• Application filter keeps getting overwritten

    FAAC Inc
    FAAC Inc
    Hello. After importing some firewall rules from another XGS3300 running 19.5.0 over the weekend, each morning I'm coming in to find that we can't access the internet. When I check the application filter for "Block high risk (Risk Level 4 and 5) apps"…
    • Answered
    • over 1 year ago
    • Sophos Firewall
    • Discussions
  • SGX l2tp problems, next problem

    Lennart Johansson
    Lennart Johansson
    Hi, after some testing I got the ip-sec part to connect but now I recive a error in l2tp. "<l2t-1|94> received netlink error: Invalid argument (22)", I did some searching and it might be related to hw acceleration. But I don't know how to disable…
    • over 1 year ago
    • Sophos Firewall
    • Discussions
  • Retry sending mails with status error in main spool

    Markus Ottmann1
    Markus Ottmann1
    Hi communiy, after a failed update of avira antivirus pattern last monday incoming mails remained with status error in mail spool: We have fixed the pattern issue by starting the update manually, but the mails remains in mail spool -> Error. We…
    • Answered
    • over 1 year ago
    • Sophos Firewall
    • Discussions
  • Bug: SSH keys disappear when Admin has 2-Factor authentication enabled

    LHerzog
    LHerzog
    There may be a bug in SFOS regarding SSH keys. we noticed on 2 different SFOS firewalls, one XG430 (SFOS 19.0.1 MR-1-Build365) and one XGS136 (SFOS 19.5.1 MR-1-Build278) that SSH Keys you add here: after you have enabled Multi Factor Authentication…
    • over 1 year ago
    • Sophos Firewall
    • Discussions
  • 19.5 and FIPS

    nf
    nf
    Received new XGS FW's and decided to upgrade to latest version, then tried to turn on FIPS...command doesn't exist? Support is telling me that its only available in 18.5? really? so does that mean we cant upgrade, ever? and if we can, does that mean…
    • over 1 year ago
    • Sophos Firewall
    • Discussions
  • Cannot set the "preferred primary device"

    LeonardoM
    LeonardoM
    Good morning, I have two clusters of XGS 2100 in HA (Active-Passive) running with the firmware version 19.5.0 GA-Build197. As per object, I am not able to set the preferred primary device on both the clusters. The error message is always the same: …
    • over 1 year ago
    • Sophos Firewall
    • Discussions
  • Configure Failover (active and backup wan interfaces) on XGS Firewall V19.5

    Alejandro Hernandez2
    Alejandro Hernandez2
    Hellow I am following this configuration for failover: https://docs.sophos.com/nsg/sophos-firewall/19.0/Help/en-us/webhelp/onlinehelp/AdministratorHelp/Routing/Gateways/RoutingConfigureGatewayBalancing/index.html I want to be sure if there is…
    • over 1 year ago
    • Sophos Firewall
    • Discussions
  • Use DHCP Options concerning WDS for PXE Boot

    Prateek Singhal
    Prateek Singhal
    Hello Community Members, Hope all is well on your end. I would like your support concerning PXE boot when the DHCP services are provided by SFOS Firewall. My WDS/PXE server is on a different VLAN and the laptops/desktops are on a different VLAN…
    • over 1 year ago
    • Sophos Firewall
    • Discussions
  • Will SOPHOS Be Adding User Support for Web browsing from Azure AD for Web Filtering

    James Gaydusek
    James Gaydusek
    We are currently using SOPHOS for our Firewall. We would like to tie it into our Azure AD. Since we had issues with RW, we will not put in a AD server on premise and according to Microsoft that AD was going to be phased out and Azure AD was going to be…
    • over 1 year ago
    • Sophos Firewall
    • Discussions
  • SSL VPN Static IP address results in route issues.

    SethAkasuna
    SethAkasuna
    Hello there, When i have the static IP Address disabled in my SSL Global Config it works fine, the firewall can reach all the devices connected through VPN. The issue comes when I enable the Static IP Address in SSL VPN Global Config, When I assign…
    • Answered
    • over 1 year ago
    • Sophos Firewall
    • Discussions
  • strongSwan Vulnerability (CVE-2023-26463)

    Alan Brand
    Alan Brand
    Has this been addressed in 19.0 MR2 or 19.5 MR1? Didn't find it in the Release Notes regarding IPsec.
    • Answered
    • over 1 year ago
    • Sophos Firewall
    • Discussions
  • How to block all youtube videos from a specific channel

    Web Master2
    Web Master2
    How to block all youtube videos from a specific channel on 19.5
    • over 1 year ago
    • Sophos Firewall
    • Discussions
  • Bridge configuration load stuck

