• Firewall Rules for Microsoft One Note in Microsoft 365

    LSG Admin-Venket
    LSG Admin-Venket
    Hello there, I have been searching long time to do the following with Sophos XG 230 Firewall. But still could not find solution. Can anybody help 1. Block Microsoft 365 One Note alone. Rest of the Microsoft 365 should work. Blocking One Note on Application…
    • Answered
    • 2 months ago
    • Sophos Firewall
    • Discussions
  • 2 WAN Links One Firewall

    BobbyDigital
    BobbyDigital
    Hello World, I have to Internet gateways from my ISP as part of a package deal. I would like to use one internet gateway as my production traffic and the other gateway as my lab traffic. None of the resources behind need to talk to each other. I just…
    • 2 months ago
    • Sophos Firewall
    • Discussions
  • I cannot allow traffic from an external ip and a specific port to my local server. I tried differents things but it doesn't work.

    Yasin Mujawar
    Yasin Mujawar
    Dear tEam, I cannot allow traffic from an external ip and a specific port to my local server. I tried differents things but it doesn't work.
    • 2 months ago
    • Sophos Firewall
    • Discussions
  • "Could not associate packet to any connection." from smart tv causing apps to hang

    Kevin Roman
    Kevin Roman
    I have been having an issue where my smart tv hangs when apps first start up. It hangs for...several minutes sometimes. Checking my firewall logs, this is the reason, and after the several minute hang, everything works, which makes sense since it's now…
    • 2 months ago
    • Sophos Firewall
    • Discussions
  • How do I enable Subinterfaces for a Trunk?

    Kai Lamker
    Kai Lamker
    Hello all, I'm used to another known firewall vendor but I decided to give this for my home network a try since the other solution is way too expensive. My goal is to use a single link between my switch and my Sophos appliance so I do not need lots…
    • 2 months ago
    • Sophos Firewall
    • Discussions
  • Trouble getting BFD+BGP working

    Samuel Marinov
    Samuel Marinov
    I have an XG330 running 20.0.2. I'm trying to configure BFD+BGP. The BGP portion works great. However, the BFD portion does not. I enabled BFD from the CLI. The following is what my BGP configuration looks like from the CLI: Current configuration: …
    • 2 months ago
    • Sophos Firewall
    • Discussions
  • Sophos XGS IPv6 to IPv4

    Leon Pohl
    Leon Pohl
    Hello, Can anyone tell me if the Sophos XGS can translate IPv6 to IPv4 addresses? If so, where can I set it? Or do I also need an IPv6 range in the internal network?
    • Answered
    • 2 months ago
    • Sophos Firewall
    • German Forum
  • Port scan detection internal network

    @wajdiaa
    @wajdiaa
    Hi, Is there any option to detect internal network port scans from within the network or networks? Like for example using nmap or netcat or others from inside the local network, not from a wan source. I'm posting this in endpoint as well. Thanks…
    • 2 months ago
    • Sophos Firewall
    • Discussions
  • Multiple WAN aliases for outbound traffic

    Andrej Pirman
    Andrej Pirman
    Hi, what would be the proper way to configure different WAN ALIASES for outbound traffic, for example in this manner: LAN users would use WAN Alias 1 for browsing and accessing web LAN2 users would use WAN Alias 2 FreeWiFi users would use WAN…
    • 2 months ago
    • Sophos Firewall
    • Discussions
  • "Multiple failed login attempts for WAN-facing portals on Sophos Firewall" - How to get IP

    Markus Quirmbach
    Markus Quirmbach
    Hello, We've seen a message on the Sophos Firewall WEB-UI leading us to this article: "Multiple failed login (brute force) attempts for WAN-facing portals on Sophos Firewall" https://support.sophos.com/support/s/article/KBA-000009932?language=en_US…
    • Answered
    • 2 months ago
    • Sophos Firewall
    • Discussions
  • Traverse packets dropping frequently

    Andrej Pirman
    Andrej Pirman
    Hi, On brand new XGS-136 I have problem, which cannot solve for few days. So I would appreciate any hints. Packets are dropping randomly every minute or so, sometimes even more frequently, in the following direction: From LAN side --> to Sophos…
    • Answered
    • 2 months ago
    • Sophos Firewall
    • Discussions
  • Moving from UTM to SFOS Want to remove NAT

    Nick Gale
    Nick Gale
    Hi Folks, I'm moving from UTM to SFOS. Getting it setup with the basics was all fine but something I've been wanting to try for a while was to remove the masq rules as sophos is my back firewall in a back to back config. I ran into an issue though…
    • 2 months ago
    • Sophos Firewall
    • Discussions
  • BLOCK TELEGRAM

    ronald musoki
    ronald musoki
    dear all, can someone help to block both telegram App and website on my sophos firewall
    • 2 months ago
    • Sophos Firewall
    • Discussions
  • CVE 2021-20090

