• Sophos XG 330 - Best Practice for WAN to LAN Firewall Rule

    Desmond Besa
    Desmond Besa
    Hi Guys, Sorry for the Noob question. I am still pretty new to Sophos. Do you guys have a best practice on how to properly lock down a firewall esp the WAN to LAN and LAN to WAN Firewall Rule? Appreciate all the help from this really responsive…
    • Answered
    • over 7 years ago
    • Sophos Firewall
    • Discussions
  • How can I set up web access via PROXY PORT only?

    Someone7272
    Someone7272
    After a year, I've decided to try Sophos XG again. Currently using UTM 9.5 - which has its issues, but works well. I am trying to find out how to force all web requests through the proxy port. Sadly, I'm not getting far with Sophos XG. If I add a…
    • over 7 years ago
    • Sophos Firewall
    • Discussions
  • Integrate Aruba WCL 7010 with XG 230

    dbachour
    dbachour
    Greetings, Trust you are doing well, We are building our network from scratch. For the Wi-Fi part, we are going to use Aruba WCL 7010. 4 VLANs created, each one for separate SSID. for example: 1- VLAN1: 192.168.1.0/24 2- VLAN2: 192.168.2.0/24…
    • Answered
    • over 7 years ago
    • Sophos Firewall
    • Discussions
  • XG210 - Access to FTP Server from Outside Works, Then Doesn't

    Patrick Coy
    Patrick Coy
    Moved over to the XG this weekend from a SonicWALL NSA4500. I'm in the office and connecting to my laptop via Teamviewer. I had a connection around 11AM this morning and announced to everyone that the FTP was back up. By 11:30 I had to announce that it…
    • Answered
    • over 7 years ago
    • Sophos Firewall
    • Discussions
  • SFOS 16.05.4 MR-4 - HTTP Redirection Not Working

    Fernando Colon
    Fernando Colon
    HTTP redirection feature for a firewall rule is no longer working after upgrade to SFOS 16.05.4 MR-4. Any HTTP requests that match the particular rule are supposed to be automatically redirected to a HTTPS request, but that it is not happening. The HTTP…
    • over 7 years ago
    • Sophos Firewall
    • Discussions
  • PureMessage won't update spam rules

    Kassenärtzliche Vereinigung Baden Württemberg
    Kassenärtzliche Vereinigung Baden Württemberg
    Hi there, since a few weeks now we've got the problem, that PureMessage won't update its spam rules. We've opened two different tickets and talked to different Sophos supporters but both told me, that "it must be a problem with our infrastrucutre…
    • over 7 years ago
    • PureMessage (Read Only)
    • Discussions
  • No Notification in RealTime scanning Mode

    FormerMember
    FormerMember
    Good day, today I switched to Realtime scanning in Web>Protection>MalwareScan mode. Now the downloads are much faster, but when I try to download EICAR Testfile, there is no "Virus Found" Notification. The file won't be downloaded, but I only…
    • Answered
    • over 7 years ago
    • Sophos Firewall
    • Discussions
  • Cannot connect server to ssl gmail. Invalid Traffic

    Marcos Osorio
    Marcos Osorio
    Hi, i have a server behing a xg135, behind it a server who i want to connect to gmail to make a smtp conecction. I configured a rule, no filters, only masq lan to wna, but does not work. On the log i obtain this: 2017-05-17 16:02:36 …
    • over 7 years ago
    • Sophos Firewall
    • Discussions
  • Traffic Shaping Policy set to "User's policy applied"

    Brian Emke
    Brian Emke
    I'm missing something. I have several firewall rules that have had their traffic shaping policy setting change to "User's policy applied" but I cannot find where this setting is coming from. So I don't know what traffic shaping is being applied. Since…
    • Answered
    • over 7 years ago
    • Sophos Firewall
    • Discussions
  • Drag and Drop Firewall Rules on XG works poorly.

    Dean Jones
    Dean Jones
    I've started to build a few firewall rules in Sophos XG. The drag and drop function seems to be very hit-and-miss. I can click on the icon and get the mouse cursor to change to a 4-way arrow but then when I click to drag it just starts highlighting text…
    • Answered
    • over 7 years ago
    • Sophos Firewall
    • Discussions
  • IP phones over MPLS link can't communicate

    Kevin Stark
    Kevin Stark
    Here is my issue: I have a two sites connected via MPLS link Site A 192.168.2.0 Site B 10.0.0.0 Site A IP phones can't communicate with the IP Phone Controller (10.0.5.1) located at Site B IP routes have been created on XG to route traffic…
    • over 7 years ago
    • Sophos Firewall
    • Discussions
  • Share between two lans

    Aristides Guirrengane
    Aristides Guirrengane
    Hello A have configured on cyberoam cr50ing two subnets Lan1 192.168.2.0/24 with dhcp Lan2 192.168.0.2/24 with dhcp How can i set to comunicate this two lans each other? I can't see or share file for one lan to another.
    • Answered
    • over 7 years ago
    • Sophos Firewall
    • Discussions
  • Can not delete MAC HostRu

    ThomasHanslik
    ThomasHanslik
    I was playing around with the policy to check different combination. I´ve added a Mac host with a mac adress inside und applyed this policy. After that i delete this policy and i would delete the MAC host also but this is not possible. I can not delete…
    • over 8 years ago
    • Sophos Firewall
    • Discussions
  • Allow Teamviewer through the firewall?

