys, Hope you all doing well, I'm running Sophos XG 85 and 105 at: XG105 (SFOS 17.5.17 MR-17-Build837) XG85 (SFOS 17.5.17 MR-17-Build837) I have multiple network environments where I use Sophos Firewalls XG 85 and 105. When I try…
    • over 1 year ago
    • Sophos Firewall
    • Discussions
  • Configure firewall rules for users object

    Goldy_01
    Goldy_01
    Hi every body/ I'm no familiar with XG so much (I have UTM). Is it possible to configure rules in firewall in XG to use "user" or "user group"? The XG gets the user list thru active director. My goal is to create a firewall rule based on users group…
    • over 1 year ago
    • Sophos Firewall
    • Discussions
  • 2 wan connections unable to access static ip's on one from main lan but can from outside

    Chris Mottershead
    Chris Mottershead
    I have 2 wan connections 1 FTTP with 1 static ip and 1 FTTC with 6 static ip's, i have set up some nat rules for the main connection (FTTP) and they are accessable from inside the lan, i have also tried to setup some nat rules for 2 of the 6 ip's on FTTC…
    • Answered
    • over 1 year ago
    • Sophos Firewall
    • Discussions
  • Default SSL/TLS inspection rule missing

    kerobra
    kerobra
    Hi there, I recently configured a new XGS3100 active/passive cluster with SFOS 19.5. Everything seemed to be fine, but as I wanted to configure the SSL/TLS inspection (I normally do this as one of the final steps) I realized, that there is missing something…
    • Answered
    • over 1 year ago
    • Sophos Firewall
    • Discussions
  • Drop rule shows Accepted traffic in firewall AND proxy.

    pablol
    pablol
    Referencing this: https://community.sophos.com/sophos-xg-firewall/f/discussions/125695/bug-drop-rule-reporting-allowed-connection-in-logs And this: https://docs.sophos.com/nsg/sophos-firewall/19.0/Help/en-us/webhelp/onlinehelp/AdministratorHelp/Logs…
    • over 1 year ago
    • Sophos Firewall
    • Discussions
  • XG Firewall Apple TV+ Connection Issues

    Casual_User
    Casual_User
    Ok, so I decided to give Apple TV+ a try. I am aware of how finicky Apple products can be, but decided to give it a whirl anyway. Perhaps I'm beating a dead horse on this. The first issue was the XG blocking QUIC, once I allowed QUIC, streaming seemed…
    • Answered
    • over 2 years ago
    • Sophos Firewall
    • Discussions
  • Local ACL Violation

    Carlo
    Carlo
    Hello, I'm running web server on port 443 in DMZ zone with another service running on port 7xxx. I can browse web page because of waf rule, but I can not connect to service on port 7xxx from WAN, Packet capture show ACL Violation Show…
    • Answered
    • over 2 years ago
    • Sophos Firewall
    • Discussions
  • DNS in an emergency rule setup

    ll-ben
    ll-ben
    Good day everyone! I am currently implementing an emergency firewall ruleset, which looks like this: - Allow all communications towards sophos central (for Live Response etc. to work) - Allow all communications coming from the physical Management…
    • over 2 years ago
    • Sophos Firewall
    • Discussions
  • I am not able to edit a new firewall rule

    Julio Quixtan
    Julio Quixtan
    I have added a new firewall rule, but now I can't edit it. Please see the attached image, it appears to be blocked, I can't even select it.
    • Answered
    • over 2 years ago
    • Sophos Firewall
    • Discussions
  • How to block randomly login attempts in our Server.