    Maroun Moussallem
    Maroun Moussallem
    hello, Alert Message: Message: SERVER-WEBAPP Arcadyan Routers CVE-2021-20090 Path Traversal Attempt I got this Alert today, and the attacker is one of the company's computer, I read an article about this vulnerability…
    • Answered
    • 2 months ago
    • Sophos Firewall
    • Discussions
  • Huawei 3372 LTE stick not working in SFOS 20.0.2 MR-2-Build378

    Steven Lew
    Steven Lew
    Hi everyone, I am using a Huawei 3372 LTE stick on my SG-125 with SFOS for a couple years now. It is configured in DHCP mode as a failover WAN connection when the main connection goes down. Up until now this worked as intended but after upgrading the…
    • 2 months ago
    • Sophos Firewall
    • Discussions
  • Sophos XG WAN Failback delayed

    Alex Loecherer
    Alex Loecherer
    clear 840 / 5.000 Übersetzungsergebnisse Übersetzung Is there a way to delay the failback in the event of a WAN failover? Our customer gets his Internet access…
    • Answered
    • 2 months ago
    • Sophos Firewall
    • Discussions
  • REMOTE ACCESS DENIED

    Qualityassured
    Qualityassured
    Hi, I am new to Sophos products I newly get into it and the BASIC installation has been done. I discovered the Sage300 application that our staff working remotely using a public IP to connect to the onpremises server is not working after installation…
    • 2 months ago
    • Sophos Firewall
    • Discussions
  • IP Lease problem

    Ramil Racelis
    Ramil Racelis
    I have a problem regarding may rujie AP that connected in sophos firewall XGS2300. I created VLan 172.16.16.16 for employees user(mac binding) and Vlan2 17.15.15.16 for Guest wif(DHCP) from 172.15.15.20-100. My problem was when i tried to connect my android…
    • 2 months ago
    • Sophos Firewall
    • Discussions
  • Question regarding #Port and ##ALL_RW special IP hosts

    Wayne Folta
    Wayne Folta
    Looking at IP Hosts like #Port2 or ##ALL_RW, they are dynamic IP addresses, correct? So if Port2 is my WAN port and the ISP changes my IP (via DHCP), wherever #Port2 is used in any rule will automatically be updated instantly so that the rule still applies…
    • 2 months ago
    • Sophos Firewall
    • Discussions
  • If you are not registered in Active Directory, you cannot access the internet?

    duzcebelediye bilgiislem
    duzcebelediye bilgiislem
    If you are not registered in Active Directory, you cannot access the internet. How can I do it?
    • 2 months ago
    • Sophos Firewall
    • Discussions
  • Wildcard FQDN Stopped Working After Upgrade

    CV_Sophos
    CV_Sophos
    Hello, Over the holiday weekend we upgraded our XG330's from 19.5.4 to 20.0.2 MR-2-Build378. After the upgrade none of our wildcard FQDN rules are resolving/working. They worked perfectly fine prior. This is causing quite a bit of issues for user authentication…
    • Answered
    • 2 months ago
    • Sophos Firewall
    • Discussions
  • Alert ID: 17913

    leo leo
    leo leo
    Hallo zusammen, seit Donnerstag bekomme ich ständig die Warnung mit folgender Nachricht: Message: Access from IP address '92.53.65.166' is blocked for '5' minutes after '5' unsuccessful login attempt. Unsere Firewall ist Alert for XGS2100…
    • 2 months ago
    • Sophos Firewall
    • Discussions
  • VPN Portal getting hammered by password spraying attacks - Russia and elsewhere

    DG1
    DG1
    On September 4, our Firewall VPN Portal was attacked from IP 92.53.65.166 (Russia) with hundreds of login attempts for different usernames. After bloicking this, today (September 8) we have been hammered by another attack, this time from hundreds of different…
    • Answered
    • 2 months ago
    • Sophos Firewall
    • Discussions
  • How to create a sample rule for password spraying attacks

    duzcebelediye bilgiislem
    duzcebelediye bilgiislem
    Since today we have been experiencing massive password spraying attacks on many Sophos firewalls, especially on the VPN portal, which listens to port 443. Apparently these are attacks from Russia with the IP 92.53.65.166. How can I create a rule to prevent…
    • Answered
    • 3 months ago
    • Sophos Firewall
    • Discussions
  • XG 210 One ISP, Two Different IP Blocks

    Clay Tsuhako
    Clay Tsuhako
    Hello: I have a WAN port (Port 2) that is connected to our ISP with an IP block of 65.170.xxx.xxx/29. We have another block of IP addresses from the same provider at 63.162.xxx.xxx/29. Both come in thru the same ISP router (Cisco 4300). There are 4…
    • Answered
    • 3 months ago
    • Sophos Firewall
    • Discussions
<>