• Hilfe bei VLAN-Konfiguration mit UniFi Switch und Sophos XG

    initB10r
    initB10r
    Hallo zusammen, ich richte aktuell für mein berufliches Umfeld ein separates VLAN ein und stoße dabei auf ein paar Herausforderungen. Meine Konfiguration: Hardware: UniFi Switch USW-24-POE Sophos XG Firewall Netzwerk: LAN …
    • 9 days ago
    • Sophos Firewall
    • German Forum
  • DNS over Site-to-Site-VPN V21

    Wotan Wien
    Wotan Wien
    Hallo, ich habe zwei Sophos im Lab stehen und teste die Version 21. Die DNS- Einträge liegen auf der "Head office" Auf der "Branch office" ist eine DNS-Anfrageroute auf die "Head office" eingerichtet. Das funktioniert, seit Monaten auf der V20…
    • Answered
    • 21 days ago
    • Sophos Firewall
    • German Forum
  • DHCP lost to all devices except one vlan

    Reem Jalal Eddine
    Reem Jalal Eddine
    hi i previously posted a question on how to migrate trunk vlans from one port to another mew port for lag configuration. Once i did the transfer we lost connection with dhcp all clients cannot get ip address but once they get a static ip the communication…
    • 20 days ago
    • Sophos Firewall
    • Discussions
  • Sophos XGS und interne DNS Auflösung

    Nico Martin1
    Nico Martin1
    Guten Morgen Leute mir ist aktuell an meiner Sophos v21 die auf einer SG 230 läuft aufgefallen das intern keine DNS Namensauflösungen intern funktionieren. Hier nutze ich verschiedene VLANs . Ich kann intern keine IPs oder Namen auflösen egal ob…
    • Answered
    • 25 days ago
    • Sophos Firewall
    • German Forum
  • SSL Medium Strength Cipher Suites Supported CBC mode Enabled

    Akash
    Akash
    How i can disable CBC mode and chacha20 affected algorithms and enable CTR or GCM cipher mode encryption.
    • 1 month ago
    • Sophos Firewall
    • Discussions
  • clientless sftp

    Reem Jalal Eddine
    Reem Jalal Eddine
    i have configured a clientless sftp policy that contains the bookmark and the bookmark contains the private and public key along with server information. I created a user on our portal and allowed it to use this policy. I did on the side another rdp policy…
    • 29 days ago
    • Sophos Firewall
    • Discussions
  • [Feature request] 802.1p support for PPPoE/VLAN interfaces

    Samuel Leal
    Samuel Leal
    Hello, I'm seeing more and more ISPs asking for CPE P-bit setting for their connections. As far as i know, Sophos Firewalls still doesn't support this forcing us to use a bridged router supporting this feature in front of the Sophos FW. Please consider…
    • 1 month ago
    • Sophos Firewall
    • Discussions
  • Sophos Firewall SF Home DHCP not working on wifi with VLAN.

    Michal B
    Michal B
    I have the latest Sophos Firewall Software Home 20 installed on my mini pc as well as on old XG 135w router and on both devices I experience issue with no DHCP reply for Wifi what using VLAN. - I have tested Unifi and Zyxel AP same issue - I have directly…
    • Answered
    • 1 month ago
    • Sophos Firewall
    • Discussions
  • DNS over TLS

    MikeyS
    MikeyS
    Apologies I know it's been mentioned before, but I'm in the process of moving from pfsense + to XG Home. Got a variety of loose ends to sort out and DNS over TLS is one of them. Is this forthcoming within the v21 release cycle? I'm sorting Wireguard…
    • 1 month ago
    • Sophos Firewall
    • Discussions
  • DNS Rebinding - Plex

    MikeyS
    MikeyS
    I’m in the process of getting Sophos XG Home as an alternative to pfsense. I’m 90% there, but is there a way to do DNS Rebinding, particularly for plex? i don’t want to open ports as I accessed everything via a VPN with pfsense and it worked perfectly…
    • 1 month ago
    • Sophos Firewall
    • Discussions
  • Configuration of IP TVs on Sophos Firewal

    Janith Bandara
    Janith Bandara
    I got a Sophos XGS126 on a customer site and I need to configure 7 IP TVs. I need assistant to configure those TVs. Since the TVs using multicast addresses is it possible to configure these without multicast addresses because ISP said that configure TVs…
    • 1 month ago
    • Sophos Firewall
    • Discussions
  • DHCP reservation

    RobertoR
    RobertoR
    I have a few subnets, and all of them have a dhcp server/pool range for specific range. A few of them have a IP reservation (bind mac to IP address). The error/strange behavior I get is if the MAC address is in list for reservation in any of the dhcp…
    • Answered
    • 1 month ago
    • Sophos Firewall
    • Discussions
  • Problem with VLAN configuration SOPHOS, PROXMOX

    Dominik Potocki
    Dominik Potocki
    Hi. I have a problem with receiving network traffic in PROXMOX_DMZ. I want two networks to be available in this PROXMOX_DMZ: 1. DMZ NETWORK 2. DMZ VLAN 1721 My devices and the connections between them Incoming traffic to the microtik ISP -> PORT WAN/vmbr0…
    • 1 month ago
    • Sophos Firewall
    • Discussions
  • Lots of discarded IPv6 packets in firewall log.

