• DNS over TLS

    MikeyS
    MikeyS
    Apologies I know it's been mentioned before, but I'm in the process of moving from pfsense + to XG Home. Got a variety of loose ends to sort out and DNS over TLS is one of them. Is this forthcoming within the v21 release cycle? I'm sorting Wireguard…
    • 24 days ago
    • Sophos Firewall
    • Discussions
  • DNS Rebinding - Plex

    MikeyS
    MikeyS
    I’m in the process of getting Sophos XG Home as an alternative to pfsense. I’m 90% there, but is there a way to do DNS Rebinding, particularly for plex? i don’t want to open ports as I accessed everything via a VPN with pfsense and it worked perfectly…
    • 23 days ago
    • Sophos Firewall
    • Discussions
  • Sophos XG resolves external Domains even no external DNS server is configured

    dishorned
    dishorned
    Hey Guys, I am using the Sophos XG as DHCP server which provides two DNS servers. One is a Pihole and the other one is the SophosXG itself. So normally the devices should resolve internal and external domains via Pihole, but when it is not available…
    • Answered
    • 2 months ago
    • Sophos Firewall
    • Discussions
  • DNS over HTTPS and TLS.

    rfcat_vk
    rfcat_vk
    Hi folks, a question about XG ability to decode DNS over HTTPS and TLS, can the current version of XG decode DNS requests sent to it using HTTPS or than TLS? Ian
    • Answered
    • 2 months ago
    • Sophos Firewall
    • Discussions
  • No local DNS when connected to SSL VPN

    Joe Schmoe
    Joe Schmoe
    From my Android phone using openvpn and the ovpn config from my Sophos box, I can connect to my network. I can get to my servers from using their IP, but I cannot get hostnames to resolve. In System > Administration I have DNS turned on for VPN 10…
    • 3 months ago
    • Sophos Firewall
    • Discussions
  • new Sophos XGS - Webclients are unable to reach URLs but DNS works

    GernotMeyer
    GernotMeyer
    Hi all, we moved from LANcom to Sophos XGS SFOS 20.0.2. Fine so far. We migrated last night. Now it comes more and more, that some webclients are unable reach some URLs. Every clients are able to resolve every DNS name. But when putting that DNS…
    • Answered
    • 3 months ago
    • Sophos Firewall
    • Discussions
  • DNS Names do not resolve for Clients in Reports - only IPs are shown

    Peter Riederer
    Peter Riederer
    Hey Folks, while deploying one XGS after another we noticed that Client-IPs in reports e.g. aren't resolved into DNS Names like on our SG/UTM Models. We created a DNS request route: 168.192.in-addr.arpa and domain.local pointing to the internal Windows…
    • 3 months ago
    • Sophos Firewall
    • Discussions
  • UTM DNS > Global > Allowed Networks -- how to reproduce in SFOS?

    KrisJacobs
    KrisJacobs
    I am working on migrating functionality from UTM to SFOS on XGS3300 hardware. This organization subscribes to this DNS filtering service: https://www.cisecurity.org/ms-isac/services/mdbr In the UTM, it was easy to bottleneck DNS queries so they are…
    • 3 months ago
    • Sophos Firewall
    • Discussions
  • dns server on XG106

    maxime verron
    maxime verron
    hello, Can I have a detailed procedure to configure my sophos xg106 as a dns server ? Thanks
    • Answered
    • 3 months ago
    • Sophos Firewall
    • Discussions
  • External web site does not open.

    Antonio Ferreira1
    Antonio Ferreira1
    Hi experts, I have an external web site hosted in the AWS, and the DNS domain name is registered in my local DNS server (Windows 2019 with AD and DNS). I have configurated the DNS options in Sophos XGS as shown below. The website does open for internal…
    • Answered
    • 4 months ago
    • Sophos Firewall
    • Discussions
  • Web Pages Slow to Load

    Lonnie Thibodeaux
    Lonnie Thibodeaux
    Referencing this previous post: Webpages SLOW to load That post is over 7 years old and locked, so I am posting here. I recently started having this same issue...Web pages take 30+ seconds to load for all users on network A number of coincidental…
    • Answered
    • 4 months ago
    • Sophos Firewall
    • Discussions
  • Can't contact local DNS from SSL VPN (with 2 WAN)

    Lau Rent
    Lau Rent
    Hello, I'm not an expert (for the moment) on Sophos. For a customer that has an XG Firewall, he asked to configure a SSL VPN connection. As I already done this some years ago on a privous Sophos Router, it should be possible ;-) But the LAN/WAN…
    • 4 months ago
    • Sophos Firewall
    • Discussions
  • What's the impact of DNS settings in General SSL VPN settings

    Andrej Pirman
    Andrej Pirman
    Hi, I've deployed doznes of SSL VPN clients, having DNS set to on-premises AD LAN DNS server 10.1.1.10 in General SSL VPN settings for all clients. Now when client with laptop connects to SSL VPN, I can see his/her default DNS resolving goes through…
    • 5 months ago
    • Sophos Firewall
    • Discussions
  • Sophos Connect 2.3 MR1 iPSec DNS problems but SSL OK

