• Multicast Traffic Forwarding over IPSec vpn

    Randy Cleveland
    Randy Cleveland
    We are trying to forward multicast traffic for 239.1.1.2 between our Main Site to one of our remote sites via a Site-to-Site IPSec VPN connection. I have following the instructions here: https://support.sophos.com/support/s/article/KB-000038580?language…
    • Answered
    • 7 months ago
    • Sophos Firewall
    • Discussions
  • IPSec tunnel interface for same interface WAN and remote adress 0.0.0.0

    Guilherme Silva1
    Guilherme Silva1
    Hello, Is there a way to configure a VPN tunnel interface scenario, using the same WAN interface to receive the connection from remote points? In this case, I have only 1 internet link on site A with a fixed IP, and I have several remote branches…
    • 7 months ago
    • Sophos Firewall
    • Discussions
  • IPSEC XG Failover

    admin_idl
    admin_idl
    Hello, We have set up an IPSEC connection and want to set up a failover. We have checked the connection of the backup IPSEC connection and the tunnel could also be established. However, if we use the IPSEC connection in a failover group as backup IPSEC…
    • 7 months ago
    • Sophos Firewall
    • Discussions
  • NOT RECEIVING THE INCOMING TRAFFIC FROM VPN TUNNEL

    Jackson Awe
    Jackson Awe
    Hello guys, I really need your help i am facing the challenge since am not receiving the traffic from remote machine i have attached the captured traffic and denied logs from the specific machine....i can reach the remote machine by ping and telnet…
    • 7 months ago
    • Sophos Firewall
    • Discussions
  • IPSec to Azure

    Chris Wood
    Chris Wood
    Hello! We are an MSP with about 20 clients that have servers hosted in Azure. These 20 clients have various hardware models of Sophos XG and XGS firewalls with various steps of firmware from 19.5.3 to 20.0.22. Those firewalls have an IPSec site to site…
    • 7 months ago
    • Sophos Firewall
    • Discussions
  • Can't access Admin GUI unless I SSH first

    Rich Grodzicki
    Rich Grodzicki
    I have two home deployments of Sophos Firewall v20, one at home and one at a family vacation home. I've set up VPN, routes, and rules between without issue. But the strangest issue that I can't seem to resolve is that with the vacation home the Admin…
    • Answered
    • 7 months ago
    • Sophos Firewall
    • Discussions
  • IPSec Site-to-Site VPN Local Subnet Becomes Unreachable due to Inactivity

    Ex4
    Ex4
    Hello, I'm experiencing the exactly same problem as the guy in this (sadly locked) thread: IPSec Site-to-Site VPN Local Subnet Becomes Unreachable due to Inactivity As the thread ends with him contacting the support and no real solution, I was…
    • Answered
    • 7 months ago
    • Sophos Firewall
    • Discussions
  • Site-to-Site VPN Issues

    Alan Spark
    Alan Spark
    I am testing a new XGS 136 (SFOS 20.0.0 GA-Build222) offsite to replace an onsite XG 135 ( SFOS 19.0.2 MR-2-Build472). The backup of the XG 135 was used to setup the XGS 136. We have never used the IPsec Site-to-Site connection before but may have a…
    • Answered
    • 7 months ago
    • Sophos Firewall
    • Discussions
  • GRE TUNNEL TUNNEL GETTING PRECEDENCE OVER OSPF

    KEITH ZONGORO
    KEITH ZONGORO
    Hello, I'm currently managing an XGS Sophos firewall at our headquarters, and we have a dual ISP setup connecting to branch offices. Our primary ISP uses **OSPF**, while the secondary ISP relies on a **GRE tunnel. The challenge arises when I add a…
    • 8 months ago
    • Sophos Firewall
    • Discussions
  • Side to Side VPN zwischen Fritzbox und Sophos hinter einer Fritzbox

    Dennis Marschall
    Dennis Marschall
    Hallo zusammen, ich habe ein Problem beim Aufbau der Side to Side VPN Verbindung (IPsec) zwischen einer Fritzbox und meiner Sophos, welche hinter einer Fritzbox hängt. Der Aufbau sieht folgendermaßen aus: Beide Fritzboxen nutzen DDNS Dienste, da…
    • Answered
    • 8 months ago
    • Sophos Firewall
    • German Forum
  • VPN SITE TO SITE

    Patricio Gómez
    Patricio Gómez
    HELLO GOOD AFTERNOON DO YOU KNOW WHY THE VPN CANNOT CONNECT AND I AM CHECKING THE RULE BUT THERE IS TRAFFIC AND THIS IS THE RULE
    • 8 months ago
    • Sophos Firewall
    • Discussions
  • Porblem xgs ipsec

    piddae
    piddae
    Hallo liebe communitytäter, Ich habe ene Frage zum IPSEC: Folgende Konfiguration: UTM direkt am Internet XGS hinter einer NAT normales DSL. Wenn auf der XGS die IP wechselt kein Problem die Verbindung bleibt bestehen. UTM Initiator XGS Responder…
    • Answered
    • 8 months ago
    • Sophos Firewall
    • German Forum
  • VPN IPsec site to site between Sophos and Seqrite UTM

