• Internet stop every day on same time on Sophos XG135

    Tihomir Trifonov
    Tihomir Trifonov
    Hello, we have a problem with our client where we put Sophos XG135 with latest update 20.0.0 on their network, like every day at the same time somewhere around 12:30-1pm and in the evening around 7-8pm, the internet stops but Sophos continues to work…
    • 9 months ago
    • Sophos Firewall
    • Discussions
  • Rule change not applied unless restart.

    midnightSun
    midnightSun
    I'm having to restart this system to get Firewall / NAT rules enforced when changes are applied. This seems to happen with quite a few people in the community. I've found sometimes disabling the firewall rule that feeds a NAT rule loads the additions…
    • Answered
    • 9 months ago
    • Sophos Firewall
    • Discussions
  • I already added the server port and created the rule but I get this error.

    Patricio Gómez
    Patricio Gómez
    • 9 months ago
    • Sophos Firewall
    • Discussions
  • making traffic bypass firewall NAT and go straight out to WAN

    Sophos User1175
    Sophos User1175
    hi all, so on our sophos FW i have set up two SD Wans as we have 2 Wans, one for our main network (wan1) and another for our guest network (wan2) as we wanted them separated so there using different public ip addresses problem is i have a laptop going…
    • 9 months ago
    • Sophos Firewall
    • Discussions
  • How to open to internet for airgap sophos xg firewall>

    Si Ta
    Si Ta
    I like to open the internet access on the firewall. My Firewall is set up as airgap device. One laptop is connected to it to access the web console of the firewall. That laptop can access to the internet. Could you advice me how can I configured my…
    • 9 months ago
    • Sophos Firewall
    • Discussions
  • Port 80 and 443 open from external if using external IP address. Support says it goes to first rule that matches the port and ignores host name???

    AllanD
    AllanD
    We just had a PCI compliance scan and we failed because HTST wasn't enabled. Looking through everything HTST is enabled on all of our Web Server Protection rules including the default one. The PCI scanning company said the server replying is using apache…
    • Answered
    • 9 months ago
    • Sophos Firewall
    • Discussions
  • Block Specific WAN IP address to acces all the LAN

    gouellet
    gouellet
    Hello All, Yesterday my Firewall start trigger IPS alerts, 8 in totals. I see a specific WAN IP address in the rapport i want to completely block. I have read couple older disscution but nothing fully help me. I have already do this firewall rule: …
    • 9 months ago
    • Sophos Firewall
    • Discussions
  • Firewall rules are not working

    Alex K
    Alex K
    Good afternoon I have a problem that when I create a policy for firewalls and it is activated, it does not work. My goal is that I want to block access to the Internet, that is, so that when I go to some web page, my access is blocked, so that a message…
    • 9 months ago
    • Sophos Firewall
    • Discussions
  • Disabling a Physical Port through a rule - i.e Disabling WAN Physical Port when internet goes down.

    Shree Shyam Accociate
    Shree Shyam Accociate
    I am facing a very unique scenario where I simply want to disable the one ISP which in going in through Physical port in Firewall when that particular ISP goes down, don't want it as backup or primary, just want that port to turn itself off when ISP goes…
    • 9 months ago
    • Sophos Firewall
    • Discussions
  • port Forwarding not working in sophos XG135

    Shabeer K
    Shabeer K
    Dear Sophos Support Team XG135 sophos firewall port forwarding not working properly on our customer ..he has remote access on IPPBX branch..how can i solve this issue
    • Answered
    • 9 months ago
    • Sophos Firewall
    • Discussions
  • Packets dropped due to no heartbeat

    Stuart James
    Stuart James
    We have remote users to connect to a Sophos SSLVPN. We then create the following filewall rule between them and the servers to ensure that they have Sophos AV installed and that there are no issues on either side. Unfortunately, when we do this, no-one…
    • 9 months ago
    • Sophos Firewall
    • Discussions
  • Firewall Subnets on LAN

    collinsandlacy
    collinsandlacy
    I would like to get an opinion on firewalled subnets for security. This would be LAN subnets only. Subnet A is servers and subnet B is desktops. Subnets A and B have outbound internet access only. Subnet B (desktops) need to access Subnet A (Servers)…
    • 9 months ago
    • Sophos Firewall
    • Discussions
  • Need help portforwarding to strongswan IKEv2 vpn server

    Teererai Marange
    Teererai Marange
    I have an IKEV2 vpn server with internal IP 10.83.185.200. I am attempting to portforward traffic from my WAN port to to LAN port. For some reason, I am able to access the vpn server from the LAN side using my public IP. However, when I attempt to access…
    • 9 months ago
    • Sophos Firewall
    • Discussions
  • Integrating NVR Cam system to the network.

