• IPSEC VPN Multiple Lan Subnet from Sophos XGS to CISCO: only one subnet works at a time

    Gianluca Maistri
    Gianluca Maistri
    Hi, we're experiencing a problem with Ipsec Vpn (site2site) from Sophos to Cisco. In the Ipsec tunnel we have two subnet (subnet1 e subnet2) at sophos vpn side and one subnet (subnet3) in the remote site managed by cisco. It seems that only on subnet…
    • 7 hours ago
    • Sophos Firewall
    • Discussions
  • IPSEC-Tunnel funktioniert nicht seit Umstieg auf XGS

    antonio_esposito
    antonio_esposito
    Hallo zusammen, uns plagen etwaige Probleme seit wir von unserer guten alten Sophos ASG auf Sophos XGS umgeschwenkt sind. wir haben IP-Sec VPN Tunnel kreuz und quer durch ganz Deutschland, IKEv2, Verbindung ist da und es läuft Datentraffic darüber. Probleme…
    • 1 day ago
    • Sophos Firewall
    • German Forum
  • Firewall issue ping

    Daniel Nemes
    Daniel Nemes
    I recently add a new firewall for the branch office , so we have 2 firewalls one for the main office and one for the branch office, branch office can ping our ip's, but we from Main branch we can not ping any of their ip's, not even 1, it's really strange…
    • 5 days ago
    • Sophos Firewall
    • Discussions
  • Site to Site VPN Authentication on reboots - Change PSK works

    Brennan Kostyniuk
    Brennan Kostyniuk
    I have multiple Sophos site to site VPN's back to a central router. Whenever any of the sites losing connection they all re-connect except for 1. The Sophos VPN logs show "Couldn't authenticate the local gateway. Check the authentication settings on both…
    • Answered
    • 8 days ago
    • Sophos Firewall
    • Discussions
  • Firewall behind ISP Router

    ywillie
    ywillie
    Is there a way to check if the ISP router doesn't supports IKE2 causing IKE2 IPSEC tunnel to fail. A troubleshoot method or guide ? This is to proof to Service Providers that the problem lies in their end and not firewall.
    • 8 days ago
    • Sophos Firewall
    • Discussions
  • XG firewall - Local ID for traffic

    Fabio Airoldi
    Fabio Airoldi
    Hello all, I currently have a XG firewall (FW-1), connected through IPSEC tunnel with another (FW-2). FW-1 has two LAN zones (LAN-A and LAN-B), both allowed through the IPSEC tunnel. FW-1 sends log messages (originated from the firewall itself…
    • 9 days ago
    • Sophos Firewall
    • Discussions
  • IPsec Site-to-Site VPN certain VLAN cant reach remote subnet

    Kristoffer Cervantes
    Kristoffer Cervantes
    Hi everyone, We have an IPsec site-to-site VPN connection between our Sophos and Fortigate devices. Currently, both the gateway and tunnel are UP and functioning properly. VLAN 10 and VLAN 20 are included in the local subnet configuration on the Sophos…
    • 12 days ago
    • Sophos Firewall
    • Discussions
  • IPSec SG135 (9.719-3) vs XGS2100 (SFOS 20.0.0 GA-Build222)

    dan ghenea
    dan ghenea
    Very nice! I need help setting up an IPsec tunnel between sites, the firewall models are "UTM - SG135, Firmware 9.719-3" and "XGS2100 - Firmware (SFOS 20.0.0 GA-Build222)". We have researched through forums and followed some steps that match the errors…
    • 13 days ago
    • Sophos Firewall
    • Discussions
  • problems with voip telephony, using site to site vpn connection

    Carlos Daniel Hernandez Ramos
    Carlos Daniel Hernandez Ramos
    implementing vpn site to site connection, causes problems with ip telephony, when starting the connection or disabling the connection causes my voip phones to start disconnecting from the pbx. once the connection is established and having the vpn connected…
    • 14 days ago
    • Sophos Firewall
    • Discussions
  • Ipsec and mss-clamping. Is there a way to make them persistent?

    LMSIIATO
    LMSIIATO
    Hi all, I have an xgs 3100 firewall on which about 20 ipsec tunnels are attested. All these ipsec have fragmentation problems so I am forced to use mss-clamping. For example without mss-clamping an icmp packet passes as long as I set a size of 1400…
    • Answered
    • 18 days ago
    • Sophos Firewall
    • Discussions
  • RED vs IPSec (XGS)

    Vinícius Oliveira
    Vinícius Oliveira
    [POST DE DEBATE SOBRE O ASSUNTO] Opa pessoal! Em minha infraestrutura eu tenho o escritório na matriz (XGS 3100) conectado a outros quatro escritórios filiais (XGS 136) por Tunel RED, utilizando a configuração RED Server no escritório matriz e RED Client…
    • 21 days ago
    • Sophos Firewall
    • Discussions
  • IPSEC site to site VPN, initiator behind router

    GaryBrown
    GaryBrown
    We are wanting to connect our remote office, which is in a managed/shared office space building, to our head office. We have no control over the shared office netowrk. We have a XGS in the managed office space. The internet connection is supplied…
    • Answered
    • 21 days ago
    • Sophos Firewall
    • Discussions
  • XGS2100 (SFOS 20.0.2 MR-2-Build378) - Fritzbox 7490 VPN

