• WAF for multiple ports

    Stuart James
    Stuart James
    Gday Needed to forward 25 ports to a webserver using WAF. I can't for the life of me work out how to enter in more than one port to either. Surely I don't need to create 25 webserver and 25 WAF rules? Anyone done this before?
    • 8 months ago
    • Sophos Firewall
    • Discussions
  • Internet IPv4 Predefined Host Errors, Suggestions

    RichardR
    RichardR
    There are some errors in the predefined "Internet IPv4..." hosts. This list is the clearly wrong ones imho. Internet IPv4 (129-169) should be "(128-169)" Internet IPv4 (191-191.1) seems completely mislabeled, and likely incorrectly defined altogether…
    • Answered
    • 8 months ago
    • Sophos Firewall
    • Discussions
  • SSL-VPN disconnect reason

    Massimiliano Scarabotti
    Massimiliano Scarabotti
    Hi! I can use Reports function to discover, for example, how many ssl-vpn accesses a user did yesterday. Is there a way to know if the disconnection, related to these accesses, occured due to timeout reason (set on 15 minuts for default)? Thanks for support…
    • 8 months ago
    • Sophos Firewall
    • Discussions
  • Restore through CLI? possible?

    Thue Molgaard
    Thue Molgaard
    Restore through CLI? possible? I can see the backup at Var\conf\backupdata\ I am unable to get access through web - at IP and through sophos central.
    • 8 months ago
    • Sophos Firewall
    • Discussions
  • Captive portal on branch site with RED on standard/split setup - update

    Sagar Ghosh
    Sagar Ghosh
    We have a community post 5 years ago regarding Captive portal on branch site with RED on standard/split setup. The answer was that is not possible because, in Standard/Split implementation, the internet traffic is routed directly from the RED to the…
    • Answered
    • 9 months ago
    • Sophos Firewall
    • Discussions
  • Log viewer suggestion

    Dean Andeselic1
    Dean Andeselic1
    I have a suggestion for the Sophos Firewall. I would like to have a switch where I can hide entries that are empty or have a 0. Example: messageid="00002" log_type="Firewall" log_component="Firewall Rule" log_subtype="Denied" status="Deny" con_duration…
    • 9 months ago
    • Sophos Firewall
    • Discussions
  • How to block advanced ip scanner

    William Nascimento - SGI
    William Nascimento - SGI
    How to block applications such as advanced ip scanner from scanning the network? my product is sophos xgs 2300
    • 9 months ago
    • Sophos Firewall
    • Discussions
  • SNMP monitoring IPsec and vpn Tunnel traffic

    SETRA ANDRIAMPARAMALALA
    SETRA ANDRIAMPARAMALALA
    Is there any way to use SNMP to monitor traffic flow through an IPsec tunnel? I'm successfully capturing port traffic with SNMP but would also like to capture the traffic between our two sites via an IPsec tunnel.
    • Answered
    • 9 months ago
    • Sophos Firewall
    • Discussions
  • Remote access SSL VPN with certificate only based authentication

    cicro
    cicro
    Hello! I know that a few years ago there was a feature request on the currently retired Sophos's ideas portal, regarding remote access SSL VPN with certificate only based authentication, for Sophos XGS firewalls. Does anybody know if it's possible right…
    • 9 months ago
    • Sophos Firewall
    • Discussions
  • Is possible to enable FTP and email backup at the same time?

    Hugo José Gongora Lozano
    Hugo José Gongora Lozano
    Hi!. It's possible this? All my firewalls have email scheduled backup. But now, I want to enable FTP without disabling email. On the other hand, I have read this post and think it's an important feature for FTP backups. Thanks.
    • 9 months ago
    • Sophos Firewall
    • Discussions
  • Limit NON MFA ssl vpn access to specific public ip

    Matteo Vinti
    Matteo Vinti
    Hello everyone, I searched the forum if there is a way to limit SSL VPN access to a specific Public Ip Address but it seems to me that You cannot do it. I see that when You create a Group or a User there is a section called "Limit access" that lets…
    • Answered
    • 9 months ago
    • Sophos Firewall
    • Discussions
  • Azure SAML auth for Connect SSL VPN

    Sophos User4091
    Sophos User4091
    Hi, what is the status of this development, when is it coming? has sophos not yet understood how important this is for customers? the workaround that you send to people here in the forum does not always work properly either. we need a solutions, now…
    • 9 months ago
    • Sophos Firewall
    • Discussions
  • Redundant PSU with XGS136 - possible to check status from GUI/CLI ??