    Ruben H�land
    Ruben H�land
    Hello! I've recently upgraded from UTM 9.4 to XG at home. On setup I set the default firewall policy to "Accept any service going to "WAN" zone, when in "LAN" zone, and coming from any network". This allows for a bit much in my opinion, so I disabled…
    • Answered
    • over 8 years ago
    • Sophos Firewall
    • Discussions
  • External DNS Query IssueDNS

    F. JavierLancharro Ramiro
    F. JavierLancharro Ramiro
    Hi, I have a cPanel Server with Bind Name Server behind the firewall with many hosting domains inside, websites, emails, ftp, etc. All services work correctly doing NAT with the required ports. The only problem is the DNS server (BIND). I do NAT of…
    • over 8 years ago
    • Sophos Firewall
    • Discussions
  • Auditierbarer Regelsauszug UTM 9.X

    Ster Linga
    Ster Linga
    Hallo alleseits, ich benötige einen Tipp oder besser eine Lösung für folgendes Problem. Ich benötigen einen Auszug aller Rules um sie 1. einem Auditor vorlegen zu können und/oder 2. sie in jeglicher Form zu dokumentieren. Im Zweifel auch zur Not…
    • Answered
    • over 8 years ago
    • UTM Firewall
    • German Forum
  • XG310 not detecting heartbeat after reconnect

    MichaelGombos
    MichaelGombos
    TLDR; when I take an OS X laptop off the network and bring it back on, the XG firewall doesn't detect it's heartbeat. So we've had an xg310 firewall that's been running for about two months. Whenever we turn on the heartbeat on a rule, it blocks all…
    • over 8 years ago
    • Sophos Firewall
    • Discussions
  • POS Failures

    TimFoster
    TimFoster
    Interesting issue here... We have a client that has retail stores and they use POS systems. Basically they have a POS software that talks out to another provided to process transactions. What happens is that periodically they get communication failures…
    • Answered
    • over 8 years ago
    • Sophos Firewall
    • Discussions
  • Multiple WAN ports?

    JohnDean
    JohnDean
    Forgive me, still a newbie with the Sophos XG's. I am accustomed to Fortinet, sonicwall, and watchguard appliances, so this question may be a real noob one. I have a sophos XG85 I set up, using a TDS connection for the WAN. I am migrating this site…
    • Answered
    • over 8 years ago
    • Sophos Firewall
    • Discussions
  • RE: allow torrent through sophos

    BetroHakala
    BetroHakala
    Set firewall rules to match the following: Sources : Internal (Network). Or just configure a single IP. Services: Press the '+'. I named it Torrent. 6881 (TCP/UDP). DST is ready set up to 1:65535, so leave it be. Destination: Internet IPV4 That should…
    • over 8 years ago
    • UTM Firewall
    • Web Protection: Web Filtering & Application Visibility/Control
  • Connecting Remotely to a VMware Horizon View Session Fails

    brannonhardin
    brannonhardin
    hello all, I am trying to connect remotely to another network using VMware Horizon View (PCoIP) over UDP/TCP port 4172. I have created the firewall rule to allow the traffic to go out the firewall to the remote site, but it is still showing up in the…
    • over 8 years ago
    • UTM Firewall
    • Network Protection: Firewall, NAT, QoS, & IPS
  • priority is zone or network?

    Ahmad SyafiqAhmad Dzahari
    Ahmad SyafiqAhmad Dzahari
    Hi sophos team, I just want to confirm that if i create a rule is zone LAN to zone DMZ and network is (GF)10.10.0.0 to (SERVER)192.168.1.1/32 is that same with zone ANY to zone ANY and network is (GF)10.10.0.0 to (SERVER)192.168.1.1/32? the priority…
    • over 8 years ago
    • Sophos Firewall
    • Discussions
  • Sophos UTM 9 double NAT

    lenyick
    lenyick
    I am new to this and just finding my way around setting up utm/firewalls i have a 2 firewall setup an internal sophos utm 9 ffirewall and an external firewall The internal firewall sophos utm 9 is setup where all computers and mobile devices are behind…
    • over 8 years ago
    • UTM Firewall
    • Network Protection: Firewall, NAT, QoS, & IPS
  • BitTorrent Speed and Default DROP

    MarkKiss
    MarkKiss
    HI, I have set NAT an FW to allow bittorrent use port 35951 (TCP/UDP) all looks ok but at live FW log i see lot of DROPs at this port 19:03:28 Default DROP TCP 178.40.178.147 : 50762 → WAN IP : 35951…
    • Answered
    • over 8 years ago
    • UTM Firewall
    • Network Protection: Firewall, NAT, QoS, & IPS
  • Country Blocking Not Working for a WAN > LAN Rule

    Timothy Stewart
    Timothy Stewart
    Hi. It seems like country blocking is not working for WAN -> LAN (or any other protected network behind XG Firewall). I have tested this with a proxy in the blocked countries. I have this rule at the top of the list and network traffic still passes…
    • over 8 years ago
    • Sophos Firewall
    • Discussions
<>