• Sophos XGS MFA OTP scan QR Code Loop

    VTH
    VTH
    Hello, we use a XGS 2300 SFOS 19.5.3 MR-3-Build652 and I activated MFA for my account. When I login I can scan the QR code and I can see that a token is generated but everytime I log in it says that the QR code is unused and I should scan it again…
    • 9 months ago
    • Sophos Firewall
    • Discussions
  • Subscription renewal - expiry today - will it really apply the renewal license bought automatically?

    LHerzog
    LHerzog
    A XG license expires today. I have received the Renewal Certificate. Central Licensing and XG licensing show the subscription will expire today. Expiration date of current subscription is Feb 22. Renewal Start date is Feb 23. Looks like a…
    • Answered
    • 10 months ago
    • Sophos Firewall
    • Discussions
  • No logs after SSD firmware update

    InfoCha
    InfoCha
    Hi, we updated the SSD firmware last week and we no longer have any logs on the reports. Do you have this problem? We hadn't seen it but since the update it's impossible to have logs in the reports. We are on a XGS3100 (SFOS 19.5.3 MR-3-Build652) HA…
    • 10 months ago
    • Sophos Firewall
    • Discussions
  • Failed to send firewall information from device to CM

    LHerzog
    LHerzog
    Do I need to worry about such messages in System Live Log? Time,Log comp,Status,Username,Message,Message ID, 2024-02-02 10:38:53,Central Management ,,,Failed to send firewall information from device to CM,17918, 2024-02-02 09:53:52,Central Management…
    • 10 months ago
    • Sophos Firewall
    • Discussions
  • RDP freezes for 5-10 seconds

    VTH
    VTH
    So we have a pretty new XGS 2300 and we have some cases where we connect to our customers servers over an Ipsec Site-to-Site tunnel with RDP. the tunnel is stable but sometimes the remote desktop session freezes for a short time. I looked into the…
    • 10 months ago
    • Sophos Firewall
    • Discussions
  • Can’t route self-generated packets

    Rodrigue GRIMAUD
    Rodrigue GRIMAUD
    Hello, I work on 2 Sophos XG on 2 different sites. They communicate with each other using a Site-to-Site IPSec VPN. Site A : Sophos-XGS 33100 (SFOS 19.5.3) Site B : Sophos-XG 330 (SFOS 19.5.3) 3 subnets of Sophos A are configured to be able…
    • 10 months ago
    • Sophos Firewall
    • Discussions
  • Failed Backup on Sophos Firewall 19.5.3 - Status 500 - Failed to take database dump

    wilsonS
    wilsonS
    Hi all, first time posting. Generally Sophos Firewall and previously the UTM has been running fine for me. But recently I was trying to upgrade to the 20.0 version of the Sophos Firewall on my Sophos Firewall Home license. Unfortunately the upgrade…
    • 10 months ago
    • Sophos Firewall
    • Discussions
  • Outgoing openvpn connection through SophosXG: Constant disconnects and Transport error inovpn log

    SenorChang
    SenorChang
    Hello, i have yet again a strange error. We have some clients in our network that use openvpn connections with Openvpn client is v3.4.4.3. They can connect successfully and have mostly 1-2 Disconnects, but now constantly disconnects to the target. I…
    • 10 months ago
    • Sophos Firewall
    • Discussions
  • Sophos XGS 2100 cluster reboots itself

    EdgeFour
    EdgeFour
    Hello, in the last weeks our XGS2100 Firewall cluster rebooted itself a few times - and there's no real pattern. Without warning I receive this email: Dear Administrator, You are receiving this auto-generated message from Sophos Notification System…
    • 10 months ago
    • Sophos Firewall
    • Discussions
  • Disallow some clients on LAN to use backup gateways

    Alejandro Sanchez
    Alejandro Sanchez
    Hello everyone. I am running Sophos Firewall SFVH (SFOS 19.5.3 MR-3-Build652) I have a primary fiber internet connection and a 4G connection as a backup gateway. This is set to enable when the primary connection fails. I want to disallow Internet…
    • 10 months ago
    • Sophos Firewall
    • Discussions
  • VPN IPsec Tunnel mit Internetzugang über eine Firewall

    Wolfgang Ritter1
    Wolfgang Ritter1
    Hallo Ich habe zwei Firewalls Head Office (Bach) und Filiale (Dornbirn) XG135 SFOS 19.5 Die WAN und Router Adressen sind in der Grafik nicht real. Bach: Ist hinter einem router welcher im bridge mode arbeitet. Das WAN interface ist nicht direkt…
    • 10 months ago
    • Sophos Firewall
    • German Forum
  • Sophos xg 330 web console blank white screen

    Remi Bergeron
    Remi Bergeron
    Build version : SFOS 19.5.3 MR-3-Build652 We can't access the web console, the screen just stays white. We can't connect via Sophos central either.
    • 10 months ago
    • Sophos Firewall
    • Discussions
  • Open VPN client is connected but no packets are running