    dirkkotte
    dirkkotte
    Hi everyone, We have 2 power supplies on the XGS136. Is it possible to check their condition remotely? GUI/CLI would be possible. We don't have SNMT there. Thx
    • Answered
    • 9 months ago
    • Sophos Firewall
    • Discussions
  • Successful login notification email

    Sophos User3521
    Sophos User3521
    I just setup my new firewall XGS2100 and coming from an SG210 I am noticing that there isnt a function in the web interface so that each time a successful login to the admin webinterface an email is sent Is there a way to do it somehow as there is only…
    • Answered
    • 9 months ago
    • Sophos Firewall
    • Discussions
  • IP allowlist for WAF

    Electronic Repair & Logistics IT department
    Electronic Repair & Logistics IT department
    Using Web Server Protection, I want a web server to only be reachable from some IP lists or IP host groups. How can I achieve this? In Access permission , Allowed client networks , it seems that I can only choose individual IP hosts of networks. Am…
    • Answered
    • 9 months ago
    • Sophos Firewall
    • Discussions
  • How to modify target Host for IPsec remote access

    Fred12
    Fred12
    With Sophos Connect Admin I can modify Target host definition for IPSec remote access connection. With XG I can do same already on XG for SSL VPN (Override hostname). However, I cannot override hostname for IPSec remote access configuration via Web-console…
    • 9 months ago
    • Sophos Firewall
    • Discussions
  • UPS shutdown

    papalon
    papalon
    Hi everyone! Is there a list of UPS vendor/models compatible with Sophos Firewall that can be used to shut down in the event of a power failure? Thanks.
    • Answered
    • 10 months ago
    • Sophos Firewall
    • Discussions
  • Historical Connection log

    Peter Vroegop
    Peter Vroegop
    Hi We using de Sophos XG firewall ( XGS3100). In de firewall logging I can see current connections with the amount of consuming data. Is there a way to see this for historical sessions. User X was logged om from time A until time B and consumed a amount…
    • 10 months ago
    • Sophos Firewall
    • Discussions
  • Blocking Mac addresses from SSL VPN

    Nikolaos Zisis
    Nikolaos Zisis
    Hello Everyone I will explain the issue we came up with. In our company users use their company laptops to connect to the company through SSL VPN and then use remote desktop to connect to their computers. Some of the users they find it more comfortable…
    • 10 months ago
    • Sophos Firewall
    • Discussions
  • backup config to FTP with custom port number

    EastCoastUser
    EastCoastUser
    Configuring Sophos Firewall to back up config file to FTP server. Settings page has a field for the FTP server IP, but there seems to be no way to specify the port number. My FTP server was using Port 21, and this worked fine, so I assume that Sophos…
    • 9 months ago
    • Sophos Firewall
    • Discussions
  • DHCP addresses used/available

    TimAlbertson
    TimAlbertson
    Has Sophos figured out a way for firewall admins to see a numerical count of active DHCP leases? OR are we still relegated to paging through and counting the leases?
    • 10 months ago
    • Sophos Firewall
    • Discussions
  • Firmware menu related device security

    Akshay Hegde
    Akshay Hegde
    1. Is there any option to disable Firmware Menu ---> Factory Reset option ? 2. Is there any option to disable COM port ? We're managing through cloud central. We Also want to disable these two option as its deployed in branch office.
    • 10 months ago
    • Sophos Firewall
    • Discussions
  • Notification on Certificate expiration

    Niclas Lilie
    Niclas Lilie
    Hello, we have multiple environments of Sophos SG and XG Clusters. As we are not able to check every Cluster itself we automated a notification for WAF Certificate Expiration. On SG this is built-in but not so on the XG. I searched a little, and…
    • 10 months ago
    • Sophos Firewall
    • Discussions
  • Vlan add via Cli

    Rejep Annamuhammedov
    Rejep Annamuhammedov
    hi . i want to use the CLI to add VLAN ID to the lan interface . how can i do that ? i tried using the Device concole but i find that i can do that only for bridge interface. Thanks
    • Answered
    • 10 months ago
    • Sophos Firewall
    • Discussions
  • How to create a scheduled CSV report from XG125 FW?

    Comfortably Numb
    Comfortably Numb
    Dear all, Just having a problem creating a scheduled compliance report on my XG125 in a CSV format via email, Steps taken are as follows: Reports > Compliance > 'Show events' > 'System Events' in the table presented I filter by contains 'DHCP Server…
    • 10 months ago
    • Sophos Firewall
    • Discussions
  • View related content throughout Sophos Firewall
  • More
  • Cancel
<>