    Michael Tusi1
    Michael Tusi1
    How to block randomly login attempts in our Server.
    • Answered
    • over 2 years ago
    • Sophos Firewall
    • Discussions
  • How to create a rule for FTP

    Gaurav Thukral
    Gaurav Thukral
    I have internal server. I need to access from external network with FTP
    • Answered
    • over 2 years ago
    • Sophos Firewall
    • Discussions
  • Failure to access intranet sites

    Vicent A
    Vicent A
    Hi All, I have a challenge accessing intranet sites Intranet sites have to be added to browser proxy server exceptions else they are flagged as not available ......................................................................................…
    • over 2 years ago
    • Sophos Firewall
    • Discussions
  • Set up IMAP/POP EMail Scans

    TechnikBingo
    TechnikBingo
    Hello, I am trying to set up IMAPs/POPs/SMTPs Settings in an XGS running SFOS 19.0.1 In general there is an external Mail Server and in the local network behind the XGS there are Outlook Clients that connect to the Mailserver via IMAP 993 and SMTP…
    • over 2 years ago
    • Sophos Firewall
    • Discussions
  • NAT CONFIGURATION

    SATHEESH KOOLIPPILAKKAL
    SATHEESH KOOLIPPILAKKAL
    When try to save NAT Configuration it is showing "Original and translated services don't match" and am not able to store that. Any idea why? What am doing wrong?
    • over 2 years ago
    • Sophos Firewall
    • Discussions
  • Access to webserver (VPS): http://vcTerminal.company.com:9595

    Fotit
    Fotit
    Hi all, I have xg firewall i can't access to this vps (in object) i just firstly make firewall rule: source zone:lan destination zone: wan networks source: Any network destination: any services: http web policy: url list with only "…
    • Answered
    • over 2 years ago
    • Sophos Firewall
    • Discussions
  • Allow SFTP: id proto from LAN to WAN

    Fotit
    Fotit
    Hi all, XG Firewall I just need to know about allowing SFTP traffic from LAN to WAN Group of users need to upload files on SFTP Server partner located on WAN (WEB) The server SFTP is already configured and my public IP is allowed to access this…
    • Answered
    • over 2 years ago
    • Sophos Firewall
    • Discussions
  • Sophos XG No Internet

    Benjamin Adovasio
    Benjamin Adovasio
    Hi everyone, I am in a bit of a situation here with my Sophos XG Firewall. Earlier today I had to reboot the server that the Sophos VM is in for an unrelated issue. After everything rebooted, I have not been able to connect to the internet at all on…
    • over 2 years ago
    • Sophos Firewall
    • Discussions
  • Allow access to AD through SOPHOS XG (So users can login with AD login https://www.eplatform.co/gb)

    Kuldev Sagoo
    Kuldev Sagoo
    I was wondering if you could help me setup a a firewall rule so that outside URL (eplatform, used for digital libraries) can communicate with our AD so that users can login with their AD username and password. I have added the external host IP of the…
    • Answered
    • over 2 years ago
    • Sophos Firewall
    • Discussions
  • FTPS Server on DMZ , external Users can not access !

    Fotit
    Fotit
    Hi All, FW: XG SFOS 18.5.4 MR-4-Build418 i'm using ftps server configured with windows os server (IIS) in DMZ With user isolation. users will connect from external to only upload files There are dnat rule and firewall rule configured: dnat rule:-…
    • Answered
    • over 2 years ago
    • Sophos Firewall
    • Discussions
  • MAC Filtering -Sophos XGS

    M Mathew
    M Mathew
    Hello All, We have a requirement to use MAC filtering for few clients which are connected to Sophos XGS via a core switch. The objective is if traffic comes from a specific MAC address needs filtering applied. Is that possible as i have seen below…
    • over 2 years ago
    • Sophos Firewall
    • Discussions
  • XG port forwarding

    feroz syed
    feroz syed
    Hello, i was trying to open the PORTS to all Internal users, but the rule still blocking the access. please verify that am doing port forws correct way for all internal users. Thanks
    • Answered
    • over 2 years ago
    • Sophos Firewall
    • Discussions
  • Firewall rule without decryption but a TLS Handshake failure is logged in SSL/TLS inspection log

    LHerzog
    LHerzog
    I have Host A talking to Server B with 587 SMTP with STARTTLS A uses only Ciphers that are not supported by B and B closes the connection after A sent the TLS Client Hello. Now we have a firewall rule that has IPS enabled, nothing else: The handshake…
    • Answered
    • over 2 years ago
    • Sophos Firewall
    • Discussions
<>