• XGS FW HA Mode (active-passive) turned of SIP ALG

    Speedfish
    Speedfish
    Hello, I just got a quick question about the replication behavior of HA mode. We just turned off the SIP ALG module on the active XGS FW. So now I wonder if the same module is turned off on the passive XGS? Side question can I connect with ssh to the…
    • Answered
    • over 1 year ago
    • Sophos Firewall
    • Discussions
  • Missing Heartbeat - HA nodes showing different computers

    LHerzog
    LHerzog
    Just wondering, I have an 19.5.3 HA cluster Node 1 shows 5 computers with missing heartbeat. 2 are over 100 days old. Now after switching HA nodes manually (Node 2 manually rebooted first) Node 2 shows only 3 computers, all are older than 100…
    • Answered
    • over 1 year ago
    • Sophos Firewall
    • Discussions
  • Namen der Nodes im HA (active<->passiv) wichtig?

    Cengiz Pirasa
    Cengiz Pirasa
    Hi, wir sind aktuell dabei, ein active-passive Cluster für uns einzurichten (XGS136). Das funktioniert auch wunderbar. Wir wechseln von einer UTM9 (SG230). Ich Frage mich allerdings, ob der hostname der Nodes wichtig ist? Bei der UTM haben wir…
    • over 1 year ago
    • Sophos Firewall
    • German Forum
  • Firmaware Upgrade in HA mode

    Vaibhav Patil
    Vaibhav Patil
    Hi everyone, Currently we have Sophos xg 230 in our network and it is HA. Our Primary fw is (Active) and Secondary is Auxillary (passive). So I want to update firmware of Sophos XG 230 which is already in HA mode, So what should I do or what will…
    • Answered
    • over 1 year ago
    • Sophos Firewall
    • Discussions
  • XG310v3 HA Active/Standby site-to-site VPN connections, 19.5.3. Unable to edit, delete or change status.

    Esa Salminen
    Esa Salminen
    Figured as since I cannot find anyone else experiencing this issue, wanted to highlight this here if it helps someone else or if Sophos want to investigate themselves. FW type, config and version in subject. TLDR: Disable HA if you experience issues with…
    • over 1 year ago
    • Sophos Firewall
    • Discussions
  • Sophos XG in HA Active-Active requirements

    l0rdraiden
    l0rdraiden
    Just to confirm HA requirements - Sophos Firewall DHCP and PPPoE: When the interfaces are dynamically configured using DHCP or PPPoE, the following applies: Active-active mode: Not supported. Active-passive mode: Supported, but session failover…
    • over 1 year ago
    • Sophos Firewall
    • Discussions
  • Cancelar renovação de licença / Cancel license renewal

    Cristhiano Maffei Gomes1
    Cristhiano Maffei Gomes1
    Boa tarde / Good afternoon Preciso de uma maneira de cancelar a aplicação de uma nova licença/subscrição no firewall Sophos XG em HA, pois devido a manutenção dos servidores de licenciamento meu firewall não mantém acesso via GUI e CLI. I need a…
    • Answered
    • over 1 year ago
    • Sophos Firewall
    • Discussions
  • Sophos HA works for the first failover test, but not subsequent tests

    Craig Glaser
    Craig Glaser
    I'm trying to lab out a Sophos XG HA under a three server VMware cluster. DRS and HA are disabled on the VMWare cluster. XG Firewall A is on VMware Server 1 XG Firewall B is on VMware Server 3 VMWare server 2 is not relevant to this issue. Both…
    • over 1 year ago
    • Sophos Firewall
    • Discussions
  • Greylist synchronization

    Jos Verhallen
    Jos Verhallen
    Hello, Yesterday we have upgraded a Sophos XGs cluster to firmware 19.5.3 MR3-build652 and we noticed that one of the 2 nodes was greylisting e-mails coming from addresses that have e-mailed this organization in the past. Once we failed the nodes over…
    • Answered
    • over 1 year ago
    • Sophos Firewall
    • Discussions
  • XG HA Cluster Peer Addministration IP

    IT GW
    IT GW
    Hallo Community, in unserem XG Cluster haben wir aktuell die Peer Administration IP auf einen Port der nicht im LAN hängt. Unser Lan ist historisch bedingt auf einer Bridge mit 3 Ports. zweimal physikalische Ports und eine SD Red 60. Da uns eine der…
    • Answered
    • over 1 year ago
    • Sophos Firewall
    • German Forum
  • Sophos XGS HA-Link Port Swap

    Gerd Rehders1
    Gerd Rehders1
    Hi, I have to change the HA link port for a customer. The reason is that it is to be upgraded to fibre I have no physical access to the HA cluster! Is there a good way to do this, or is it (as I fear) necessary to dissolve the HA cluster and create a…
    • Answered
    • over 1 year ago
    • Sophos Firewall
    • Discussions
  • Active-Passive But Offline and without HA

    JeffCooper
    JeffCooper
    Hi, we have an XGS2300, two actually. We got a second when we bought it and HA is included. I have never implemented HA, as I'm rather cautious and would rather only update firmware on one machine, let it run for a while, then a week or so later, update…
    • over 1 year ago
    • Sophos Firewall
    • Discussions
  • Sophos XGS firewall v19.5.2 HA over different Data centers

