• OpenSSH version upgrade

    Max Zuniga
    Max Zuniga
    Did Sophos already release a fix for these CVEs? CVE-2015-5600, CVE-2015-6563, CVE-2015-6564 CVE-2016-10009, CVE-2016-10010, CVE-2016-10011, CVE-2016-10012, CVE-2016-8858. These are considered vulnerability and what was advised to us is to perform…
    • over 6 years ago
    • UTM Firewall
    • Hardware, Installation, Up2Date, Licensing
  • Unable to SSH in to UTM but able to console in

    christofer paul
    christofer paul
    I have had and recently had an issue where after I changed the password on WebAdmin for UTM, I would not be able to ssh in but the passwords would work in console. I recently had the same issue and I simply upgraded the UTM from 9.509 to 9.510 and resolved…
    • over 6 years ago
    • UTM Firewall
    • General Discussion
  • CLI scripts

    Marion Paolo Abagar
    Marion Paolo Abagar
    Hi guys, I am fairly new with UTM and there was an issue(their log files are 100%) with one of our clients which was resolved by a Sophos Support. Here is what she said she did (yes the support is a female). >Found out that the packetfilter and…
    • over 6 years ago
    • UTM Firewall
    • Management, Networking, Logging and Reporting
  • SSH Public Key Configuration Tips, Tricks and Traps

    SamFickling
    SamFickling
    While the official Sophos article does a reasonable job of explaining the overall process of setting up SSH / Shell access using a RSA key pair, there are a number of additional details which are not obvious, yet must be correct to in order to successfully…
    • over 6 years ago
    • UTM Firewall
    • General Discussion
  • SSH Root Password Not Working

    Prakhar Jalan
    Prakhar Jalan
    Hello, For some reason, I am not able to SSH into the UTM with the root password. It always says "wrong password". What exactly am I missing here? Thanks!
    • over 6 years ago
    • UTM Firewall
    • Management, Networking, Logging and Reporting
  • Unable to ssh to standby UTM node

    Dennis Lin
    Dennis Lin
    Hi guys, I'm new to UTMs. I have 2x UTM nodes configured in HA active/standby mode. Both UTMs are hosted in vCenter and I can console into both nodes using the same crendentials of username"loginuser". However, the problem is: ssh as "loginuser…
    • over 6 years ago
    • UTM Firewall
    • General Discussion
  • How to find out Web Interface Port / Not listed in netstat (advanced shell)?!

    seroal
    seroal
    Hi all, a few days ago, I had to find out the Webinterface Port of a XG Firewall. I only had Console and SSH access (advanced shell) and the Webinterfaceport was changed by someone else to a unknown Port. I tried that, what I would do on a utm (netstat…
    • over 7 years ago
    • Sophos Firewall
    • Discussions
  • SSH Remote Shutdown for Backup

    Basti
    Basti
    Hey guys, I need a tip for my plans. I would like to shut down the firewall for a backup process via SSH on a ESXi. But after the SSH login, the prompt comes with the selection menu (Main Menu 1. Network Configuration 2. System Configuration...). How…
    • over 7 years ago
    • Sophos Firewall
    • Discussions
  • UTM 9.5 SSH Access with SSH key

    Jiri Benes
    Jiri Benes
    Hello guys, I´d like to setup SSH access with SSH key to my Sophos UTM (Home Lab) I´ve generated SSH 2 RSA 2048 key and pasted it´s public part into Authorized keys for root. After I click apply I´m getting this error :/ What am I doing wrong…
    • over 7 years ago
    • UTM Firewall
    • General Discussion
  • CLI Commands to change the Loginuser and root account DO NOT WORK

    Travis Grenell
    Travis Grenell
    I do have CLI access, and due to exteriencing this repeatedly in the past, was testing this on a brand new VM build to prove I'm not just crazy. This SERIOUSLY looks like bad documentation or a bug. In any event, the guide from here: https://community…
    • Answered
    • over 7 years ago
    • UTM Firewall
    • Management, Networking, Logging and Reporting
  • SSH - Access Denied - Wrong Credentials (but they're the right ones)

    dma0
    dma0
    Experiencing an odd problem when trying to access XG through SSH from the LAN. When I try to login, I get "Access Denied". In the logs, it says "User 'bob' failed to login from 'IP ADDRESS' using ssh because of wrong credentials". I'm using the exact…
    • over 7 years ago
    • Sophos Firewall
    • Discussions
  • cc command not found

    Tobias Rapp
    Tobias Rapp
    Hallo zusammen, ich möchte meine letsencrypt Zertifikate automatisiert in meine UTM 9 einspielen. Dazu brauch ich cc. Wenn ich mich per ssh auf die UTM schalte und >sudo cc eingebe krieg ich einen cc: command not found Hab ich was vergessen…
    • over 7 years ago
    • UTM Firewall
    • German Forum
  • Direct Link for Download Using WGET

