• XG 18.5.2 howto Skip TLS negotiation and verify?

    juergenb52
    juergenb52
    Hi, i need to Skip TLS negotiation for a email adress/domain. I already tried to add a FQDN-Host Entry like smtp.recipient.de and the IP-Host with the corresponding MX IP-Adress here. It´s still not working. What would be the correct setup? …
    • over 2 years ago
    • Sophos Firewall
    • Discussions
  • Firewall in MTA mode not sending out mails

    EdmundSackbauer
    EdmundSackbauer
    hi all, since about a day, my firewall Home edition 18.5.2 is not sending out any mails anymore. It seems it cannot connect to the smtp servers of the domains it tries to send to. Oddly enough, I can telnet from the firewall advanced console into…
    • Answered
    • over 2 years ago
    • Sophos Firewall
    • Discussions
  • enable/disable MTA SMTP debug at XG 18.5.2

    juergenb52
    juergenb52
    Hi, i found some information on enabling smtpd debuging. I want to know the command to enable debuging and disabling debuing for a XG 18.5.2 running in MTA mode. I have one mail receipient, where we can´t send any mails and i want to get more debug…
    • Answered
    • over 2 years ago
    • Sophos Firewall
    • Discussions
  • Bounced emails on our mail?

    Riccardo Magrini
    Riccardo Magrini
    Hi, I'm using our Sophos SFV4C6 (SFOS 18.5.1 MR-1-Build326). Everything works fine except for an bounce mails from/to our mail (supporto@.....) This emails is bouncing but I don't really know why..... Does anyone have a suggestion for me? thanks…
    • over 2 years ago
    • Sophos Firewall
    • Discussions
  • Blocking TLD in XG firewall Email

    Joedy1
    Joedy1
    Hi I came across several discussions that have been locked but not answered. How do you block a TLD in the XG firewall as you could do it in the UTM without any issues?
    • over 2 years ago
    • Sophos Firewall
    • Discussions
  • SMTP Data Time out message abandoned

    Hans_Dampf
    Hans_Dampf
    mails from xx.xxx.58.4 / 123@123.de to me Sophos XG 330 192.168.xx.xx bigger than ~5 MB will be failed. 2022-01-24 11:43:38.584 [4663] SMTP connection from [xx.xxx.58.4]:11902 I=[192.168.xx.xx]:25 (TCP/IP connection count = 1) 2022-01-24 11:43…
    • over 2 years ago
    • Sophos Firewall
    • Discussions
  • SendGrid as smarthost - failed in server_plain_authentication

    BartJen
    BartJen
    Hi All! My ISP recently decided to block outgoing port 25. I've always used O365 as smarthost to relay e-mail, the downside is that O365 only supports port 25 for relaying to external recipients hence I am in need for a different solution. I've reverted…
    • Answered
    • over 2 years ago
    • Sophos Firewall
    • Discussions
  • All email in Mail spool failed with "no route to host" using O365 as smarthost in MTA mode

    BartJen
    BartJen
    Hi everyone! In my home lab running Sophos XG Home I've configured Email running as MTA using O365 as smarthost. (I'm using the MX endpoint as smarthost FQDN per this description ). This setup has worked for years, somehow it broke and I'm unable to…
    • Answered
    • over 2 years ago
    • Sophos Firewall
    • Discussions
  • 2 questions with MTA mode email protection

    Shunze Lee
    Shunze Lee
    Hi All, I have 2 questions with MTA mode email protection. Inbound email protection need SMTP route & scan policy to route incoming mails to the internal mail server. And outbound email protection need SMTP route & scan policy to encrypt mail with…
    • over 2 years ago
    • Sophos Firewall
    • Discussions
  • Disabling TLS 1.1 within SMTP TLS configuration

    Steve Scotter
    Steve Scotter
    Hi, We've a XG230 running SFOS 18.5.2 MR-2-Build380 During a recent external pen test it's been reported our externally available SMTP service is supporting TLS 1.1 which is a risk because Numerous vulnerabilities have been found in TLS Version 1…
    • over 2 years ago
    • Sophos Firewall
    • Discussions
  • Sophos XG Home with mailbox.org / smtps / imaps - sending, receiving and scanning

    TheBigGreen
    TheBigGreen
    Hello there, first of all, let me short introduce myself: i am a sophos XG Home User since the weekend. I believe the Sophos XG is a fine solution for every home user. i even would pay for it, even for support. i am using a simple micro-system with…
    • Answered
    • over 2 years ago
    • Sophos Firewall
    • Discussions
  • MTA Backup Mail Server to Internal Email Server over RED Tunnel

    IanR999
    IanR999
    I have had a site-site VPN link to/from my inlaws for simple NAS backups and running backup email MTA for about 5 years now. both XG firewalls have just been updated to SFVH (SFOS 18.5.2 MR-2-Build380), however since the update the SSL Site-Site VPN…
    • Answered
    • over 2 years ago
    • Sophos Firewall
    • Discussions
  • Close port 25 for MTA

    Bart van der Horst
    Bart van der Horst
    I've got a customer with an XG310 firmware 18.5.1. They have the MTA fully in use but they like to have there mail delivered on port 587. So i changed the auto added firewall rule, and that is working well. Mail is coming from there antispam provider…
    • Answered
    • over 2 years ago
    • Sophos Firewall
    • Discussions
  • Problem with SPF; some mails not blocked; only Return-Path checked and not From-Field?