    Muhammad Abdullah Siddiqui
    Muhammad Abdullah Siddiqui
    Hi, We are trying to establish HA between our Head office and DR Firewall appliances. We have layer 2 connectivity between these sites. Kindly confirm is this scenario achievable. Regards, MAS
    • Answered
    • over 1 year ago
    • Sophos Firewall
    • Discussions
  • Several problems with HA cluster

    kerobra
    kerobra
    Hi team, I noticed a strange thing about our own XGS-HA cluster today. One device wasn't checked in in Central (status "Auxiliary device status: Couldn't get the registration details. The device is offline.") although the HA status page shows everything…
    • Answered
    • over 1 year ago
    • Sophos Firewall
    • Discussions
  • split-brain prevention in HA

    FFin
    FFin
    Is there a specific description of step SOFS uses to detect and prevent an primary-primary split-brain situation in active-passive HA when ha-link goes down? I cloud not find any details on this within sfos technician training documents. But i remember…
    • over 1 year ago
    • Sophos Firewall
    • Discussions
  • HA Setup - Why doesn't it auto accept a second firewall into the HA

    Steve Klassen
    Steve Klassen
    When you are setting up a pair of firewalls in an HA setup, under SFOS, you have to fully set up both firewalls to link them, which immediately wipes the second firewall and syncs it to the first. Very tedious. On the UTM devices, you'd set up the first…
    • over 1 year ago
    • Sophos Firewall
    • Discussions
  • RMA device has to be replaced || SOPHOS XG 550 || Initial configuration for RMA device

    Joy Joy1
    Joy Joy1
    Hello All, I need suggestion but before that I would like to tell you my queries what I have ? I have two Sophos XG 550 Firewall and both Firewall in A-A cluster with quick HA mode, One of the Firewall got faulty in cluster (A-A). We have received…
    • over 1 year ago
    • Sophos Firewall
    • Discussions
  • Two SG310's in HA

    Brad McDonald
    Brad McDonald
    Hello, I'm really really new to Sophos Firewalls. We have a process that we follow for change management and a recent firmware update for two HA FW's is available for install. Can someone give me some pointers on the following Request for Comments…
    • over 1 year ago
    • Sophos Firewall
    • Discussions
  • Sophos XG550 High availability || Active-Active mode ||

    Joy Joy1
    Joy Joy1
    Hi All, I have two firewall in A-A mode, tried to upgrade firmware from 19.0.1 to 19.0.2 MR release, the moment I tried to upgrade firmware of Sophos firmware, Primary device got hanged and auxiliary device showing faulty. Then I rebooted primary…
    • over 1 year ago
    • Sophos Firewall
    • Discussions
  • HA neu einrichten, wie am besten

    StefanS
    StefanS
    Hallo zusammen, wir haben hier aktuell eine XG230 mit SFOS 19.0.1 MR-1-Build365 in Betrieb. Diese soll gegen zwei XGS-2300 im HA ersetzt werden, wie geht man da am besten vor und gibt es hier aktuell Anleitungen dazu ? Danke und Gruß Stefan
    • over 1 year ago
    • Sophos Firewall
    • German Forum
  • XG Home VMware Active-Passive question

    Craig Glaser
    Craig Glaser
    So I've decided to try and set up a second firewall in my home VMWare cluster as a passive device, and as far as I can tell they are both set up correctly (see image below). However, when I go into VMWare and disconnect the WAN link from the active firewall…
    • over 1 year ago
    • Sophos Firewall
    • Discussions
  • No internet in sophos HA Active/Active mode

    Debabrata D
    Debabrata D
    We have 4 firewalls deployed in two HA clusters (active-active). ISPs are connected with WAN FW Clsuter and internal users are connected with LAN FW Cluster, internal users can ping the internet but are unable to access the internet. If I shut down…
    • over 1 year ago
    • Sophos Firewall
    • Discussions
  • BUG: unable to handle kernel NULL pointer dereference at 00000000000018

    Marcel Bro
    Marcel Bro
    Hallo, erst einmal ein paar Infos zu meiner Umgebung: - virtualisierte XG auf Proxmox 8.0.3 (4 CPUs, 6GB RAM) im HA active-passive Mode - Board auf dem die primäre Firewall läuft: Odroid H3 Völlig zufällig (mal nach ein paar Stunden oder ein…
    • over 1 year ago
    • Sophos Firewall
    • German Forum
  • High Availability

    Anesu Dangarembwa
    Anesu Dangarembwa
    Good day Is it possible to configure High Availability? on Sophos XG 210 and XGS 2100
    • over 1 year ago
    • Sophos Firewall
    • Discussions
  • Misleading information: additional HA monitoring ports

    Quallensaft
    Quallensaft
    https://doc.sophos.com/nsg/sophos-firewall/19.5/help/en-us/webhelp/onlinehelp/HighAvailablityStartupGuide/HAConfiguration/HAQuickHAConfigureActivePassive/index.html#configure-ha-on-the-auxiliary-device (Optional) Select ports to be monitored : You can…
    • Answered
    • over 1 year ago
    • Sophos Firewall
    • Discussions
  • View related content from anywhere
  • More
  • Cancel
<>