• XG125 Blocking Programs or Ports

    Brian Roberts
    Brian Roberts
    Hi, Is it possible that an XG125 Firewall can block programs and TCP/UDP ports for network traffic between a Windows Server and client computers within the same LAN? I know the firewall can block traffic between the LAN and the internet but my question…
    • Answered
    • 4 months ago
    • Sophos Firewall
    • Discussions
  • Integrate synthetic allowlist in a rule without WAF

    Oliver Schnürer
    Oliver Schnürer
    Dear community, As a firewall noob I am wondering how to integrate a dynamically changing list of IPs into an allowlist for a specific firewall rule. As a home user I unfortunately have no access to the "Web protection subscription", only "Base Firewall…
    • Answered
    • 4 months ago
    • Sophos Firewall
    • Discussions
  • Change Internet Connection for the Firewall Upgrade

    CreateShare
    CreateShare
    Hi, Does the firewall use only the first WAN connection for operations like upgrading the firmware, definitions, or load balances in case of multiple WAN interfaces? If it uses only the first wan interface, is it possible to change it? Thanks.
    • 4 months ago
    • Sophos Firewall
    • Discussions
  • Email flow to Exchange server stops

    Mark Hebblethwaite
    Mark Hebblethwaite
    Sophos XGS 2300 running 20.0.1 Internal exchange server DNAT rule allowing passthru of SMTP traffic to the exchange server. ports 25,465,587. From time to time we stop receiving email. to fix, we reboot the sophos firewall. When it stops working…
    • 4 months ago
    • Sophos Firewall
    • Discussions
  • XGS2100 Throughput

    DDL_123
    DDL_123
    Hello, I have two sites configured with HA XG2100 firewalls, At both sites 1GBe Port2 is the WAN connection this is a 100/100 circuit typically usage is around 30%, 1GBe Port 6 is an MPLS L2 1Gbp/s Circuit that connects both sites. All LAN traffic is…
    • 4 months ago
    • Sophos Firewall
    • Discussions
  • VoIP-Telefonanlage hinter XGS

    Jürgen Pilz
    Jürgen Pilz
    Hallo zusammen, ich habe hier folgendes Scenario: Vodafone Anschluss mit fester IP ( 145.253.111.21 - nicht REAL). Jetzt soll eine TK-Anlage über VoIP angebunden werden. Da 4 IPs vorhanden sind, habe ich am Port 2 der Sophos eine 2. öffentliche und…
    • 4 months ago
    • Sophos Firewall
    • German Forum
  • LAG configuration

    Reem Jalal Eddine
    Reem Jalal Eddine
    Hello, So I have a weird scenario and I need second opinion. We have two firewalls Active Passive and two switched Active Active The first switch was configured to connect to the primary firewall on a port F4 and this port has vlan on it,…
    • 4 months ago
    • Sophos Firewall
    • Discussions
  • Hilfe / Meinungen bei Zonenaufteilung XGS116

    Tobi Müller
    Tobi Müller
    Hallo zusammen, ich möchte für unser kleines Familienunternehmen nächste Woche die Sophos XGS116 einrichten, weil wir vor kurzem einen kleinen Sicherheitsvorfall hatten und ich gerne unser Firmennetzwerk ein bisschen ändern bzw sicherer machen möchte…
    • Answered
    • 4 months ago
    • Sophos Firewall
    • German Forum
  • Two Lan Network for Two different WAN

    AlessandroBlasi
    AlessandroBlasi
    Hello Guys, I've tried to search, but without any luck. Basically I have a very simple configuration: LAN1 192.168.X.X --> WAN 1 Now I would like to modify the configuration, in this way: LAN1 192.168.X.X/24 --> WAN 1 LAN2 192.168.Y.Y/24 --> WAN…
    • Answered
    • 4 months ago
    • Sophos Firewall
    • Discussions
  • INTERNAL NETWORK ACCESS TO EXTERNAL IP

    ASP AÇAO SOCIAL DO PLANALTO
    ASP AÇAO SOCIAL DO PLANALTO
    Hello, we have implemented the Sophos firewall and we are facing a serious problem, no matter how much we configure the internal network IPs, it does not access the external IP, Could you help us? Grateful
    • Answered
    • 4 months ago
    • Sophos Firewall
    • Discussions
  • WAN/Internet failover confusion and Starlink

    PeHoy
    PeHoy
    I've got our firewall (XGS2100) connected to 2 Internet connections. One is a local wireless internet provider we've been using for years (as its a very good deal) and recently a Starlink connection to replace the woeful DSL and 4G connections. I had…
    • 4 months ago
    • Sophos Firewall
    • Discussions
  • Network Configuration Issue