    Tams
    Tams
    Hey, I am stuck with removing an interface from br0 on XG115w (SFOS 19.5.0 GA-Build197) I was trying to remove one interface from br0 and apply changes. Now I can not edit any details of the br0, the UI stuck in an infinite load cycle when I open…
    • over 1 year ago
    • Sophos Firewall
    • Discussions
  • QR code missing in SFOS 19.5.0

    itguy318
    itguy318
    Upgraded from 18.5 to 19.5 recently and found that i am unable to view user / admin QR codes under the authentication / one time password section. If a user changed a phone or lost, we would usually login to XG and see the QR code and scan it on the user…
    • Answered
    • over 1 year ago
    • Sophos Firewall
    • Discussions
  • XG 19.5.0 GA ....Can only download TLS/SSL ApplianceCertificate as .PEM format, not CER, DER or pkcs#12

    alan weir
    alan weir
    Using XG 19.5.0 GA. I can only download the ApplianceCertificate as a *PEM. file. I am certain it was letting me choose the other formats once before. Now the only file format it allows to download is default.pem and appliancecertificate.pem which cannot…
    • Answered
    • over 1 year ago
    • Sophos Firewall
    • Discussions
  • Windows Updates fail due to "HTTP parsing error encountered"

    alan weir
    alan weir
    XG 19.5.0 GA. I am attempting to run windows update however the update cannot complete. The web filter log is showing "HTTP parsing error encountered". Windows updates are excluded from HTTPS scanning, zero day protections, and policy checks as the…
    • Answered
    • over 1 year ago
    • Sophos Firewall
    • Discussions
  • Upgrade to 19.5 caused a DNS issue

    Jimmy10
    Jimmy10
    Hi, I have recently tried to upgrade one of our Sophos XG430 to 19.5 from SFOS 19.0.1 MR-1-Build365 but had to immediately roll it back due to issues. The issues were that we could no longer browse to other network devices via DNS name, we have to…
    • over 1 year ago
    • Sophos Firewall
    • Discussions
  • SASI high CPU usage

    Patrick Wolfensberger
    Patrick Wolfensberger
    Hi there! I'm currently runnin g on SFVH (SFOS 19.5.0 GA-Build197) and notice a very high CPU usage caused by the SASI service. I tried to turn off Anti-Spam in my E-Mail profile, but it didn't change. TOP: Control Center: The only thing…
    • over 1 year ago
    • Sophos Firewall
    • Discussions
  • Strange issue with MS Always-on-VPN

    jmangan
    jmangan
    I've recently moved to Sophos XG (SFOS 19.5.0 GA-Build197) and I've got an odd issue with Always-on-VPN. My work machine (Windows 10 20H2) uses this to c onnect to the office but it has stopped working (It was working initially after the move from…
    • Answered
    • over 1 year ago
    • Sophos Firewall
    • Discussions
  • Sophos Connect Losing Connections/Profiles

    ptho
    ptho
    We've moved to Sophos Connect and have found that some of our users are losing their connections in the app. For instance, as part of a software deployment, we will push Sophos Connect and the Provisioning File to the client with an automatic import…
    • over 1 year ago
    • Sophos Firewall
    • Discussions
  • Ping between IPSec Tunnel Site-to-Site

    Miguel Monteiro
    Miguel Monteiro
    Hello guys, I have IPsec Tunnel Site-to-Site with this lans: 192.168.22.0/24 192.168.26.0/24 On the lan 26.0 i need to reach 1 machine and that machine got the ip 192.168.22.140. On diagnostic of firewall i can ping that machine but on CMD…
    • Answered
    • over 1 year ago
    • Sophos Firewall
    • Discussions
  • AD Authentication configured but users not allowed to login

    Enrico Zhan
    Enrico Zhan
    Hi to all Sophos Community, I was wondering if you had any idea on this problem. First time using Sophos firewalls, mostly working on them via Sophos Central Web Admin. So I enabled IPSec VPNs, it does work with local created users. Company asked…
    • Answered
    • over 1 year ago
    • Sophos Firewall
    • Discussions
  • XGS on 19.5.0 and SNMP Interface ID

    Col Haisell
    Col Haisell
    Hi, We use SNMP to monitor interface utilisation on a XGS 107 [firmware 19.5.0]. The XGS recently lost power and the SNMP Interface ID number changed when the power was restored. My SNMP server had to rescan the XGS to learn the new SNMP Interface ID…
    • over 1 year ago
    • Sophos Firewall
    • Discussions
  • Sophos XGS 116 loses WAN connection after a few hours of normal operation

    David FM
    David FM
    In our production environment we have replaced our old firewall with a Sophos XGS 116. We have replicated the rules we had in our old firewall and everything seems to be going well: our applications are accessible, we can manage our databases... in short…
    • over 1 year ago
    • Sophos Firewall
    • Discussions
  • Web User notification customization - cannot change top and footer images

    LeonardoM
    LeonardoM
    Good afternon, I have two clusters of XGS 2100 running with the latest firmware ( 19.5.0 GA-Build197 ). As per object, I am not able to change the top and footer images of the Web User notification. I tried both with JPG and JPEG (8-bit), respecting…
    • Answered
    • over 1 year ago
    • Sophos Firewall
    • Discussions
<>