• DNS Resolution slow using Connect 2.0 and IPSec VPN connection

    AllanD
    AllanD
    We have a ongoing issue with Sophos Connect 2.0 and IPSec VPN connections where DNS resolution is extremely slow at first and sometimes never resolves itself. For example a user connects to the VPN and then tries to open a network drive then gets a error…
    • over 2 years ago
    • Sophos Firewall
    • Discussions
  • Disable DNS services

    XSupport
    XSupport
    Hi, We have the Sophos XG and XGS UTMs behind an other firewall (not controlled by us). However the admin of that other firewall complains about a lot of DNS traffic coming from our Sophos. we tried dropping any DNS traffic from within the Sophos and…
    • over 2 years ago
    • Sophos Firewall
    • Discussions
  • Sophos XG NAT for essential services.

    Alpha Beta
    Alpha Beta
    Hello all I want to create NAT + Access rules for DNS and NTP so any UDP 53 and UDP 123 traffic targetted for WAN gets redirected to internal servers. Can anyone suggest how that can be achieved? Thanks A
    • over 2 years ago
    • Sophos Firewall
    • Discussions
  • Connect client VPN internal DNS issue on IOS

    PeteH
    PeteH
    We have moved over a customer from SSL vpn to IPSEC connect client vpn but now when they use the built in VPN on an Apple iphone it looks like they arent receiving the DNS server IP that is specified in the IPSEC remote access section on the Sophos XG…
    • Answered
    • over 2 years ago
    • Sophos Firewall
    • Discussions
  • V19 DNS Curiosity

    Brian1941
    Brian1941
    I have my XG106 with v19 GA behind my XG125 with v18.5.2 MR2 for home testing. The only thing connected to the XG106 is the WAN link which feeds into a port on the XG125. The strange thing is I see in the XG125 logs is that the XG106 is making multiple…
    • over 2 years ago
    • Sophos Firewall
    • Discussions
  • DNS Rewrite

    Matthew LaComb
    Matthew LaComb
    Looking to have a sophos firewall at an edge site perform a DNS rewrite as it sees the request come through for specific non-owned remote sites. Can this be done? I've done this previously on the Check Point platform, but am not finding a specific place…
    • over 2 years ago
    • Sophos Firewall
    • Discussions
  • mDNS/DNS-SD Routing between subnets

    Paul McGinnie
    Paul McGinnie
    Short version: is there a way to propagate mDNS/DNS-SD advertising from one subnet/zone/vlan to another? Long version: (notes added at end 10/5/22) Running own hardware with SPOS 18.0.6 Build 655. I wish to segment my network, with some “dodgier…
    • over 2 years ago
    • Sophos Firewall
    • Discussions
  • DNS times out when using Quad9 as provider

    Rieski
    Rieski
    We are seeing a lot of timed out DNS requests when using Quad9 as DNS provider. Timeout does not happen when we use Quad9 directly on windows/linux hosts but only when we use it trough Sophos XG FW. Is the DNS query timeout set so aggressive on XG…
    • over 2 years ago
    • Sophos Firewall
    • Discussions
  • Aufbau von webseiten mit Verzögerung - warum?

    Aerioeus
    Aerioeus
    Hi, ich bin neu in der Sophos Welt und habe bisher folgende Config aufgesetzt: Sophos Firewall Model: XGS126 mit diversen APX 120 Access points. Das ISP Signal kommt von Vodafone Kabel Deutschland über eine Fritzbox 6660 im Bridge mode. Das Signal…
    • over 2 years ago
    • Sophos Firewall
    • Discussions
  • XG 18.0.6 Logging of NAT Rules and DNS activity

    Paul McGinnie
    Paul McGinnie
    Running XG 18.0.6 on my own hardware. Short version: How do you log activity of: a) DNAT rule which diverts DNS to the Sophos LAN Port b) The DNS service itself I can do some packet capture, but the logging tool seems to ignore a DNAT rule terminating…
    • over 2 years ago
    • Sophos Firewall
    • Discussions
  • migration from UTM and availablity groups

    maxsecobj
    maxsecobj
    HI Well were finally on out migration fromUTM to XG. First thing I;m got a question is the availabity groups on XG. Any way you can replicate the availability group functionality on XG?
    • over 2 years ago
    • Sophos Firewall
    • Discussions
  • Internet connection failed through Firewall

    Hieu Doan
    Hieu Doan
    Hello everyone, I'm pretty new to Sophos and have recently run into this problem. My setup is all in VMWare: The Sophos machine is bridged directly to the internet (WAN) and it's also connected with a Windows 10 Virtual Machine (LAN) So I expect the Windows…
    • Answered
    • over 2 years ago
    • Sophos Firewall
    • Discussions
  • SSL VPN: DNS IPv4 not released