    Dennis Kirschner
    Dennis Kirschner
    Hello, We have the OpenVPN client running on various Android phones that connects to an XGS 116w (SFOS 19.5.3 MR-3-Build652). The whole thing worked without any problems until a few days ago. Since then, some - not all - devices can successfully open…
    • 10 months ago
    • Sophos Firewall
    • Discussions
  • Peer administration on other port then MGMT

    FloRa
    FloRa
    We have XGS4500 active-passive cluster and i stubled across a pretty annoying issue. In the past (with XG450 and others) we always set the peer administration address to something that allowed us no monitor the auxilary device via our monitoring solution…
    • Answered
    • 11 months ago
    • Sophos Firewall
    • Discussions
  • How to allow guest user for accessing internet and connect to their office using Cisco AnyConnect VPN

    Robby Sirwaturai
    Robby Sirwaturai
    I have a dedicated VLAN in our network and a dedicated AD username for guest users. I am not using Sophos wireless network, I use another brand wireless network. I am using SFOS 19.5.3 Every time my guest users browse the internet after logging into…
    • 10 months ago
    • Sophos Firewall
    • Discussions
  • Use HO Internet for a specific Application Only

    CreateShare
    CreateShare
    Hi, Can branch users use Head Office Internet only for a specific application instead of routing the whole internet traffic? IPSEC Tunnels connect both offices. Thanks.
    • 11 months ago
    • Sophos Firewall
    • Discussions
  • Problem mit Auxiliary nach Failover

    Arne Göttner
    Arne Göttner
    Hallo zusammen, frohes Neues Euch. Ich bin in dem Bereich Sophos noch neu und komme von pfSense. Ich habe mir die Sophos OVA heruntergeladen und in der VMWare importiert und soweit alles eingerichtet. Nach dem dann alle Regeln übernommen wurden, hab…
    • Answered
    • 11 months ago
    • Sophos Firewall
    • German Forum
  • Caching Web Content XGS4500 (SFOS 19.5.3 )?

    Timm Buse
    Timm Buse
    Hello, I have a problem with our Firewall. We have a service Provider who takes care of our website, which is hosted by them. When they do any changes on the website, I cannot see these changes while connected to the internet through our firewall. If…
    • Answered
    • 11 months ago
    • Sophos Firewall
    • Discussions
  • XGS SSD Firmware - others also having issues HA nodes not coming up?

    LHerzog
    LHerzog
    I started the SSD firmware update KB-000045380 on XGS136 HA A/P Cluster. First I applied the update to the AUX node 2. It was successful and the machine re-entered the cluster and A/P cluster was all green in the end. I switched the PRI HA node from…
    • Answered
    • 11 months ago
    • Sophos Firewall
    • Discussions
  • OpenVPN SSL Peer Certificate Verification Error

    JeffCooper
    JeffCooper
    Hi, We have a XGS2300 (SFOS 19.5.3 MR-3-Build652 with an SSL Remote Access VPN with OpenVPN clients. Not sure if this was a Sophos or OpenVPN issue but I had to start somewhere. I had a user call last last night with a Peer Certificate Verification…
    • Answered
    • 11 months ago
    • Sophos Firewall
    • Discussions
  • HA pairing issues

    Jimmy10
    Jimmy10
    Hi, I have a SFV4C6 (SFOS 19.5.3 MR-3-Build652) running standalone as a VM, and I need to HA pair it. I am unable to find an SFV4C6 image to use, does this mean I am unable to HA this existing appliance?
    • 11 months ago
    • Sophos Firewall
    • Discussions
  • IPS Log Messages: Anomaly - Removed the urgent flag and pointer in TCP header / Enforces IPS protection

    philbert
    philbert
    For some time, we get the following IPS Log Messages: Example 1 2024-01-16 12:12:20 IPS messageid="06001" log_type="IDP" log_component="Anomaly" log_subtype="Detect" ips_policy="" ips_policy_id="0" fw_rule_id="140" fw_rule_name="x1" fw_rule_section…
    • Answered
    • 11 months ago
    • Sophos Firewall
    • Discussions
  • Sophos XG 19.5.3 - mails stuck in queue

    techno.kid
    techno.kid
    I'm moving from UTM to XG and are still in the "learning phase" to understand the new concept. Nevertheless, right now I'm absolutely desperate, because of outgoing emails (XG used as relay with SmartHost) are stuck in the "Mail spool" and I'm not able…
    • 11 months ago
    • Sophos Firewall
    • Discussions
  • WiFi "Separate Zone" - what happens to Broadcasts / mDNS?

    LHerzog
    LHerzog
    We have a AP55C WiFi with separate Zone configured on XG 19.5.3 Communication between connected clients is allowed It was required to have a new firewall rule created -> from that network -> to that network -> for any service Only with that rule…
    • 11 months ago
    • Sophos Firewall
    • Discussions
  • IPSec site-to-site Reauthentication

    osterhagen
    osterhagen
    How do I enable reauthentication for site-to-site IPSec connections ? Sophos XGS3100, SFOS 19.5.3 MR-3-Build652
    • 11 months ago
    • Sophos Firewall
    • Discussions
  • View related content from anywhere
  • More
  • Cancel
<>