• send a SMS message with OTP

    Indunil Jayasooriya
    Indunil Jayasooriya
    We have setup SSL VPN with OTP. We use Sophos Authenticator as Mobile App. We can login successfully. Everything works well. Now, We have a requirement to send a SMS message with OTP . Is it possible to add SMS feature with OTP?
    • over 3 years ago
    • Sophos Firewall
    • Discussions
  • OTP FAIL EVERY 30 DAYS

    Christian Garcia N
    Christian Garcia N
    Good morning. I have activated the OTP in an XG XG330 and every 20-30 days I have to reset the QR code as it starts to fail, people cannot connect to the VPN or access the user portal until I delete them and recreate the QR code, once it is reconfigured…
    • over 3 years ago
    • Sophos Firewall
    • Discussions
  • XG user portal OTP tokens issue

    Eisenwerk Brühl GmbH
    Eisenwerk Brühl GmbH
    SFOS 18.0.4 MR-4 We are using the user portal with 2FA. Today we found out that some users can see their QR-code, others not. Is there a reason why? Both user have the same user-rights on the XG: Tested with different browsers and different users…
    • over 3 years ago
    • Sophos Firewall
    • Discussions
  • Two Factor Authentication Issue

    Alan Spark
    Alan Spark
    We have an XG 135 running firmware SFOS 18.0.4 MR-4. Recently we have been testing two factor authentication, with the automatically generated 30 second keys. This has been working for a few people. Today we had the idea to increase the key timeout…
    • over 3 years ago
    • Sophos Firewall
    • Discussions
  • Why doesn't the XG SSL-VPN client recognise a 3rd Party 2FA Authentication Confirmation?

    Andy Hanson
    Andy Hanson
    When you ask the user to authenticate with an additional RADIUS server, directed at a 3rd party solution (for example SecurEnvoy, Swivel, Vasco), and the user strongly authenticates (ie username and password+passcode) which is acknowledged by the 3rd…
    • over 6 years ago
    • Sophos Firewall
    • Discussions
  • 2 Factor authentication for SSL VPN users

    itguy318
    itguy318
    Would it be possible to setup 2 Factor Authentication only for SSL VPN users alone while connecting from remote to LAN. I dont want LAN users to use that facility. Do i need to have a RADIUS server for 2 factor authentication. I was thinking if XG can…
    • Answered
    • over 7 years ago
    • Sophos Firewall
    • Discussions
  • Sophos NextG Web Application Firewall for Exchange with Multi-Factor Authentication (MFA)

    John Craparotta
    John Craparotta
    Hi All, Due to EOL with Sophos UTM 9, We recently upgrade to Sophos Next Gen Firewall. We used to have a feature with Sophos UTM that allow to enabled OTP / Multi-Factor Authentication on Web Application Firewall or Web Application Proxy for second…
    • over 3 years ago
    • Sophos Firewall
    • Discussions
  • Sophos Zero Trust

    briesa0
    briesa0
    Hi I was wondering if with zero trust can be done for devices on the network, using yubikey (with fingerprint) (something you have something you are) to log in. Also with xg (with added password) (something you know...alongside sophos apps like intercept…
    • over 3 years ago
    • Sophos Firewall
    • Discussions
  • Limit Reconnect Attempts for SSL-VPN

    IT Support152
    IT Support152
    Is there a way to suppress reconnect attempts (or limit them, to say, 3) for the SSL-VPN client on XG? We're getting DUO MFA lockouts from users who don't disconnect at the end of the day. SSL-MFA attempts to reconnect after a timeout, and then attempts…
    • over 3 years ago
    • Sophos Firewall
    • Discussions
  • skip multi factor from specific ip

    lior me
    lior me
    hi is it possible to skip multi factor and capcha from specific ip?
    • over 3 years ago
    • Sophos Firewall
    • Discussions
  • OTP Default token timestep

    @wajdiaa
    @wajdiaa
    I've tested a couple of XG 18.04 and obtained the same results: When the timestep in seconds is changed for example from 30 to 60 seconds, 2FA stops validating even though I rescan the QR to update the token info. Switching back to the default 30 seconds…
    • over 3 years ago
    • Sophos Firewall
    • Discussions
  • RADIUS MFA and VPN

    Christian136
    Christian136
    Hey, we set up a RADIUS Server for MFA login with a OTP token. If i put the Radius Server to User Portal login, i type in my AD credentials and in the next step the access challenge comes up for the OTP token. Everything is fine. But this is not working…
    • over 3 years ago
    • Sophos Firewall
    • Discussions
  • OTP Issue

    Daniel O'Farrell
    Daniel O'Farrell
    We have recently setup AD and added a number of users into our Sophos XG. I know would like to configure OTP - this was straight forward but when a user first sets up their OTP and Sophos authenticator they end up being asked to do the same thing over…
    • over 3 years ago
    • Sophos Firewall
    • Discussions
  • Sophos XG210 MR4 OTP Token with AD authentication - error 17705 and 17711

