• Application Filter false positive - IP whitelist

    eclipse79
    eclipse79
    Hello, I found a false positive in Application Filter. Eset connections are seen as Freegate Proxy connections. I need to add an exception for some IP addresses / FQDNs. It seems that a specific area for this purpose is not implemented in SFOS. So…
    • 9 months ago
    • Sophos Firewall
    • Discussions
  • Report those who use a specific application such as anydesk

    LMSIIATO
    LMSIIATO
    Hello everyone, I was trying to understand how to make a report of who uses a specific application like Anydesk. In the report I find various categories but I don't understand how to specify the report for a specific application. Thank you
    • 10 months ago
    • Sophos Firewall
    • Discussions
  • Application Traffic Shaping

    Ashraf Samir
    Ashraf Samir
    I’m a newbie in Sophos XGS VM version 20.0.0 , I want to make traffic shaping for two user groups for the same application category (Streaming): Group A: Traffic limit for 125 Kbyte Group B : Traffic limit for 1250 Kbyte Is it applicable in Sophos…
    • 10 months ago
    • Sophos Firewall
    • Discussions
  • Help with this.

    Edgar Leon
    Edgar Leon
    Hi Sophos community any solution for this issue. Message: SERVER-OTHER multiple products blacknurse ICMP denial of service attempt
    • 10 months ago
    • Sophos Firewall
    • Discussions
  • how to block app from microsoft store

    Ahmad
    Ahmad
    how to block app from microsoft store
    • 10 months ago
    • Sophos Firewall
    • Discussions
  • WhatsApp allow only on mobile devices

    Sheyn Lock
    Sheyn Lock
    Hi there Please could someone give me an idea on how to setup Sophos XG115 to enable mobile devices to access WhatsApp only. Sorry I have some some posts on this, but would like a detailed guide if possible. Thanks
    • 10 months ago
    • Sophos Firewall
    • Discussions
  • SERVER-WEBAPP SNIProxy new_address Stack Buffer Overflow

    Edgar Leon
    Edgar Leon
    Need help with this issue in sophos Message: SERVER-WEBAPP SNIProxy new_address Stack Buffer Overflow
    • 10 months ago
    • Sophos Firewall
    • Discussions
  • IPS Log Messages: Anomaly - Removed the urgent flag and pointer in TCP header / Enforces IPS protection

    philbert
    philbert
    For some time, we get the following IPS Log Messages: Example 1 2024-01-16 12:12:20 IPS messageid="06001" log_type="IDP" log_component="Anomaly" log_subtype="Detect" ips_policy="" ips_policy_id="0" fw_rule_id="140" fw_rule_name="x1" fw_rule_section…
    • Answered
    • 10 months ago
    • Sophos Firewall
    • Discussions
  • Is there a way we can see the detailed reports for alerts in Advance Threat? Such as IP and etc? We only see the device number

    Gideon Orozco
    Gideon Orozco
    Currently we are using Sophos XGS 4500 and we are receiving alerts in Advance Threat however it only shows the device (see image below). Is there a way where we can see a detailed reports such sa IP and etc? Also, what is the "X45007...." device indicated…
    • 10 months ago
    • Sophos Firewall
    • Discussions
  • Why XG125 showing Hulu as General Internet with High risk level?

    EastCoastUser
    EastCoastUser
    Why is Hulu in the category "General Internet" rather than Streaming Media? And why is Hulu listed as Risk Level 4 (High)?
    • Answered
    • 11 months ago
    • Sophos Firewall
    • Discussions
  • Alert ID 7002

    Pradeep
    Pradeep
    Hi team I am getting this alert frequently from the firewall. please help me to resolve this
    • 11 months ago
    • Sophos Firewall
    • Discussions
  • advanced protections

    Apai Debnath
    Apai Debnath
    How to configure Advanced Protection on Sophos Firewall ? Suggest me why we use this option.
    • 11 months ago
    • Sophos Firewall
    • Discussions
  • Application classification - local classification error

    rfcat_vk
    rfcat_vk
    Hi folks, This is not Sophos classification issue, but a local one. I have incorrectly classified an application on my XG, how do I correct tit? Ian
    • over 1 year ago
    • Sophos Firewall
    • Discussions
  • Whatsapp Allow chat and sent files

    Mohamed Nada
    Mohamed Nada
    Hello everyone, so I create new role and allow whatsapp application but it was allow chat only so I add exception in web control with domain of whatsapp.com to be allow so now all OK and they can send pictures, videos and files This network open…
    • Answered
    • over 1 year ago
    • Sophos Firewall
    • Discussions
  • Web Browser Based VPN Deny

    MustafaTASCI
    MustafaTASCI
    Hi; I use xgs4300 in the HA structure on which I spend a large network traffic. many app and web filters are applied on the device and more than 1500 users with 6 different DC authentication go online with user-based rules. I have created many policies…
    • over 1 year ago
    • Sophos Firewall
    • Discussions
  • ChatGPT rules to allow access.