    StefanS
    StefanS
    Hi there, After the firmware update to SFOS 20.0.1 MR-1-Build342, we have rolled out the Sophos Connect Client v2.3.1. It turns out that DNS resolution does not work with IPsec. It looks like the wrong DNS servers are being entered here (ipv6). With SSL…
    • 5 months ago
    • Sophos Firewall
    • Discussions
  • RED60 with VLANs and DHCP Server - DNS Server IP wrong after Firewall Upgrade

    LHerzog
    LHerzog
    I've got a Site connected with RED60 The RED itself uses a single IP Subnet /31 IP Address and has 4 VLAN with /26 Subnets attached. In the Mgmt VLAN are Sophos APX Accesspoints connecting to Central. That setup was running up and fine for years…
    • Answered
    • 5 months ago
    • Sophos Firewall
    • Discussions
  • DNS change Automatically in Sophos Firewall

    itinfrastructure User
    itinfrastructure User
    Hi I have XGS4300 (SFOS 19.5.4 MR-4-Build71),DNS change Automatically in Sophos Firewall it can possible or not can you please guide how to resolve this issue.
    • 5 months ago
    • Sophos Firewall
    • Discussions
  • SSL VPN Use Static IP

    Brian Mowrer
    Brian Mowrer
    Hello, We have an application that requires reverse DNS lookup. When users are on SSL VPN they are getting a new IP address via dhcp on the firewall frequently and the Ip Address does not get a PTR record created in the reverse lookup. I've seen…
    • 5 months ago
    • Sophos Firewall
    • Discussions
  • DNS Resolution Issues with Sophos Connect

    Christian Garcia N
    Christian Garcia N
    Recently, I had a problem with a client and their VPN. I noticed that when connecting to the VPN using Sophos Connect, all the DNS requests I make are resolved by the XG. In other words, when I run an nslookup google.com while connected to the VPN, the…
    • Answered
    • 5 months ago
    • Sophos Firewall
    • Discussions
  • How do I setup DNS over TLS?

    GodAtum
    GodAtum
    I am using Sophos Firewall SFOS 20.0.0 GA-Build222. How do I setup DNS over TLS (with Cloudflare)? I can't find any instructions on the Sophos help pages.
    • Answered
    • 6 months ago
    • Sophos Firewall
    • Discussions
  • LLMNR disabled

    Leo März
    Leo März
    Hello, regarding to this post: LLMNR disabled - DNS resolution no longer works over VPN when will version 2.3 of sophos connect be published? kind regards
    • 7 months ago
    • Sophos Firewall
    • Discussions
  • Connecting to VPN ignores all local DNS setup

    Matt Tyree
    Matt Tyree
    I have some services running on a local server behind a reverse proxy and those services are protected from access outside IP subnets not specified in the reverse proxy settings. In my local router, I have the addresses for all these services listed…
    • 8 months ago
    • Sophos Firewall
    • Discussions
  • VPN on Android, can access LAN by IP but not Name

    Joe Schmoe
    Joe Schmoe
    On my phone connected via OVPN I can access local network resources by IP but name resolution won't work. VPN: SSL VPN (remote access) I have Policy Members setup Use as default gateway is on Permitted network sources IPv4 is set to my local LAN VPN…
    • 8 months ago
    • Sophos Firewall
    • Discussions
  • DNS Server in DHCP options keeps changing to Sophos IP

    Rog163
    Rog163
    Hi All... Customer has XG135 (SFOS 19.5.3 MR-3-Build652), Sophos is the main DHCP server for the network, for the last few months we have been battling with a strange issue. Sophos LAN IP is 172.16.0.10 Internal Microsoft DNS server 172.16.0.1.…
    • Answered
    • 8 months ago
    • Sophos Firewall
    • Discussions
  • DNS Server Recursive Query Cache Poisoning Weakness | Sophos XGS

    Marcel Jordan
    Marcel Jordan
    Good evening everyone, a customer of mine has currently patched an XGS firewall (SFOS 20.0.0 GA-Build222). The customer had a vulnerability scan with a result of 1 Medium CVSS. Namely: DNS Server Recursive Query Cache Poisoning Weakness www.tenable…
    • 9 months ago
    • Sophos Firewall
    • Discussions
  • SSLVPN Split Tunnel DNS Resolution failed

    fuuussiiidiel
    fuuussiiidiel
    Hi, when using SSLVPN in split-tunnel mode, DNS resolution to internal resources is not possible. A ping returns "Host not found". When I perform a nslookup, the XGS is contacted and resolves successfully. I've also tried several VPN clients, including…
    • 9 months ago
    • Sophos Firewall
    • Discussions
  • View related content throughout Sophos Firewall
  • More
  • Cancel
>