• VPN SITE TO SITE

    Patricio Gómez
    Patricio Gómez
    HELLO GOOD AFTERNOON DO YOU KNOW WHY THE VPN CANNOT CONNECT AND I AM CHECKING THE RULE BUT THERE IS TRAFFIC AND THIS IS THE RULE
    • 8 months ago
    • Sophos Firewall
    • Discussions
  • Porblem xgs ipsec

    piddae
    piddae
    Hallo liebe communitytäter, Ich habe ene Frage zum IPSEC: Folgende Konfiguration: UTM direkt am Internet XGS hinter einer NAT normales DSL. Wenn auf der XGS die IP wechselt kein Problem die Verbindung bleibt bestehen. UTM Initiator XGS Responder…
    • Answered
    • 8 months ago
    • Sophos Firewall
    • German Forum
  • VPN IPsec site to site between Sophos and Seqrite UTM

    Sunit Thakur
    Sunit Thakur
    I have created VPN IP Sec between Sophos xg136 and Seqrite Terminator UTM after some time vpn auto disconnted and send below log error. And manually have to conect. Couldn't parse IKE message from 47.X.X.X[38049]. Check the debug logs. Traffic…
    • 8 months ago
    • Sophos Firewall
    • Discussions
  • Sophos Home to replace Arista Home Pro

    James Pifer
    James Pifer
    Hello. I'm looking at replacing my current Arista Home Pro with Sophos Home. A couple important features I use are TunnelVPN and Bypass. Can Sophos do a site-to-site vpn to Torguard ? Can you control access through the VPN by rules, ie source address…
    • 8 months ago
    • Sophos Firewall
    • Discussions
  • help to configurate IPSec VPN sophos xgs136

    Davide Filippi
    Davide Filippi
    Hello everyone, I need help setting up an IPsec VPN. My provider gave me these parameters: Remote Gateway: <public address A> Subnet: <range of public addresses B> Phase1 and Phase2 parameters that I know it have to match Firewall XGS136 I…
    • 8 months ago
    • Sophos Firewall
    • Discussions
  • Site-to-Site VPN Problem Invalid SPI

    Trio Fandi
    Trio Fandi
    Hi, We are using Sophos Firewall XG310 , SFOS v20. It's been 4 month we have established Site-to-Site VPN, and today suddenly our connection is Down with many " Received IKE message with invalid SPI (D3EED417) from the remote gateway " log messages…
    • Answered
    • 8 months ago
    • Sophos Firewall
    • Discussions
  • SNAT over ipsec not working XGS2100

    Akshay Hegde
    Akshay Hegde
    I am referring this post with similar issue DNS request to DNS over Site2Site VPN I have below setup XG310 -- branch office XG430 -HA -- Head office Now I got XGS2100 - 2nd branch office ( Gateway local ip: 172.16.1.100 ) XGS2100 …
    • Answered
    • 9 months ago
    • Sophos Firewall
    • Discussions
  • Azure Pfsense 23.09.1 site to site ipsec to on prim sophos SFVH (SFOS 20.0.0 GA-Build222)

    James Sweeney
    James Sweeney
    For a few days now I have been attempting to get a ipsec site to site between these two firewalls and even have the pro customer support pfsense involved. All there suggestions have been unsuccessful in getting the two to talk to each other. all guides…
    • 9 months ago
    • Sophos Firewall
    • Discussions
  • VLAN in a IPsec Tunnel randomly stop communicating.

    sifikelo mkhungo
    sifikelo mkhungo
    Hello I recently upgraded my Sophos XG 2300 to SFOS v20 which is in Head Office, where I am running site to site vpn: IPsec tunnels to 6 branch offices and IPsec Profile is set to Head Office, policy based for all IPsec Tunnels on Head Office firewall…
    • 9 months ago
    • Sophos Firewall
    • Discussions
  • IPSec ID Sophos - Cisco

    TobiasSchubert
    TobiasSchubert
    Hallo, wir haben eine IPSec-VPN-Verbindung zwischen Sophos und Cisco aufgebaut. Auf dem Cisco Router sollte als ID die Key ID verwendet werden: Diese Konfiguration gibt es aber auf der Sophos nicht: Die Konfigurateionen sind dann auch nicht…
    • 9 months ago
    • Sophos Firewall
    • German Forum
  • Site-to-Site VPN

    Domenico Frei
    Domenico Frei
    Hi, I have a constellation with a site-to-site VPN between a Sophos XGS116 and a Sonicwall TZ400 at a customer's. The connection between the two devices keeps breaking down. On the Sonicwall you can also see that the VPN tunnel has been disconnected,…
    • 9 months ago
    • Sophos Firewall
    • Discussions
  • Can’t route self-generated packets

    Rodrigue GRIMAUD
    Rodrigue GRIMAUD
    Hello, I work on 2 Sophos XG on 2 different sites. They communicate with each other using a Site-to-Site IPSec VPN. Site A : Sophos-XGS 33100 (SFOS 19.5.3) Site B : Sophos-XG 330 (SFOS 19.5.3) 3 subnets of Sophos A are configured to be able…
    • 9 months ago
    • Sophos Firewall
    • Discussions
  • on Sophos Firewall, if I update and regenerate the default CA, what are the implications?