    Shawn Adams
    Shawn Adams
    Palo-Alto added App-IDs for their firewalls to allow the use of ChatGPT https://www.paloaltonetworks.com/blog/2023/05/securing-and-managing-chatgpt-traffic/ I checked our XG and found nothing. So if anyone has an idea how I can set up rules to allow…
    • Answered
    • over 1 year ago
    • Sophos Firewall
    • Discussions
  • Intrusion prevention alert (Critical)

    Sofos network
    Sofos network
    Hello, I have this alert today: intrusion prevention alert, but i don't know how to check or to diagnose this
    • over 1 year ago
    • Sophos Firewall
    • Discussions
  • IPS SERVER-WEBAPP ThinkPHP 5.0.23/5.1.31 CVE-2018-20062 Remote Code

    LMSIIATO
    LMSIIATO
    I have many IPS reports of this type: "IPS SERVER-WEBAPP ThinkPHP 5.0.23/5.1.31 CVE-2018-20062 Remote Code " I don't understand if these attempts are effectively blocked, then in general do you have any recommendations to mitigate this vulnerability?
    • Answered
    • over 1 year ago
    • Sophos Firewall
    • Discussions
  • Firewall XGS 116 Enable to configure some rules

    Demba SOCK
    Demba SOCK
    Good morning, I have a problem regarding the configuration of certain rules at the Sophos Firewall level. It is impossible for the local partner to filter me on all smartphones connected to the network, a ban on all applications except Microsoft applications…
    • over 1 year ago
    • Sophos Firewall
    • Discussions
  • What ist the benefit of IPS, Zero-Day Protection, ATP and web filtering without deep packet inspection on TLS sessions

    Dr No
    Dr No
    stupid question, I know, but honestly: what is the benefit of the Xstream protection when you decide not to break TLS sessions at all (besides mail filtering)? Will someone earn any higher protection level with all these features activated without breaking…
    • Answered
    • over 1 year ago
    • Sophos Firewall
    • Discussions
  • Microsoft Teams Call Disconnecting often

    Stephen BabuJohnson
    Stephen BabuJohnson
    Dear all, We are having XG450 Firewall in High Availability and the we have the latest firmware installed... We are facing Microsoft Teams call is disconnecting intermittently under our Sophos XG450 Firewall. I tried all the following settings for the…
    • over 1 year ago
    • Sophos Firewall
    • Discussions
  • Using Application Filtering Lists for Web Policys

    Quallensaft
    Quallensaft
    Hallo @all, regarding https://community.sophos.com/sophos-xg-firewall/b/blog/posts/generative-ai-policy-enforcement-with-sophos-firewall is there any way to use the new application category for the web policys? Application filtering only allowing allow…
    • over 1 year ago
    • Sophos Firewall
    • Discussions
  • XGS ATP Alert (No Host Name or Threat)

    Peter Mastrangelo
    Peter Mastrangelo
    Today our XGS started reporting ATP sources blocked without a Host Name, IP, or Threat. There is also no information under Monitor & Analyze > Reports > Network & Threats: Advanced Threat Protection How do I go about tracing down the issue? …
    • over 1 year ago
    • Sophos Firewall
    • Discussions
  • IPS update pattern drop packets

    GuiSeb
    GuiSeb
    Hi, we have a SFOS 19.5.3 MR-3-Build652 and since few weeks, when the ips update the patterns, the sophos firewall drops all the packets for 30s. It will never do that before . Is this a bug ? Thanks Regards,
    • over 1 year ago
    • Sophos Firewall
    • Discussions
  • Can we block chrome or any browser vpn extensions

    BilalAmjad
    BilalAmjad
    want to block browser based extension vpn
    • over 1 year ago
    • Sophos Firewall
    • Discussions
  • View related content throughout Sophos Firewall
  • More
  • Cancel
<>