    Can carmack
    Can carmack
    Hello all We have 2 different NVR devices integrated to the Sophos XG firewall Lan zone via regular network switch. Is this type of integration without any VLAN definitions and different Ports is preferable ? This screens are latest situation…
    • Answered
    • 10 months ago
    • Sophos Firewall
    • Discussions
  • How to block malicious IP or IPs on Sophos firewall

    Damian Kowalik
    Damian Kowalik
    How to block malicious IP or IPs on Sophos firewall ?
    • Answered
    • 10 months ago
    • Sophos Firewall
    • Discussions
  • DMZ issues with new XGS 3300 firewall

    Geoff Price
    Geoff Price
    Hello. We had 2 XG330 firewalls in our environment that failed within a week of each other. I was able to back up the configuration from the working firewall before it failed. We installed 2 new XGS3300 firewalls and restored the configuration to those…
    • 10 months ago
    • Sophos Firewall
    • Discussions
  • Sophos XG 19.0 and 19.5-traffic choosing wrong firewall rule if using SDWAN rules to far end subnet

    Administrator User395
    Administrator User395
    We have a main HA firewall XG210 pair, currently in 19.0 latest MR release, connecting to various XG and XGS units in the field. We have dedicated links to the far end locations, and on the XG210 at the head office it is configured as being over LAN…
    • 10 months ago
    • Sophos Firewall
    • Discussions
  • Allow Guest Wirless to VPN for testing

    StopTheBeat
    StopTheBeat
    I would like to allow access to our IPSec VPN from our guest Wi-Fi for testing purposes. I have created a simple rule that allows internet access. Unfortunately, I always get an error when setting up the VPN connection. Anyone know a solution…
    • 10 months ago
    • Sophos Firewall
    • Discussions
  • In Sophos XGS 136 firewall we can configure specific networks to specific users.

    kiran kondaveeti
    kiran kondaveeti
    In Sophos XGS 136 firewall , we have four internet providers. Is there any possible to configure specific network to specific user
    • 10 months ago
    • Sophos Firewall
    • Discussions
  • Subnet issue

    feroz syed
    feroz syed
    hello, i have two ip subnet on port-1 Lan interface (Vlan), the host pc can able to ping the Firewall Gw ip but from FIrewall to Host ping not work, i checked the Local windows firewall its already turned off. Now 100.0/22 subnet not reach to 15.0…
    • 10 months ago
    • Sophos Firewall
    • Discussions
  • How disable firewall functions?

    EastCoastUser
    EastCoastUser
    My XG 125 is blocking me from reaching hulu.com, and also blocking google shopping when it redirects me to googleadservice.com. As a test, I temporarily bypassed the XG, and I could get to those sites. So I know that the XG is blocking those sites. Then…
    • Answered
    • 11 months ago
    • Sophos Firewall
    • Discussions
  • Block port 25 or SMTP port for non replay LAN IPs

    Ahmed Naveed
    Ahmed Naveed
    we configured Sophos XG in MTA mode. We need to restrict access to Port 25 for SMTP traffic to specific terminals only. Currently Port 25 is accessible from all LAN networks
    • 11 months ago
    • Sophos Firewall
    • Discussions
  • Why it is not possible to add a linked NAT rule to a FW rule?

    Tomas Z
    Tomas Z
    I am creating a new firewall rule and want to add a linked NAT rule to it, but the fields for adding source, destination and other parameters are greyed out: That warning which is visible in the printscreen does not make sense to me - can someone…
    • Answered
    • 11 months ago
    • Sophos Firewall
    • Discussions
  • Firewall Regel ausgegraut

    ChrisV
    ChrisV
    Servus liebe Leute, mich würde interessieren warum diese (siehe Screenshot) Firewall Regel ausgegraut ist bzw. was diese bewirkt!? Über Antworten würde ich mich sehr freuen.
    • Answered
    • 11 months ago
    • Sophos Firewall
    • German Forum
  • problems witch conection in a apk service

    Andre Marcelo Pacheco Zenteno
    Andre Marcelo Pacheco Zenteno
    good mornig i have a problem with mi firewall cgs3100 in my institucion, the development area made an apk service and my firewall block the conection with this apk, actually we try everything change rules of conection, made news rules en webs without…
    • 11 months ago
    • Sophos Firewall
    • Discussions
<>