    Julian F
    Julian F
    It looks like SPF check is working only on the return-path. Proved by: I can see external messages in the email log, which a blocked via spf (faking our domain as sender). However, there are other messages, which have our domain in the from field (mail…
    • over 3 years ago
    • Sophos Firewall
    • Discussions
  • Mailscanner process uses 100% CPU (stuck emails in spool)

    cscheps
    cscheps
    Hello, We use a Sophox XG210 with firmware SFOS 18.5.1 MR-1-Build326 (no update available when checked) For a week now I have regular warnings from Sophos Central that our CPU is pegged at 100% I have 3 mails stuck in spool that I am unable…
    • over 3 years ago
    • Sophos Firewall
    • Discussions
  • Sophos XG - delete all quarantined file

    Stefan N
    Stefan N
    Hello, I can't see a soulution in https://community.sophos.com/sophos-xg-firewall/f/discussions/129765/sophos-xg---delete-all-quarantined-file/476812#476812 We also have so much mails to delete. To show only 20 per page and delete them, will…
    • Answered
    • over 3 years ago
    • Sophos Firewall
    • Discussions
  • any way to monitor sophos xgs mailspool length ?

    Robert Bude
    Robert Bude
    Hello, is there a way to monitor xgs mailspool externaly for using in checkmk or nagios or similar ? i checked the web api, but there is nothing for displaying stats , seems to be only for setting things https://docs.sophos.com/nsg/sophos-firewall…
    • over 3 years ago
    • Sophos Firewall
    • Discussions
  • Sophos Email Gateway delivery to XG hiccup this morning?

    Fred_B
    Fred_B
    This morning around 7:50 our XG started logging: system " Failed to send firewall information from device to CM" and around this time the XG stopped receiving and delivering e-mail from and to Sophos Email Gateway. And log: SYSTEM 2021-11-22 08:48…
    • over 3 years ago
    • Sophos Firewall
    • Discussions
  • Exchange IMAP

    Ihenock
    Ihenock
    HI All My exchange server works fine in version 17 and I upgrade to V18 and I couldn't send or receive email from outside my network. what would be the possible problem and how can I solve it
    • over 3 years ago
    • Sophos Firewall
    • Discussions
  • Mail being rejected after evaluated as sender being blacklisted

    Peter-Paul Gras
    Peter-Paul Gras
    Since yesterday (10-21-2021) i've noticed that a lot of emails, that used to pass, are being rejcted based on the evaluation that the senders ip has been blacklisted. Has anyone else have the same experience? SFOS 18.5.1 MR-1-Build326 Device acts as…
    • over 3 years ago
    • Sophos Firewall
    • Discussions
  • Firewall and NAT Policies for Internal Mail Server

    Deva Giri
    Deva Giri
    Hi, In our network infra we have 2 ISP configured on 2 interfaces of XG-210. Our Web Server and Mail Server is hosted in LAN Zone and the mail server is natted with WAN 2 IP address. The websites works fine but we are unable to sned or receive any…
    • over 3 years ago
    • Sophos Firewall
    • Discussions
  • Options for replacing an XG SFOS 18.5.1 with something that can send email reliably?

    MarkThornton
    MarkThornton
    I'm reaching the end of my ability to deal with my XG firewall. Came from a working UTM that expired. The XG just cannot/will not reliably relay email from internal servers to the internet. Messages keep hanging and Sophos tech support keeps deleting…
    • over 3 years ago
    • Sophos Firewall
    • Discussions
  • Sophos XG Email Protections - high amount of false positive Blacklist

    Samuel Heinrich
    Samuel Heinrich
    we are currently seeing high amounts of false positive blacklist hits, although none of the IPs is actually blacklisted. SFOS 18.0.4 MR-4 here are a few examples, of IPs which not blacklisted but got rejected. 194.56.219.38 194.56.219.33 …
    • over 3 years ago
    • Sophos Firewall
    • Discussions
  • Sophos XG und Spamhaus DROP List

    TerryNeumann
    TerryNeumann
    Hallo zusammen, wir haben bei der Präsentation einer OPNsense Firewall gesehen, das hier dynamische IP Blockierlisten von bekannten Schadservern eingebunden werden können und so der Zugriff auf diese IPs verboten ist. Kann die Spamhaus DROP Liste (…
    • over 3 years ago
    • Sophos Firewall
    • Discussions
  • SOPHOS XG is sending Junk/Spam email out

    Ahmad
    Ahmad
    i have XG125 (SFOS 18.5.1 MR-1-Build326), it is configured in MTA mode. email server is placed in LAN. from last four days i am continously seeing in sophos in logs that someone who is not from my domain is as sender and recepient is also random, in mail…
    • over 3 years ago
    • Sophos Firewall
    • Discussions
  • View related content from anywhere
  • More
  • Cancel
<>