• LAG configuration

    Reem Jalal Eddine
    Reem Jalal Eddine
    Hello, So I have a weird scenario and I need second opinion. We have two firewalls Active Passive and two switched Active Active The first switch was configured to connect to the primary firewall on a port F4 and this port has vlan on it,…
    • 3 months ago
    • Sophos Firewall
    • Discussions
  • Hilfe / Meinungen bei Zonenaufteilung XGS116

    Tobi Müller
    Tobi Müller
    Hallo zusammen, ich möchte für unser kleines Familienunternehmen nächste Woche die Sophos XGS116 einrichten, weil wir vor kurzem einen kleinen Sicherheitsvorfall hatten und ich gerne unser Firmennetzwerk ein bisschen ändern bzw sicherer machen möchte…
    • Answered
    • 3 months ago
    • Sophos Firewall
    • German Forum
  • Two Lan Network for Two different WAN

    AlessandroBlasi
    AlessandroBlasi
    Hello Guys, I've tried to search, but without any luck. Basically I have a very simple configuration: LAN1 192.168.X.X --> WAN 1 Now I would like to modify the configuration, in this way: LAN1 192.168.X.X/24 --> WAN 1 LAN2 192.168.Y.Y/24 --> WAN…
    • Answered
    • 3 months ago
    • Sophos Firewall
    • Discussions
  • INTERNAL NETWORK ACCESS TO EXTERNAL IP

    ASP AÇAO SOCIAL DO PLANALTO
    ASP AÇAO SOCIAL DO PLANALTO
    Hello, we have implemented the Sophos firewall and we are facing a serious problem, no matter how much we configure the internal network IPs, it does not access the external IP, Could you help us? Grateful
    • Answered
    • 3 months ago
    • Sophos Firewall
    • Discussions
  • WAN/Internet failover confusion and Starlink

    PeHoy
    PeHoy
    I've got our firewall (XGS2100) connected to 2 Internet connections. One is a local wireless internet provider we've been using for years (as its a very good deal) and recently a Starlink connection to replace the woeful DSL and 4G connections. I had…
    • 3 months ago
    • Sophos Firewall
    • Discussions
  • Network Configuration Issue

    Dominik Potocki
    Dominik Potocki
    ##### Aktualna konfiguracja **Router:** - Adres IP: 192.168.1.1 - Maska podsieci: 255.255.255.0 **Sophos:** - Interfejs LAN: 192.168.1.79 - Interfejs WAN: 192.168.2.1 **Reguła wyjątku listy ACL usługi lokalnej:** - Strefa źródłowa: WAN - Sieć źródłowa…
    • Answered
    • 3 months ago
    • Sophos Firewall
    • Discussions
  • Replaced firewall with xgs 2300 - video server playback not working

    johnm_19
    johnm_19
    We recently replaced all our xg230 with xgs 2300 firewalls. Geovision Video server is on a dmz with port forward rule and NAT rule. Remote playback and viewlog you can't connect to them. Live view works fine. Other sites no issues. Firewalls are setup…
    • 3 months ago
    • Sophos Firewall
    • Discussions
  • Ausgehende FTPS-Verbindung nicht möglich (Sophos XG210)

    Bue-GmbH
    Bue-GmbH
    Hallo Zusammen, wir scheitern daran eine FTPS-Verbindung zum Datenaustausch über unsere Sophos XG210 zu einem FTP-Server im Internet aufzubauen. Laut Betreiber des Servers sollte es ausreichen zusätzlich zum FTP-Port 21 die verwendete Portrange im ausgehenden…
    • 3 months ago
    • Sophos Firewall
    • German Forum
  • SFOS 20.0 MR not showing any bandwidth in interfaces

    Andreas Wolter
    Andreas Wolter
    WAs used showing false bandwidth but after upgrading I get this: Anyone else experiencing this ?
    • 3 months ago
    • Sophos Firewall
    • Discussions
  • Firewall rule - apply traffic with specific DSCP marking only - not works

    Libor Kolar
    Libor Kolar
    Hello everybody, I would have a question to the firewall rules and DSCP marking under "Other security features"... My Sophos instance is running in bridge mode in front of my router's WAN interface (with only one public IP). I apply the function " Scan…
    • 3 months ago
    • Sophos Firewall
    • Discussions
  • Sophos XGS 107

    Alexander Scherer
    Alexander Scherer
    Guten Tag, ich habe ein Business LAN und ein Private VLAN aufgebaut. Der Drucker steht im Business LAN, ich möchte aus dem Privaten VLAN über iPhone "AirPrint" "Bonjour" auf dem Drucker drucken. Die FW Regel habe ich erstell, über die IP-Adresse…
    • Answered
    • 3 months ago
    • Sophos Firewall
    • German Forum
  • Some computers cannot access Internet, some can

    brucepott
    brucepott
    Hi, we have suddenly a strange problem. We have an XGS136. We have two internal servers that need to be accessed from outside and the DNAT & NAT rules have been created accordingly. All the rules ( dnat, loopback, reflexive ) for the two servers are…
    • 3 months ago
    • Sophos Firewall
    • Discussions
  • New firewall rule does not show in listing

