• Sending Remote access traffic through Site-to-site VPN, with 1:n nat translation on XGS

    XGS-admin
    XGS-admin
    Hello Sophos community, I am trying to set up a szenario where I have to send IPsec Remote access traffic through a Site-to-Site IPsec VPN with 1:n NAT translation on a XGS Firewall. It seems to work on UTM: Sending Remote access traffic through…
    • over 1 year ago
    • Sophos Firewall
    • Discussions
  • SSL VPN to Sophos Connect Migration Anomalies; Some Resources Now Unavailable

    ptho
    ptho
    Hi Sophos Community, We've switched from using the SSL VPN client to Sophos Connect. All configurations used for SSL VPN via the old client are now used with Sophos Connect. For the most part everything has gone smoothly, only now some actions…
    • over 1 year ago
    • Sophos Firewall
    • Discussions
  • SSL VPN GLobal Settings dosen't save

    GSR mbH
    GSR mbH
    Hello, I have a Problem with Global Settig update , save. See my attachment. What IP-Address is it ??
    • Answered
    • over 1 year ago
    • Sophos Firewall
    • Discussions
  • SSL VPN used in a VPN gateway, trouble accessing remote network from other networks going through the gateway. Any remedy?

    David Clark2
    David Clark2
    A remote vendor used his SSL VPN connection (login and OVPN file) in a VPN gateway. His goal is for various machines on multiple networks on his end to access my network through this VPN gateway. The vendor is able to reach my network from the gateway…
    • over 1 year ago
    • Sophos Firewall
    • Discussions
  • Configuring dual WAN IP with an SSL VPN client

    Karthik P
    Karthik P
    we have to Dual WAN with static IP- refer to below screenshot 118.189.XXX.XX is the primary WAN IP address. 165.21.XX.XX is the secondary WAN IP address. The problem is that SSL VPN is configured with the IP address 118.189.XXX.XX (Primary WAN)…
    • over 1 year ago
    • Sophos Firewall
    • Discussions
  • Create SSLVPN user certificates without user portal

    SebastianMies
    SebastianMies
    Hi, is there any way to generate the "per user certificates" used for SSLVPN without logging in to the userportal as an admin? Users are AD users. We have a big SSLVPN rollout and this would help us to do this much faster. Regards, Sebastia…
    • over 1 year ago
    • Sophos Firewall
    • Discussions
  • Firewall single Official IP with NAT causes SSLVPN not to work

    Markus Steinbauer
    Markus Steinbauer
    Hi everybody, I have done an Update from SFOS 18 to SFOS 19 and since the Update I am not able to connecto to SSLVPN any more. In CLI I can see that all incomming Packets are dropped for SSLVPN when running ( drop-packet-capture "port 1194"). But…
    • Answered
    • over 1 year ago
    • Sophos Firewall
    • Discussions
  • When will SSL VPN Users need to re-download configs?

    Janek Haessler
    Janek Haessler
    Hello, we are currently testing 2FA with our XG v 19.0.1 and also some VPN changes. Now every user has to download his personal config file from the user portal so he can connect. Is there a KB or something else where it is written WHICH option(s…
    • over 1 year ago
    • Sophos Firewall
    • Discussions
  • Use Remote Access SSL VPN to reach 4 different internal networks

    Peter Zima
    Peter Zima
    Hello, We convert the configuration from UTM 135 to XGS 136 and we have one Problem with Remote Access SSL VPN and sNAT. With the UTM we have a C2S SSL VPN for Homeoffice users to the main office (1). The main office has 3 additional S2S connections…
    • Answered
    • over 1 year ago
    • Sophos Firewall
    • Discussions
  • SSL VPN Routing Questions

    tomrgsd
    tomrgsd
    So I have SSL VPN setup and working. I need to know if there is a way to create specific routes for VPN traffic. We have an internal application that resolves to a Public Range, but our internal router has a route statement to send that instead to an…
    • over 1 year ago
    • Sophos Firewall
    • Discussions
  • Sophos XGS SSL-VPN .ovpn files wrong output

    itdept-wehrship
    itdept-wehrship
    Dear all, We are struggling with the generated .opvn Connection files users can download from the user portal on the WAN ports for VPN we do not know and cannot find it in the online help, how they are created. our setting: XGS 3100 Firewall, Firmware…
    • Answered
    • over 1 year ago
    • Sophos Firewall
    • Discussions
  • Access application on local subnet without login through SSL VPN connection

    John245
    John245
    Did set up a SSL VPN connection (Clients are in the 10.81.0.0/16 range.. Using an iOS device as client and could connect to my network in the 192.168.1.x range. Due to the fact that I'm not on the same subnet the application requires me to login again…
    • Answered
    • over 1 year ago
    • Sophos Firewall
    • Discussions
  • BUG? cant change vpn settings