    Stephan Bückert
    Stephan Bückert
    Dear community, i got some problems with Sophos XG210 MR4. I created a new AD user for testing, activated OTP and assigned the testuser to it. I got a new hardware token i integratet and assigned to the testuser. Now i done some testing, testuser…
    • over 3 years ago
    • Sophos Firewall
    • Discussions
  • MacOS SSL VPN OTP in separate field

    Wimar Aswan
    Wimar Aswan
    When using MacOS and connecting via Sophos SSL VPN and OTP, is there a client that have the OTP as a separate field instead of adding the OTP to the end of the password? Unfortunately Sophos Connect v2 is not out yet for MacOS and I've tried using Tunnelblick…
    • Answered
    • over 3 years ago
    • Sophos Firewall
    • Discussions
  • XG One Time Password regularly out of sync

    SaladFingers
    SaladFingers
    Hi, We are using IPsec remote access for staff working remotely using the Sophos Connect client. For additional security we have enabled One Time Password, using Chrome extension Authenticator to manage tokens. All was working well until now…
    • over 3 years ago
    • Sophos Firewall
    • Discussions
  • OTP service Not for Captive portal

    Michael Fischer
    Michael Fischer
    Hello, we have activatet the OTP service for the User Portal. Everything Workshop fine. but we do Not two war authentification on captive Portal. We have activeted only for User Portal and Not for Admin Portal. is it possible to deactivate otp…
    • over 3 years ago
    • Sophos Firewall
    • Discussions
  • OTP not autocreating User Tokens And problems with Groups

    Evan Kontos
    Evan Kontos
    I have a few firewalls that I am working on, XG with the latest 18.0.3 firmware. I successfully added OTP to one of them and the system was properly autocreating the tokens for the users. On the other firewall, I added a GROUP instead of a user to…
    • over 4 years ago
    • Sophos Firewall
    • Discussions
  • Compatible hardware tokens for the XG

    svk253
    svk253
    Long story short, we have a user with an outdated phone that they refuse to upgrade, but still want access to our SSL VPN with OTP. Can't get the sophos authenticator or Google authenticator. They are the type that would still have a flip phone if they…
    • Answered
    • over 6 years ago
    • Sophos Firewall
    • Discussions
  • Migrating OTP configurations

    DouglasFoster
    DouglasFoster
    Can anyone provide a process for migrating OTP users from UTM to XG, so that every user does not have to reconfigure his 2-factor-authentication setup (and everyone at once)?
    • over 6 years ago
    • Sophos Firewall
    • Discussions
  • OTP Windows Phone

    seccho
    seccho
    Hi I would like to enable OTP. It works great with Google/Sophos Auth on Android. On iOS Google Auth is not workinh (Barcode Key wrong). I tried also the Windows Auth on a Windows Lumia 950. Also Barcode error (Barcode Key wrong). I tried Micrsoft…
    • over 7 years ago
    • Sophos Firewall
    • Discussions
  • XG starts automatically logs out when OTP is enabled

    dma0
    dma0
    I had enabled OTP and it was working just fine for about a week. However, earlier today, each time I logged in, after about 20-30 seconds, Sophos would automatically log me out and show me the login screen. This stopped once I disabled OTP. I doubt…
    • over 7 years ago
    • Sophos Firewall
    • Discussions
  • BUG: (v16.05.01 MR 1) The otpauth:// URI encoded in the QR code (image) is incorrectly undergoing URI encoding

    Valdemar Jakobsen
    Valdemar Jakobsen
    When configuring TOTP logins for users, the otpauth:// URI encoded in the displayed QR code is incorrectly URI encoding the payload data causing software TOTP token applications to generate the wrong tokens. QR code image Account: someuser%40C020053HBCDGM1A…
    • over 7 years ago
    • Sophos Firewall
    • Discussions
  • Enabling OTP

    Jeffrey Jaspers
    Jeffrey Jaspers
    Hi All, Maybe this is a simple thing but I need some help. After I enabled OTP and configured it with the Sophos Autenticator on my phone, I tried to login into the user portal but the user portal says "Login Failed". If I disable OTP I can login fine…
    • Answered
    • over 8 years ago
    • Sophos Firewall
    • Discussions
  • OTP authentication for WAF

    Fabio Coelho
    Fabio Coelho
    I am testing SFOS v16 and couldn't make OTP work with WAF (Reverse Proxy). I noticed that under Authentication / One-Time Password / Settings / "Enable OTP for facilities:", there is only WebAdmin, User Portal, SSL VPN Remote Access and IPsec Remote Access…
    • Answered
    • over 8 years ago
    • Sophos Firewall
    • Discussions
  • View related content throughout Sophos Firewall
  • More
  • Cancel
<>