    Tony Graham
    Tony Graham
    Added a new firewall rule. It does not show in the Rules and Policies. I thought maybe I didn't click 'Save'. So I went back in to add a new rule. This time when I try to add the rule, it says 'Rule already exists.' Ummm, okay. Where is it?
    • Answered
    • 3 months ago
    • Sophos Firewall
    • Discussions
  • County Block with MTA enabled

    Steve Pringle
    Steve Pringle
    I would like to block access to and from certain countries with the MTA enabled. This was really simple on the UTM, but seems much more complicated in Sophos Firewall. I have created a black hole NAT rule as suggested in the documentation, but can’t work…
    • 3 months ago
    • Sophos Firewall
    • Discussions
  • Banking Websites Requires Re-authentication

    Osama Mansour
    Osama Mansour
    Hello Everyone, We encountered an issue with Sophos firewall XG. The issue simply is when we try to open the Banking website to do transactions or online banking, we authenticate normally. However, when we try to access anything in the bank website…
    • 3 months ago
    • Sophos Firewall
    • Discussions
  • Sophos MG 125 Setup

    CITY FM
    CITY FM
    I need help with setting up my MG 125 device for bandwidth management. Can it do the job well? Thanks
    • 3 months ago
    • Sophos Firewall
    • Discussions
  • Basic set of firewall rules for a very basic office

    Mark Tarrant
    Mark Tarrant
    Hello, I'm new to Sophos, and am deploying my first firewall to a very basic client, and just want to check what I have configured is a reasonable balance between security and functionality? I am just looking for opinions and whether I have missed anything…
    • Answered
    • 3 months ago
    • Sophos Firewall
    • Discussions
  • Fehlerhaftes Routing | TiKonnektor | nach Umstellung auf XGS

    Rene Kant
    Rene Kant
    Moin! Wir haben folgende Konstellation, an welcher ich aktuell scheitere, vielleicht habt ihr noch eine Idee: Client: 192.168.0.19 nutzt Praxissoftware von Server 192.168.0.200 Einsatz eines Ti-Konnektors 172.16.10.220 mit GW 172.16.10.200 Route in die…
    • 4 months ago
    • Sophos Firewall
    • German Forum
  • Sophos XGS firewall Rule Configuration

    Yuvraj Singh
    Yuvraj Singh
    Hii Community, I configured a firewall rule for VPN to LAN connection and another for LAN to WAN connection, attaching a NAT rule with MASQ for internet access. Despite this, I could establish a VPN connection with the Sophos Connect client but couldn…
    • Answered
    • 4 months ago
    • Sophos Firewall
    • Discussions
  • XG 136 mit SFOS 20.0.0 hinter einem Exposed Host. Ich bekomme kein DNAT hin

    ChristofS
    ChristofS
    Hallo Gemeinde, bis jetzt hatte ich immer einer SG230 in dieser Konstallation. Diese habe ich nun gegen eine XG136 getauscht und die Firmware SFOS 20.0.0 GA-Build222 ist installiert und die Konfiguration so von der SG230 übernommen Die Reds und…
    • 4 months ago
    • Sophos Firewall
    • German Forum
  • Transparently insert Sophos XG in a working network

    AGamal
    AGamal
    Hello, I have a situation where my ISP installed a router and gave me a subnet ( 10.1.1.0/24 ) with the gateway being the router(10.1.1.1). My understanding is that I need to configure an internal network (i.e 10.1.2.0/24) on the LAN side of the firewall…
    • Answered
    • 4 months ago
    • Sophos Firewall
    • Discussions
  • Proxy inbound connection to external ip

    LMSIIATO
    LMSIIATO
    Good morning, I currently have a server in an on-premise datacenter that responds to TCP port 12233. So there is a very normal DNAT on the XGS firewall of the public ip 80.80.80.80:12233 towards the private server ip 192.168.1.10:12233 This service is…
    • Answered
    • 4 months ago
    • Sophos Firewall
    • Discussions
  • VOIP QoS

    Boris60
    Boris60
    Hi, I am really confused about how to do this on XG. I can go to Traffic Shaping and create my policy and attach it to my rule or service - but then in Traffic Shaping Service there is a setting "Optimize for real-time (VoIP)" that is Enabled by default…
    • Answered
    • 4 months ago
    • Sophos Firewall
    • Discussions
  • WAN Link Down

    PifPof
    PifPof
    Moin ! Habe hier einen XGS 2300 Cluster mit einem WAN Anschluss. Dieser ist auch in Benutzung und funktioniert. Trotzdem wird er im WAN Link Manager als ROT angezeigt. Das Gateway ist generell von der Firewall anpingbar, trotzdem habe ich die Failover…
    • 4 months ago
    • Sophos Firewall
    • German Forum
  • Server access : port to port won't work

    helmut willems
    helmut willems
    hello , i'll try a simple port forwarding when i setup this like below , it works when i change the source port to 7887 then it dont forward. why o why ?
    • 4 months ago
    • Sophos Firewall
    • Discussions
<>