    Dominik Potocki
    Dominik Potocki
    ##### Aktualna konfiguracja **Router:** - Adres IP: 192.168.1.1 - Maska podsieci: 255.255.255.0 **Sophos:** - Interfejs LAN: 192.168.1.79 - Interfejs WAN: 192.168.2.1 **Reguła wyjątku listy ACL usługi lokalnej:** - Strefa źródłowa: WAN - Sieć źródłowa…
    • Answered
    • 4 months ago
    • Sophos Firewall
    • Discussions
  • Replaced firewall with xgs 2300 - video server playback not working

    johnm_19
    johnm_19
    We recently replaced all our xg230 with xgs 2300 firewalls. Geovision Video server is on a dmz with port forward rule and NAT rule. Remote playback and viewlog you can't connect to them. Live view works fine. Other sites no issues. Firewalls are setup…
    • 4 months ago
    • Sophos Firewall
    • Discussions
  • Ausgehende FTPS-Verbindung nicht möglich (Sophos XG210)

    Bue-GmbH
    Bue-GmbH
    Hallo Zusammen, wir scheitern daran eine FTPS-Verbindung zum Datenaustausch über unsere Sophos XG210 zu einem FTP-Server im Internet aufzubauen. Laut Betreiber des Servers sollte es ausreichen zusätzlich zum FTP-Port 21 die verwendete Portrange im ausgehenden…
    • 4 months ago
    • Sophos Firewall
    • German Forum
  • SFOS 20.0 MR not showing any bandwidth in interfaces

    Andreas Wolter
    Andreas Wolter
    WAs used showing false bandwidth but after upgrading I get this: Anyone else experiencing this ?
    • 4 months ago
    • Sophos Firewall
    • Discussions
  • Firewall rule - apply traffic with specific DSCP marking only - not works

    Libor Kolar
    Libor Kolar
    Hello everybody, I would have a question to the firewall rules and DSCP marking under "Other security features"... My Sophos instance is running in bridge mode in front of my router's WAN interface (with only one public IP). I apply the function " Scan…
    • 4 months ago
    • Sophos Firewall
    • Discussions
  • Sophos XGS 107

    Alexander Scherer
    Alexander Scherer
    Guten Tag, ich habe ein Business LAN und ein Private VLAN aufgebaut. Der Drucker steht im Business LAN, ich möchte aus dem Privaten VLAN über iPhone "AirPrint" "Bonjour" auf dem Drucker drucken. Die FW Regel habe ich erstell, über die IP-Adresse…
    • Answered
    • 4 months ago
    • Sophos Firewall
    • German Forum
  • Some computers cannot access Internet, some can

    brucepott
    brucepott
    Hi, we have suddenly a strange problem. We have an XGS136. We have two internal servers that need to be accessed from outside and the DNAT & NAT rules have been created accordingly. All the rules ( dnat, loopback, reflexive ) for the two servers are…
    • 4 months ago
    • Sophos Firewall
    • Discussions
  • New firewall rule does not show in listing

    Tony Graham
    Tony Graham
    Added a new firewall rule. It does not show in the Rules and Policies. I thought maybe I didn't click 'Save'. So I went back in to add a new rule. This time when I try to add the rule, it says 'Rule already exists.' Ummm, okay. Where is it?
    • Answered
    • 5 months ago
    • Sophos Firewall
    • Discussions
  • County Block with MTA enabled

    Steve Pringle
    Steve Pringle
    I would like to block access to and from certain countries with the MTA enabled. This was really simple on the UTM, but seems much more complicated in Sophos Firewall. I have created a black hole NAT rule as suggested in the documentation, but can’t work…
    • 5 months ago
    • Sophos Firewall
    • Discussions
  • Banking Websites Requires Re-authentication

    Osama Mansour
    Osama Mansour
    Hello Everyone, We encountered an issue with Sophos firewall XG. The issue simply is when we try to open the Banking website to do transactions or online banking, we authenticate normally. However, when we try to access anything in the bank website…
    • 5 months ago
    • Sophos Firewall
    • Discussions
  • Sophos MG 125 Setup

    CITY FM
    CITY FM
    I need help with setting up my MG 125 device for bandwidth management. Can it do the job well? Thanks
    • 5 months ago
    • Sophos Firewall
    • Discussions
  • Basic set of firewall rules for a very basic office

    Mark Tarrant
    Mark Tarrant
    Hello, I'm new to Sophos, and am deploying my first firewall to a very basic client, and just want to check what I have configured is a reasonable balance between security and functionality? I am just looking for opinions and whether I have missed anything…
    • Answered
    • 5 months ago
    • Sophos Firewall
    • Discussions
  • Fehlerhaftes Routing | TiKonnektor | nach Umstellung auf XGS

    Rene Kant
    Rene Kant
    Moin! Wir haben folgende Konstellation, an welcher ich aktuell scheitere, vielleicht habt ihr noch eine Idee: Client: 192.168.0.19 nutzt Praxissoftware von Server 192.168.0.200 Einsatz eines Ti-Konnektors 172.16.10.220 mit GW 172.16.10.200 Route in die…
    • 5 months ago
    • Sophos Firewall
    • German Forum
  • Sophos XGS firewall Rule Configuration

    Yuvraj Singh
    Yuvraj Singh
    Hii Community, I configured a firewall rule for VPN to LAN connection and another for LAN to WAN connection, attaching a NAT rule with MASQ for internet access. Despite this, I could establish a VPN connection with the Sophos Connect client but couldn…
    • Answered
    • 5 months ago
    • Sophos Firewall
    • Discussions
<>