    Sunit Thakur
    Sunit Thakur
    I have created VPN IP Sec between Sophos xg136 and Seqrite Terminator UTM after some time vpn auto disconnted and send below log error. And manually have to conect. Couldn't parse IKE message from 47.X.X.X[38049]. Check the debug logs. Traffic…
    • 8 months ago
    • Sophos Firewall
    • Discussions
  • branch office VPN on brand new firewall

    Petr Odvarka1
    Petr Odvarka1
    Hello, this is not question. Just one experience which surprised me. I got new firewall for customer which used XG platform. Made migration of configuration and due to terms of old licence I was in hurry with implementation. I noticed that new firewall…
    • 8 months ago
    • Sophos Firewall
    • Discussions
  • Sophos Home to replace Arista Home Pro

    James Pifer
    James Pifer
    Hello. I'm looking at replacing my current Arista Home Pro with Sophos Home. A couple important features I use are TunnelVPN and Bypass. Can Sophos do a site-to-site vpn to Torguard ? Can you control access through the VPN by rules, ie source address…
    • 8 months ago
    • Sophos Firewall
    • Discussions
  • SNMP monitoring IPsec and vpn Tunnel traffic

    SETRA ANDRIAMPARAMALALA
    SETRA ANDRIAMPARAMALALA
    Is there any way to use SNMP to monitor traffic flow through an IPsec tunnel? I'm successfully capturing port traffic with SNMP but would also like to capture the traffic between our two sites via an IPsec tunnel.
    • Answered
    • 8 months ago
    • Sophos Firewall
    • Discussions
  • help to configurate IPSec VPN sophos xgs136

    Davide Filippi
    Davide Filippi
    Hello everyone, I need help setting up an IPsec VPN. My provider gave me these parameters: Remote Gateway: <public address A> Subnet: <range of public addresses B> Phase1 and Phase2 parameters that I know it have to match Firewall XGS136 I…
    • 8 months ago
    • Sophos Firewall
    • Discussions
  • Site-to-Site VPN Problem Invalid SPI

    Trio Fandi
    Trio Fandi
    Hi, We are using Sophos Firewall XG310 , SFOS v20. It's been 4 month we have established Site-to-Site VPN, and today suddenly our connection is Down with many " Received IKE message with invalid SPI (D3EED417) from the remote gateway " log messages…
    • Answered
    • 8 months ago
    • Sophos Firewall
    • Discussions
  • SNAT over ipsec not working XGS2100

    Akshay Hegde
    Akshay Hegde
    I am referring this post with similar issue DNS request to DNS over Site2Site VPN I have below setup XG310 -- branch office XG430 -HA -- Head office Now I got XGS2100 - 2nd branch office ( Gateway local ip: 172.16.1.100 ) XGS2100 …
    • Answered
    • 9 months ago
    • Sophos Firewall
    • Discussions
  • Azure Pfsense 23.09.1 site to site ipsec to on prim sophos SFVH (SFOS 20.0.0 GA-Build222)

    James Sweeney
    James Sweeney
    For a few days now I have been attempting to get a ipsec site to site between these two firewalls and even have the pro customer support pfsense involved. All there suggestions have been unsuccessful in getting the two to talk to each other. all guides…
    • 9 months ago
    • Sophos Firewall
    • Discussions
  • VLAN in a IPsec Tunnel randomly stop communicating.

    sifikelo mkhungo
    sifikelo mkhungo
    Hello I recently upgraded my Sophos XG 2300 to SFOS v20 which is in Head Office, where I am running site to site vpn: IPsec tunnels to 6 branch offices and IPsec Profile is set to Head Office, policy based for all IPsec Tunnels on Head Office firewall…
    • 9 months ago
    • Sophos Firewall
    • Discussions
  • IPSec ID Sophos - Cisco

    TobiasSchubert
    TobiasSchubert
    Hallo, wir haben eine IPSec-VPN-Verbindung zwischen Sophos und Cisco aufgebaut. Auf dem Cisco Router sollte als ID die Key ID verwendet werden: Diese Konfiguration gibt es aber auf der Sophos nicht: Die Konfigurateionen sind dann auch nicht…
    • 9 months ago
    • Sophos Firewall
    • German Forum
  • Site-to-Site VPN

    Domenico Frei
    Domenico Frei
    Hi, I have a constellation with a site-to-site VPN between a Sophos XGS116 and a Sonicwall TZ400 at a customer's. The connection between the two devices keeps breaking down. On the Sonicwall you can also see that the VPN tunnel has been disconnected,…
    • 9 months ago
    • Sophos Firewall
    • Discussions
  • Can’t route self-generated packets

    Rodrigue GRIMAUD
    Rodrigue GRIMAUD
    Hello, I work on 2 Sophos XG on 2 different sites. They communicate with each other using a Site-to-Site IPSec VPN. Site A : Sophos-XGS 33100 (SFOS 19.5.3) Site B : Sophos-XG 330 (SFOS 19.5.3) 3 subnets of Sophos A are configured to be able…
    • 9 months ago
    • Sophos Firewall
    • Discussions
  • on Sophos Firewall, if I update and regenerate the default CA, what are the implications?

    Callum Roseneder1
    Callum Roseneder1
    On Sophos Firewall, if I update and regenerate the default CA, what are the implications? I have a firewall that is setup, the default CA hasn't been customised so far. I need to setup a S2S IPsec VPN with certificates and wanted to customise this before…
    • 9 months ago
    • Sophos Firewall
    • Discussions
  • View related content from anywhere
  • More
  • Cancel
<>