    Regex
    Regex
    Hello. Ive got SSL-VPN on SophosXR Home. I wanted to make some changes and i just cant. its showing an error which is weird - false positive? Red arrows are fields that i wanted to change ERROR
    • Answered
    • over 1 year ago
    • Sophos Firewall
    • Discussions
  • Security Hearbeat over SSL VPN doesn't work

    Gianluca Maistri
    Gianluca Maistri
    We have 2 XGS 2300 (HA mode) with firmware 19.0.1 MR365, We tried to configure a rule for ssl vpn user with option "Block client without heartbeat" checked". Rule matchs also for clients wihout endpoint installed. We tried KB-000038254 without luck…
    • over 1 year ago
    • Sophos Firewall
    • Discussions
  • Powershell add and remove Users in SSL VPN Policy via API (Enable/disable SSL VPN Policy)

    Niklas Degel
    Niklas Degel
    Hi, I want to to add and remove Users to/from an existing SSL VPN Policy using an API call on the XG via Powershell. I am using SFOS 19.5.0 GA. The API Documentation and some code I've found online are not very helpful. Can anybody tell me how…
    • over 1 year ago
    • Sophos Firewall
    • Discussions
  • Add fingerprint remotely

    mohammed albarraq
    mohammed albarraq
    Hi How to add fingerprint device to server remotely using by sophos vpn
    • Answered
    • over 1 year ago
    • Sophos Firewall
    • Discussions
  • o serviço openvpn não está disponível

    Administrador TI Notável
    Administrador TI Notável
    Bom dia pessoal Tenho um notebook que tem o Windows 8.1 e ele nao conecta a VPN. Alguem ja passou por isso ? Sabem como resolver ?
    • over 2 years ago
    • Sophos Firewall
    • Discussions
  • SSLVPN logs no longer showing source IP Address since upgrade from 18.5.4 to 19.0.1

    LHerzog
    LHerzog
    Hey, since we upgraded from SFOS 18.5.4 to 19.0.1 we can no longer see the source IP a SSL VPN user connected from in the VPN logs. It simply shows nothing or the LAN IP Address of the Firewall in the SSL VPN IP-Range. We only see the real source…
    • Answered
    • over 2 years ago
    • Sophos Firewall
    • Discussions
  • SSL VPN Connection Report

    Dan Kirk
    Dan Kirk
    With WFH scenarios being commonplace now, how can I generate a report to show when a user connected, how long, and from where? The basic SSL VPN reporting only shows data transfer.
    • Answered
    • over 1 year ago
    • Sophos Firewall
    • Discussions
  • Microsoft 365 users migration for SSLVPN authentication

    Madhusudhana Y1
    Madhusudhana Y1
    I have xgs116 appliance and microsoft365 licenses. I would llike to config sslvpn ; with micrososft 365 license authentication to access on premise network. Please help to config
    • over 2 years ago
    • Sophos Firewall
    • Discussions
  • Sophos XG 18.5.3 and SSL VPN

    Matthew LaComb
    Matthew LaComb
    Trying to lab up and describe an upgrade process (outage windows and user impact) for some firewalls. I have 2 XG310s in HA and have done the following: 1. Assigned static LAN and WAN addresses; added LAN2LAN rule (with lan/vpn source to lan/vpn dest…
    • Answered
    • over 2 years ago
    • Sophos Firewall
    • Discussions
  • Sophos XG v17.5 - SSL VPN wont communicate with Subnet

    xAdminx
    xAdminx
    Hello, I just moved our servers to Expedient yesterday (subnet 10.137.6.x) and I successfully created the VPN tunnel from our office (subnet 192.168.0.x) to Expedient and everything is working great. My issue is that our SSL VPN users (subnet 10.81…
    • Answered
    • over 2 years ago
    • Sophos Firewall
    • Discussions
  • SSL VPN ISSUE Version - SFOS 19.0.1 MR-1-Build365

    NOC F1SOFT
    NOC F1SOFT
    SSL VPN ISSUE Version - SFOS 19.0.1 MR-1-Build365 VPN is connected but Issue faced. 1 . SSL VPN Gateway Is reachable. 2 .Network that are in sophos Firewall are reachable (Port-1 -- 192.168.100.1/24 -- Server = 192.168.100.10/24) Interface IP address…
    • over 2 years ago
    • Sophos Firewall
    • Discussions
  • VOIP Issue with Sophos SSL VPN

    AHMED SHATA
    AHMED SHATA
    Dears Good Day. We have CUCM in our company. and internally we use desktop phones plus softphones (Cisco Jabber). without any problem but when we try to use SSL VPN, it's connected and I can reach all servers and files. When I try to use the softphone…
    • over 2 years ago
    • Sophos Firewall
    • Discussions
  • DNS request for internal resources

    malachite
    malachite
    Hello everyone, I need to get some SSL VPN users to a server with a local URL ("">">http://myurl.local"). The steps I followed: 1) My Xgs2300 has the two domain controllers and google's dns as its dns server 2) Configured a VPN policy only for these users…
    • over 2 years ago
    • Sophos Firewall
    • Discussions
<>