    Joseph Stacklin
    Joseph Stacklin
    Hello. I have a shite connection at home and need to upload LSP to my VPS, but currently the only way to do this is by uploading it via FTP which simply isn't possible on my connection. Is there a way to directly download the file via ssh/wget for CentOS…
    • over 7 years ago
    • Sophos Endpoint
    • Discussions
  • SSH Bookmark Issue

    Armshouse
    Armshouse
    Hi all, I'm trying to setup an SSH bookmark to log me into the CLI of my Cisco SG300 switch by providing the username and password. When I launch the bookmark, it starts to establish the session and then I get a popup with the following: "No RSA host…
    • Answered
    • over 7 years ago
    • Sophos Firewall
    • Discussions
  • Question about SSO admin password

    Eric Fouresti�
    Eric Fouresti�
    Hello, We know that admin password for SSO link is visible clearly in HTTP printable configuration and SSH view. We know how to hide it in http printable configuration but it's still visible in SSH view. How can we hide the admin password in SSH…
    • over 7 years ago
    • UTM Firewall
    • SUM: Sophos UTM Manager App
  • Block SSH and WebAdmin facilities from a single IP address

    BenoitLambert
    BenoitLambert
    I'm getting a bunch of failed login attempts across multiple devices from a single IP address. I know there is way to limit the SSH and WebAdmin access to certain networks. I have added a firewall rule that drops packets from that IP but I'm still…
    • Answered
    • over 7 years ago
    • UTM Firewall
    • Management, Networking, Logging and Reporting
  • Sophos UTM Firewall-Livelog zeigt keine SSH-Port443 Verbindungen?

    eastfrisian
    eastfrisian
    hallo zusammen, irgendwie stehe ich auf dem Schlauch. bei der sophos kommt das ja mal vor. ich versuche derzeit einen netzwerkverkehr zu verfolgen. eigentlich geht es um die frage, ob die firewall den traffic irgendwie blockt, oder ob alle freigaben…
    • over 8 years ago
    • UTM Firewall
    • German Forum
  • Unable to enable shell SSH acces

    PowerPete
    PowerPete
    Hello, Somehow I un-checked both authentication methods - "allow password authentication" and "allow public key authentication", and saved, then disabled shell/SSH Now, I cannot re-enable SSH access (it will say "all authentication methods are disabled…
    • over 8 years ago
    • UTM Firewall
    • General Discussion
  • Connecting to firewall via Putty gives error: Network error: software caused connection abort

    PepijnDeneut
    PepijnDeneut
    Hello, I'm trying to connect to the firewall via putty but getting an error: Network error: software caused connection abort shell access is allowed:
    • Answered
    • over 8 years ago
    • UTM Firewall
    • Hardware, Installation, Up2Date, Licensing
  • Disable bad bugfix in 9.405-5 "Fix [NUTM-2840]: [AWS] UTM ignores MTU sent by DHCP server"

    Vegard77Norway
    Vegard77Norway
    Do not do this if you don't feel comfortable messing up your UTM. I'm pretty shure this voids the warranty. But my UTM is pretty useless using a MTU of 576 from my ISP. The 9.405-5 upgrade introduces a mandatory, non disable, usage of the MTU provided…
    • over 8 years ago
    • UTM Firewall
    • Hardware, Installation, Up2Date, Licensing
  • SSH no-longer working

    PBJ_Family
    PBJ_Family
    My SSH access no-longer functions. I am using plink\putty and I get FATAL ERROR: Network error: Software caused connection abort. According to Putty website this is a generic error. And indeed it seems to be because I get it from any machine on the LAN…
    • Answered
    • over 8 years ago
    • UTM Firewall
    • Management, Networking, Logging and Reporting
  • STAS Firewall with User on several machines(workstations)

    PatricBlass
    PatricBlass
    Hey, I've setuped the STAS on my DCs. User are Reported... works fine. I have a firewall rule to allow "ssh" and "ping" to one special host. (source is "USER A" and "TESTUSER B") The first workstation wich comes online, after the UTM restarts, with…
    • over 8 years ago
    • UTM Firewall
    • General Discussion
  • Shell (loginuser) access to UTM

    teched
    teched
    Sophos has recently updated the documentation for 9.4 (and this applies to prior versions as well) and it now includes the following (underline added, for emphasis): Note – Any modifications done by root will void your support. Even users not logged…
    • over 8 years ago
    • UTM Firewall
    • General Discussion
  • Will the firewall refuse to forward "private" IP address blocks?

    UserJustMe
    UserJustMe
    I tried setting up sophos today in a test environment to see how much throughput I could get, but I couldn't get far. My core network is on a 10. subnet and I setup a computer and assigned it with 192.168.2.20 subnet IP. Sophos was the router between…
    • over 8 years ago
    • UTM Firewall
    • Network Protection: Firewall, NAT, QoS, & IPS
  • Why does IPS prevent outgoing RDP and SSH connections?

    oxident
    oxident
    Hi! I'm trying to figure out why XG installation refuses LAN clients to make RDP or SSH connection to WAN servers. Whenever I try such a connection, the packet sniffer first logs a correct connection request (dest. port 3389, for example) originating…
    • Answered
    • over 8 years ago
    • Sophos Firewall
    • Discussions
<>