    Andrea_e
    Andrea_e
    Hi! I've installed the client of the SSL VPN. The connection works, but the DNS ip that the Sophos (XG 125) is releasing is fec0:0:0:ffff::1%1 . Under Network -> DNS I've selected Choose IPv4 DNS server over IPv6 . I can ping Internet DNSs, but not internal…
    • Answered
    • over 2 years ago
    • Sophos Firewall
    • Discussions
  • DNS with Multiple Addresses

    JeffCooper
    JeffCooper
    Hi, If I have multiple addresses listed under a dns entry, does this act like the failover group on the UTM or a round robin DNS? The documentation makes no mention of the implications of having more than one address listed for an entry. I'm setting…
    • over 2 years ago
    • Sophos Firewall
    • Discussions
  • [Sophos Connect] DNS Problem, only reboot helps

    StefanS
    StefanS
    Hi there, Sophsos Connect v2.1.20.0309 + SophosXG 18.5.2 + Windows 10 1809 After a certain time the name resolution does not work anymore, only "nslookup". Restarting the device, this works again for a certain time. There are some problems with "sophos…
    • over 2 years ago
    • Sophos Firewall
    • Discussions
  • Unable to access specific web site

    Alain Coulibaly
    Alain Coulibaly
    Hi everybody, I have been using Sophos XG 135 for now 2 years. But i have juste noticed that from office (behind sophos firewall) we are unable to access this website bellow. - Web site: https://e-impots.gouv.ci/ - Error message : " Ce site…
    • over 2 years ago
    • Sophos Firewall
    • Discussions
  • DNS request route sub-domains

    onward
    onward
    Is there a way to make a dns request route apply to all sub-domains? Example: dns request route for domain.com would also apply to sub.domain.com and sub.sub.domain.com
    • Answered
    • over 2 years ago
    • Sophos Firewall
    • Discussions
  • Sophos XG route branch office network to Head office, Branch office Sophos XG DNS queries fail

    Alex Slinger
    Alex Slinger
    Hi All, We have a ipsec tunnel from the Branch office to the Head office. We used this KB ( https://support.sophos.com/support/s/article/KB-000035798?language=en_US ) to route traffic from a specific subnet at the branch office to the WAN of the Head…
    • Answered
    • over 2 years ago
    • Sophos Firewall
    • Discussions
  • Sophos XG reverse DNS with Windows Server

    Simplified Sam
    Simplified Sam
    Hello, we have simple setup with our network. Now we added vlans for our wifi. (multiple, one for guest , notebooks, smartphones) If i get it correct it would be much safer of security point to let the Sophos XG getting all dns request right?…
    • over 2 years ago
    • Sophos Firewall
    • Discussions
  • Delay in loading first web page only

    Mike-A
    Mike-A
    Hi everyone, I'm a long time UTM user that just made the cut over to Sophos Firewall and I've got one nagging issue that I can't figure out. The first time a user goes to browse a web page, there is a delay of 10-15 seconds or so. Once you get past that…
    • over 2 years ago
    • Sophos Firewall
    • Discussions
  • dynamic dns issue

    ChriZathens
    ChriZathens
    Hello guys! Long time UTM user, absolute newbie when it comes to XG..Anyway.. I need one specific thing. I have 3 dynamic dns hostanames. And one internal webserver. e.g. 10.10.10.1 I need to use WAF and redirect first.dyndns.com to 10.10.10.1 …
    • Answered
    • over 2 years ago
    • Sophos Firewall
    • Discussions
  • Sophos XG as DNS server doesn't respond to DNS queries on WAN interface

    Shadow82
    Shadow82
    Hi! I installed Sophos XG VM in my home and I'm testing it and probably will use it for my home net and lab. Sophos runs as a VM on my homelab server. I have 2 ubnets there: 1. 192.168.1.0/24 - called Outside wih FW WAN interface attached to it…
    • over 2 years ago
    • Sophos Firewall
    • Discussions
  • Why XG asks not configured DNS servers?

    Tomas Beran
    Tomas Beran
    Hi, noticed this behavior: - XG configured for 3 DNS servers - on upstream device only those 3 DNS servers are allowed for XG - occasionally XG sends DNS request to many other DNS servers and these are denied by upstream device - issue on 18.5.1 and…
    • over 2 years ago
    • Sophos Firewall
    • Discussions
  • XGS as DNS server: Figured it out

    Wayne Folta
    Wayne Folta
    Couldn't delete the post, so am editing it. I figured out how to add the XGS as the DNS server: in DHCP, uncheck the box to use the DNS settings and set the interface IP as the DNS server.
    • Answered
    • over 2 years ago
    • Sophos Firewall
    • Discussions
  • SSL VPN client groups with different DNS server settings

    Andrew Smith8
    Andrew Smith8
    Is it possible to setup 2 groups for SSL VPN where each group has its own DNS settings? I have 2 AD domains on my LAN and want to have clients for AD1 get the AD1 DNS servers and the AD2 clients get AD2 DNS servers. Thanks.
    • over 2 years ago
    • Sophos Firewall
    • Discussions
  • View related content from anywhere
  • More
  • Cancel
<>