Hi,
We have an IPSec s2s connection, and there is a remote subnet 10.0.0.0/255.255.255.0.
Migration was done with configuration export/import and it seemed almost everything migrated successfully (only some firewall rules involvind ad users where…
Guten Morgen SOPHOS-Community, wir verwenden bei uns in der Firma schon lange gerne den "NCP SecureEntry VPN Client" - Ein beständiger stablier IPsec-VPN-Client, der vorallem wie wir es brauchen übersichtlich sehr viele verschiedene Einwahlen beherbergen…
2 XGS connected via ISP PTP fiber as primary.
Each XGS has a second ISP which will be used for a IPSEC tunnel in case the primary link fails.
Currently OSPF is in use.
I have a IPSec VPN between 2 XGS using a tunnel. Both XFRM interfaces are 192…
Hello,
I have a strange issue on site to site VPN between two Sophos XG firewall. The site to site VPN was built with class C subnets as below.
Site A - 192.168.1.0/24
Site B - 192.168.8.0/24
The sophos XG firewall generated VPN rule on top permit…
Disclaimer: This information is provided as-is for the benefit of the Community. Please contact Sophos Professional Services if you require assistance with your specific environment.
Table of Contents
Overview
Product and Prerequisites …
Hey All,
I've created an IPsec tunnel between my Sophos XG unit and a Meraki. On the Sophos unit, the "Connection" dot is yellow and when I click for more info, it shows that only one of two subnets is accessible.
Clearly, the IPsec settings are correct…
Hello, everybody! Got a quick question for the experts out there.
I'm trying to set up an IPsec VPN Failover Group between two XGS firewalls, HQ and Branch, each with two WAN connections. I created 4 tunnels (two for each WAN connection) and added them…
Hallo zusammen, folgendes Thema bescheert uns aktuell graue Haare.
Eventuell etwas Offtopic.
Folgender Aufbau: 2 Internet Anschlüsse Kabel BW Business mit Fritz!Box Cable als Gateway. Dahinter die Sophos XGS.
Hinter der Sophos befindet sich eine…
Hi all
I have a site where the XGS2100 is currently set to authenticate against the local AD Domain Controller. The DC is planned to move off-site and so the XGS will need to authenticate to the DC via IPSEC - the DC will be hosted behind an OpnSense…
Hi all,
I have a working IPSec tunnel from my Sophos XG to my UniFi UDM at a remote site. I have many VLANS at the remote site. The XG can connect to the UDM default VLAN, but not any others. Does anyone have experience with this? Thanks!
Hello,
I have setup a site to site IPsec VPN between a Sophos XG (Responder) & a DrayTek (Initiator) router. Everything is working as it should apart from a disconnection every so often. I believe this has something to do with the re-key event that…
Buenas,
necesito ayuda, porque no consigo por mis medios..
La SubredLocal la llamaremos Subred1
Tengo un Sophos XG, que esta conectado a otro host a través de una IPsec "Interfaz de Tunel", la llamaremos Subred2.
Luego tengo usuarios que se conectan…
Greetings,
We've set up a Site to Site VPN in our Main and branch office, they were active but we're still unable to ping the ip address from the main. Can anybody help me with this?? or any configurations i need to check please? thank you.
The information provided by clients is as below
From our admin side, we already amended the information such as local subnet and remote subnet as below except the interface wan1
Do we need to match the interface also? We do not know how…
We have a configuration with out 30 tunnel interfaces to remote workers. These use static routes. On 5 or so of these configurations when the VPN tunnel reconnects the main firewall loses the routes. They still exist in the GUI, but in the CLI they are…
Hello everyone,
I have successfully established an IPSec site-to-site connection between a SOPHOS XGS firewall and a RUT240 from Teltonika.
A ping from the Teltonika router to the SOPHOS firewall works. A ping to an end device behind the SOPHOS firewall…
I'm having issue with my IPSEC-site-to-site connection. The IPSEC vpn cannot be established. Im having error " unable to resolve %any, retrying in 60s" when checking the strongswan.log
Here is the full logs:
loading secrets from '/_conf/ipsec/ipsec…
I have setup IP-Sec between head office and branch office few days back. My branch office is working perfectly fine and accessing all the resources on the head office but on the other hand when i try to access or ping any resource on branch office from…
Hi All,
We have a question in Full tunnel site to site IPsec VPN. When we create a local 192.168.183.50/32 to remote Any site to site IPsec VPN.
We found that XG's own routing will also be carried out through this VPN tunnel.
There…
Hi, maybe a dumb question but what does the command really do?
Maybe it is because of my special setup with the BO firewall tunneling all traffic to the HO firewall. But as far as I understood the - very well hidden - comparison whenever I want to do…
Hello, I need someone to help me across the road: I have a IPSec Tunnel (networks are just examples): Local network 192.168.100.0 /24 <-> Remote network 192.168.200.0 /24 I have also additional local networks: 192.168.1.0 /24 192.168.2.0 /24 192.168.3…
Hallo,
ich nutze in meinem privaten Umfeld die Sophos XG Firewall Home Edition und frage mich nun, ob die Home Edition Lizenz es einem gestattet, eine site-to-site VPN Verbindung zu einem Unternehmensnetzwerk aufzubauen, um sich per Remotedesktop…
Hello,
I have 2 branch offices that are connected to the head office via VPN
, now I want to connect these 2 offices to each other using the head office as a forward node, is that possible? if so please explain how
PS: The branch offices don't have…