    JohnHilton
    JohnHilton
    Hi all, Started to have this issue the last day in the office 30mins before i left for the weekend. Basically our network has been going very slow and i have lots of this in the firewall..... like non stop. Am i right to believe fe80: is internally…
    • 1 month ago
    • Sophos Firewall
    • Discussions
  • Unconfigured VoIP Functionality on XGS 116 – Assistance Needed

    John Spurlock
    John Spurlock
    I am reaching out regarding an XGS 116 recently purchased by a client. Interestingly, VoIP functionality—both inbound and outbound—is fully operational without any specific configurations applied to the device for the VoIP provider. There are currently…
    • Answered
    • 1 month ago
    • Sophos Firewall
    • Discussions
  • Adding MAC ranges to a MAC list

    Sobhi Abufool
    Sobhi Abufool
    Hi, I have a proxmox hypervisor I use it to spin up VMs and LXC containers, and I use MAC addresses to enforce some rules on my Sophos firewall. how can I add a MAC range so all the new VMs that have random generated MAC addresses (under the same vendor…
    • 2 months ago
    • Sophos Firewall
    • Discussions
  • PABX and SIP cant ping my sophos in

    Jasper Dredd Guibani
    Jasper Dredd Guibani
    I’m currently facing some connectivity challenges with my network setup. My PABX and SIP systems are working fine—they respond to ping requests, so they’re definitely online. However, I can’t seem to get any incoming connections from the PABX to my Sophos…
    • 2 months ago
    • Sophos Firewall
    • Discussions
  • XG 106W reagiert nicht auf ping

    Manfred Werner
    Manfred Werner
    Hallo Forum, ich habe eine XG106w Rev1. Da ich nur eine Home Lizenz habe, wurde von mir die SFOS Home heruntergeladen und installiert Der Lan port1 hat die IP 172.16.16.16 und die Netzmaske 255.255.255.0 Der am LanPort 1 hängende PC hat die…
    • Answered
    • 2 months ago
    • Sophos Firewall
    • German Forum
  • Invalid Traffic - specifically using web browser, not via nmap

    jon_hall
    jon_hall
    Hi all, i have had a look at the Invalid Traffic page but as stated at the bottom doesnt resolve the issue, just reduces the number of logged entries My setup is as follows Core network is TPLink Omada (Manages the vlans) Sophos setup: Port1 …
    • 2 months ago
    • Sophos Firewall
    • Discussions
  • HOME License on XG115 hardware network adaptor not working

    kef L
    kef L
    Hi There I recently acquired a second-hand XG115W. After wiping the SSD, I successfully installed the V20 HOME firmware on it. However, I've encountered this issue after the installation: Ethernet ports 2 and 3 do not function. I can see the activate…
    • Answered
    • 2 months ago
    • Sophos Firewall
    • Discussions
  • Sophos XG resolves external Domains even no external DNS server is configured

    dishorned
    dishorned
    Hey Guys, I am using the Sophos XG as DHCP server which provides two DNS servers. One is a Pihole and the other one is the SophosXG itself. So normally the devices should resolve internal and external domains via Pihole, but when it is not available…
    • Answered
    • 2 months ago
    • Sophos Firewall
    • Discussions
  • NS300 Not Reachable from Sophos XG4500, but Can Call Outside

    Jasper Dredd Guibani
    Jasper Dredd Guibani
    Hi everyone! I’m facing a puzzling connectivity issue in my PABX setup. My NS300 cannot be pinged from my Sophos XG4500 when my SIP router is connected to the core switch. However, I can still make calls outside, which adds to the confusion. Coreswitch…
    • Answered
    • 2 months ago
    • Sophos Firewall
    • Discussions
  • Sophos XGS is not compatible with VLAN ID 0 (Null VID) frames as defined in 802.1Q

    Jonathon Bauer
    Jonathon Bauer
    TLDR - IEEE 802.1Q reserves VLAN ID 0 for a special purpose. Sophos XGS firewalls do not implement this special purpose correctly, preventing communication with some ISP Gateway modems. The request for proper implementation of VLAN ID 0 handling is being…
    • 2 months ago
    • Sophos Firewall
    • Discussions
  • SFOS 20.0.1 MR-1-Build342 DHCP not working

    Sebastian_Wi
    Sebastian_Wi
    Hello, I've added a DHCP-Server for an interface on my XG. The interface is an RED-VLAN-Interface and ping from the switch is working. An Accesspoint connected to the switch did not get an IP-Adresse. Today we found out, that we have the same problem…
    • Answered
    • 2 months ago
    • Sophos Firewall
    • Discussions
  • Sophos XGS 116w - DNS Request Route

    Clawcity
    Clawcity
    A customer site has a 2nd gateway that is required to access one of their vendor's systems. Our Sophos XGS has static routes in place to direct any traffic intended for the vendor network to the 2nd router. Rather than adding host entries for the vendor…
    • 2 months ago
    • Sophos Firewall
    • Discussions
>