    Callum Roseneder1
    Callum Roseneder1
    On Sophos Firewall, if I update and regenerate the default CA, what are the implications? I have a firewall that is setup, the default CA hasn't been customised so far. I need to setup a S2S IPsec VPN with certificates and wanted to customise this before…
    • 9 months ago
    • Sophos Firewall
    • Discussions
  • Firewall Policy with Limited Access no Working

    CreateShare
    CreateShare
    Hi, I have two WAN Links. Firewall rules and sd-wan routes are created. If I add a new firewall policy to allow internet for a server that is not included in the default policy, it does not work. I created a new nat policy and sd-wan rule, but it did…
    • 9 months ago
    • Sophos Firewall
    • Discussions
  • Unable to connect Digibox/Bintec Router to Sophos XG via IPsec

    Michael Orthen
    Michael Orthen
    Hello, I'm unable to connect a Telekom Digibox (branded Bintec Router) to a Sophos XG via IPsec VPN. charon.log of the Sophos Firewall: 2024-02-16 12:26:17Z 28[NET] <9> received packet: from <branch ip>[500] to <head ip>[500] (512 bytes) 2024-02…
    • 9 months ago
    • Sophos Firewall
    • Discussions
  • Unable to establish the site to site communication between sophos firewall to Microtik router

    Anurag Murali
    Anurag Murali
    We set a local ip to our branch office 13.1 to the microtik switch and configured the IP sec in sophos firewall and established the connection and connection also up. We created the policies in microtik and added the IP address. Then established the connection…
    • 9 months ago
    • Sophos Firewall
    • Discussions
  • SOPHOS 2 BRANCH CONNECTION

    TimothyWanume
    TimothyWanume
    Hello I have two branches, both with Sophos firewalls. I have run fibre between these branches; how should I connect them so that they share resources? I have configured a site-to Site VPN, but what if one side loses internet? I need a backup.
    • 9 months ago
    • Sophos Firewall
    • Discussions
  • Sophos Site to Site IPSEC Conection with Selectet Clients

    Roger Domig
    Roger Domig
    Hello dear Sophos Forum, I have set up a Site-to-Site VPN connection between a NAS and 2 ESXi servers with a Sophos XGS. Setting up the connection was no problem, but I still can't reach the ESXi servers from the NAS, even though every port is allowed…
    • 10 months ago
    • Sophos Firewall
    • Discussions
  • Vendor router/ipsec tunnel on /29 routed subnet behind /30 sophos xg. Tunnel disconnecting.

    Andrew Schoonover
    Andrew Schoonover
    Summary: AT&T provides us a /30 for our equipment and a /29 routed subnet. We are currently using several of these addresses as Alias NAT'd for hosted services. We have a vendor who wants to establish a VPN tunnel to their remote site via a cisco 4300…
    • 10 months ago
    • Sophos Firewall
    • Discussions
  • VPN IPsec Tunnel mit Internetzugang über eine Firewall

    Wolfgang Ritter1
    Wolfgang Ritter1
    Hallo Ich habe zwei Firewalls Head Office (Bach) und Filiale (Dornbirn) XG135 SFOS 19.5 Die WAN und Router Adressen sind in der Grafik nicht real. Bach: Ist hinter einem router welcher im bridge mode arbeitet. Das WAN interface ist nicht direkt…
    • 10 months ago
    • Sophos Firewall
    • German Forum
  • POLICY BASED IPSEC VPN with Source NAT (MASQ)

    Callum Roseneder1
    Callum Roseneder1
    I'm migrating from a UTM to an XG so i'm trying to replicate a config that already existed. I have the IPSEC VPN setup and the tunnel comes up. The VPN selector on my side only has a /30 I need to have the rest of the organisation talk through this VPN…
    • 10 months ago
    • Sophos Firewall
    • Discussions
  • Using public IPs in different locations with IPSEC

    Christian Garcia N
    Christian Garcia N
    Good morning. I don't know if someone can help me as I have been trying various configurations and conducting tests without any success, and I'm not sure if the XG allows what I need. I have 2 offices: Office A has a public IP addressing (e.g.,…
    • 10 months ago
    • Sophos Firewall
    • Discussions
  • Site-to-Site VPN FritzBox -> Sophos XG

    Jan Schumann
    Jan Schumann
    I have established a VPN Tunnel between * Sophos XG (Head Office) * FritzBox (Branch Office) I can access Head Office Resources from Brach Office. But I cannot access the internet from Branch Office. I have created a Firewall Rule to allow Branch…
    • 10 months ago
    • Sophos Firewall
    • Discussions
  • RDP freezes for 5-10 seconds

    VTH
    VTH
    So we have a pretty new XGS 2300 and we have some cases where we connect to our customers servers over an Ipsec Site-to-Site tunnel with RDP. the tunnel is stable but sometimes the remote desktop session freezes for a short time. I looked into the…
    • 10 months ago
    • Sophos Firewall
    • Discussions
  • Connected to Sophos VPN has Internet but can't ping anything it always show ("Request Time out")

    Apo Lakay
    Apo Lakay
    there is internet before and after connecting vpn but every time I ping anything the result is always "Request time out". however after conecting to vpn the internet is slowing and cant ping servers Help me to fix this.
    • 10 months ago
    • Sophos Firewall
    • Discussions
<>