Hello, i was trying to open the PORTS to all Internal users, but the rule still blocking the access.
please verify that am doing port forws correct way for all internal users.
Thanks
I have Host A talking to Server B with 587 SMTP with STARTTLS
A uses only Ciphers that are not supported by B and B closes the connection after A sent the TLS Client Hello.
Now we have a firewall rule that has IPS enabled, nothing else:
The handshake…
We have started installing XGS 126 Firewalls in locations and seem to be having an issue with getting the WiFi callling on our Ruckus access points to work. It works with the 115 we used to use but it seems some change to the 126 is causing an issue
I'm in the proces of setting up a Sophos XG on an Intel platform and step by step overcoming the differences I encounter from other FW products I have used. I mainly have experience with Untangle and Ubiquiti products.
The plan was to onboard all of…
Good Monring,
I've an XGS v19.0.1 and want to set an Application Filter (AC) on top of existing Firewall rules. But i'm not sure if i'm understanding how this mechanism is working.
My fw-rule is from "serveral internal zones" with "several defined…
Since Ideas.sophos.com has been retired and it wasn't clear if its replacement is operational, yet I went by the retirement article suggesting using the discussions.
Sophos Firewall - Feature Request - Rule Group parameters,
While working on firewall…
Ive been asked to setup a firewall rule to allow 1 country access in. But the IP address that's showing is an IPv6 one.
Ive been into the separate IPv6 tab in firewall rules to try and add the rule in but I cant select any country group as the source…
Hi everyone,
I am in a bit of a situation here with my Sophos XG Firewall. Earlier today I had to reboot the server that the Sophos VM is in for an unrelated issue. After everything rebooted, I have not been able to connect to the internet at all on…
Hi All,
FW: XG SFOS 18.5.4 MR-4-Build418
i'm using ftps server configured with windows os server (IIS) in DMZ With user isolation. users will connect from external to only upload files There are dnat rule and firewall rule configured: dnat rule:-…
Hello World,
I am running Sophos SFOS 19.0.1 MR-1-Build365
I have a strange issue. I have a separate network for wireless. 10.1.1.1 and another network for my LAN 10.2.1.1
I can ping every device from each network. However, when I attempt to access…
Hi, hoping someone can help. Apologies for the long post.
I'm currently building a Sophos XG appliance to replace my UTM9 as I've exceeded the 50 IP limitation on the home license. Rules and filters etc are slowly but surely being recreated in XG but…
Hello ,
This is regarding Sophos Firewall XG.
We have two ISP lines Hathway which is 10 mbps and second was Netfix 65 mbps.
The only thing is changed that we have upgraded bandwidth to 150 mbps to the netfix networks..
As in netfix is our primary…
Hi All,
Currently we are trying to figure out a way to perform the following
Aim: Allow Certain Users to Access Google Drive and Whatsapp Web based on their IP
Example:
1st IP : 10.10.10.10 - Have access to google Drive download only
2nd IP…
XGS6500 (SFOS 19.0.1 MR-1-Build350)
I have incoming and outgoing rules to block traffic from certain countries, both are the same (with source and destination swapped). Incoming block works, outgoing doesn't seem to trigger. I get the same result from…
Hi,
I have a firewall rule for my devices that are not connected to the internet and have Sophos Endpoint installed. With this rule, these devices only connect to Sophos services and pull Endpoint updates and communicate with Sophos Central.
The configuration…
Has anyone done that yet?
We are currently trying to setup a Sophos XG 19.0.1 kvm version in OpenStack. Installation runs seemlessly. But when trying to get network traffic from LAN to WAN nothing happens. It seems as if the traffic is not getting back…
I have a server that hosts multiple dockers out to a website. I just installed my Sophos and configured a basic Lan > Wan rule with no web filtering at all. But when I go to the sites I get a 522 error. So I believe all I need to do is to get Sophos to…
Hi Team,
I`m running Sophos XG 135 firewall. I `m using 3CX for CRM. I want to setup IP Phone outside my network(Home). Soft Phone is working fine but I want to use IP Phone.
Can you please help me to achieve this.
My email id is hiren@bmg.ng…
Hello Mr, I configured 3 vlan with a dhcp server on my mikrotik router. until everything works well: the PCs of the different networks manage to receive ip addresses from the different vlans. However when I connect this mikrotik router to the sophos xg…
Hello everyone,
I hope someone can explain me....
Im trying to connect a trunk port to xg, however looks like im missing something which i dont fully understand.
server: static ip
switch: link to server = vlan 1, link to xg trunk
added the vlans…
I'm trying to block single website on single LAN address (both http and https protocol), but without success... My device: XG310. I got also DHCP service on Sohpos.
How to block this site for single IP?
Thanks in advance, Tom
We have an exchange firewall rule that we only allow certain countries as the source. If someone goes on holiday we add the country and that works but recently we did this with the USA and the person couldn't access their emails or owa.
I couldn't find…
Running a Windows Server farm on VMware in a XG environment . We want only certain allowed traffic from the Windows Server to exit the network.
( Eg in a Windows 2019 SQL server, block all outgoing connections to office.com, SharePoint, www and allow…
Hi,
After update to SFOS 18.5.4, some icons from webadmin portal are not shown, I'm using Edge (v106.1370.37) and Chome (v106.0.5249.119). Any suggestion how to solve this annoying issue?
Thanks.
Due a log investigation, we have discovered a leak in the firewall policys.
If you set a rule with simply complete drop & log from a source to WAN zone, Traffic with destination Ports 80/443 will be allowed. So the traffic flows to the integrated proxy…