    Martin Schneider
    Martin Schneider
    Hi, after updating to 20.0.2 the Site to Site VPN connection between our XGS (Host) and the Fritzbox is not working anymore. Before the Update is was workking without any problems. A downgrade to 20.0.0 is also impossible as the XGS always tells Firmware…
    • 22 days ago
    • Sophos Firewall
    • Discussions
  • IPSEC VPN Routing traffic between multiples sites

    PP User
    PP User
    Hi, We need to establish a multiple site to site IPSEC VPN with a XG86w as the HQ. Both remote sites have a TELTONIKA RUT240 router. I am able to ping from HQ both remote sites, and from each remote site the HQ, but can’t ping a remote site from…
    • Answered
    • 23 days ago
    • Sophos Firewall
    • Discussions
  • IPSEC Site to site conneted

    Yunus Abass Ibrahim
    Yunus Abass Ibrahim
    I Need help regarding my ipsec. I have two sites HQ and remote site. The firewall is connected through ipsec. I have set both inbound and outboud rules. But am still not able to ping each end of the firewall or to remotely access resources at HQ. Kindly…
    • Answered
    • 25 days ago
    • Sophos Firewall
    • Discussions
  • I cannot connect to VPN using strongswan or ovpn on linux

    Omotola Adeb
    Omotola Adeb
    My server is Sophos Firewall XG125 (SFOS 17.5.16 MR-16-Build830). Sophos connect works perfectly but the .ovpn file downloaded(via user interface) will not connect. I also used the details from the .tgb to build a config file for strongswan, but didn…
    • 26 days ago
    • Sophos Firewall
    • Discussions
  • Assistance Required with Site-to-Site VPN Configuration between sophos and Azure

    Michael9609
    Michael9609
    Dear Sophos Support, I hope this message finds you well. We are experiencing an issue with our Site-to-Site VPN setup. While the VPN tunnel appears to be up and stable, we are unable to access the servers that are sitting behind the Azure gateway…
    • 29 days ago
    • Sophos Firewall
    • Discussions
  • IPSec V2 Verbindung mit 1:2 Subnetzen

    karsten_boldt
    karsten_boldt
    Moin, Ich will zwei Standorte verbinden. Auf der einen Seite ist ein Subnetz die sich über eine PFSense auf die andere Seite über eine Sophos XG mit zwei Subnetzen verbinden soll. Phase 1 ist kein Problem, aber es wird nur ein Subnetz verbunden. Wenn…
    • 1 month ago
    • Sophos Firewall
    • German Forum
  • Ipsec VPN couldn't established.

    Dinesh Kandeeban
    Dinesh Kandeeban
    Hi, I have configured the tunnel from DC to another location, The tunnel couldn't established. I don't know what is the reason the tunnel has down. I have debug the issue still unable to find out the issue, please assist me to resolve the issue
    • 1 month ago
    • Sophos Firewall
    • Discussions
  • Sophos VPN

    Yasha Burns
    Yasha Burns
    Hello, Recently one of our clients contacted us about purchasing some new Sophos firewalls. They had some VPN settings on their old Meraki firewalls. We have the VPN settings now, but it seems like most of these settings don't even exist in the Sophos…
    • 1 month ago
    • Sophos Firewall
    • Discussions
  • Sophos site to site VPN changes take long to apply, changes dont apply

    Rog163
    Rog163
    Hi All - ive had this issue for over 2-3 years now - when trying to make changes on site to site vpns - either the changes take long to apply, dont apply or need to apply several times. i try to change local ID for example on an existing site to site…
    • 1 month ago
    • Sophos Firewall
    • Discussions
  • VPN with Drayteks constant disconnects

    Andrej Pirman
    Andrej Pirman
    Hi, I have a bunch of XGS firewalls in main offices of my customers, which have branch/remote offices with Draytek routers, different models. I have not paid attention till now, when one of those reported intermittent issues with Site2Site IPSec VPN…
    • Answered
    • 1 month ago
    • Sophos Firewall
    • Discussions
  • No traffic through VPN tunnel

    b_trahn User
    b_trahn User
    Hello, I have a problem with an ipsec Site to Site tunnel. The tunnel is being built, but no traffic is going through the tunnel. The remote station is connected to a router via LTE and a Dyn DNS entry. I checked local and remote subnets. The firewall…
    • Answered
    • 1 month ago
    • Sophos Firewall
    • Discussions
  • NAT between RED20 and IPSec on XGS v20

    Heiko Dammlaks
    Heiko Dammlaks
    Hi I need to translate packets between an ISec and a RED 20. There is an IPSec tunnel with 172.18.10.0/24 on the remote site and 172.26.143.1/24 on the Sophos. I have a RED device with 192.168.54.1/24. I would access form REDs subnets hosts (maybe…
    • 1 month ago
    • Sophos Firewall
    • Discussions
  • NAT over IPSeC Site-to-Site VPN

    Dimitris Roubos
    Dimitris Roubos
    Greetings fellow members, I have 2 networks with 1 sophos firewall each, network A (Public IP/80.80.80.128, Local Network/192.168.20.1/24) and network B (Local Network 192.168.10.1/24). Sophos B XGS107 ( SFOS 19.5.3 MR-3-Build652) Sophos A XG135…
    • Answered
    • 1 month ago
    • Sophos Firewall
    • Discussions
>