• Couldn't delete user. A firewall rule, VPN connection, web policy rule, or SSL/TLS inspection rule exists for this user.

    Sophos User2968
    Sophos User2968
    Our company own a sophos firewall xgs ( XGS3300), I try to delete user from 'Authentication' page but it failed, i able to disable the user account, but unable delete the user account. but some account i able to delete. i appreciate if there is…
    • Answered
    • 2 months ago
    • Sophos Firewall
    • Discussions
  • Firewall default IPS policies

    DavidSain
    DavidSain
    I found https://community.sophos.com/sophos-xg-firewall/f/discussions/110856/default-ips-policies/397166?focus=true, didn't help. Sophos pre-packages some IPS policies by default. Without having to go through each of them with a fine toothed comb, is…
    • 2 months ago
    • Sophos Firewall
    • Discussions
  • Assistance Required: Binding Static IP to Local IP Address

    Nasar Aalam
    Nasar Aalam
    static IP 203.122.47.42 on port 84 is showing as closed. We need to bind this static IP to the local IP address 10.0.1.134 . Please assist with this at your earliest convenience. Thank you.
    • 2 months ago
    • Sophos Firewall
    • Discussions
  • How to get Firewall Rule ID from XML export file

    August Admin Vosterman
    August Admin Vosterman
    When creating an XML export of FirewallRule via Backup & Firmware -> Import export what is missing in in the XML is the Rule ID. How to get this ID? Or can this be retrieved via API request? greetings, August
    • Answered
    • 2 months ago
    • Sophos Firewall
    • Discussions
  • FIREWALL RULE OVER VPN (WAN-VPN)

    Johnder Dacquil
    Johnder Dacquil
    Does anyone here encounter no access on yahoo even on whitelist? All site is accessible expect for yahoo sites. Anyways I'm doing VPN-WAN rule from XGS107 (SFOS 18.5.2 MR-2-Build380) to XG230 (SFOS 18.5.2 MR-2-Build380).
    • Answered
    • 2 months ago
    • Sophos Firewall
    • Discussions
  • Web Server on VLAN

    Bossmanuk
    Bossmanuk
    Hello Everyone, I am having a little configuration issue with my web server on a VLAN. All my VLANs have internet access but I can't seem to access my web server from outside my network. Can anyone post an example firewall rule from Public IP to VLAN…
    • Answered
    • 2 months ago
    • Sophos Firewall
    • Discussions
  • Use web proxy instead of DPI engine enabled mysteriously XGS116

    Brennan Kostyniuk
    Brennan Kostyniuk
    We noticed that Microsoft Office was not updating, so we added the Microsoft Office exceptions as per Sophos Firewall: Configure web exceptions for Office 365. Next, we encountered an issue where Google Chrome wouldn't install, so we added the exceptions…
    • 2 months ago
    • Sophos Firewall
    • Discussions
  • Windows Homedrive - mounting fails due to delayed firewall authentication

    LHerzog
    LHerzog
    When users have homedrives in Active Directory they fail to mount as network drive when the firewall rule to the sharing server has user authentication required. Also the login of the users is taking minutes, not seconds. This is because the user is not…
    • 2 months ago
    • Sophos Firewall
    • Discussions
  • Linked NAT rule for LAN to LAN traffic?

    Mark Tarrant
    Mark Tarrant
    Hello all, I have inherited a firewall that has linked NAT rules for LAN to LAN type rules. Is there any need for them (I don't think so as really only required for LAN to WAN), and would it hurt anything if I just left the NAT rules? Thanks.
    • Answered
    • 3 months ago
    • Sophos Firewall
    • Discussions
  • XG125 Blocking Programs or Ports

    Brian Roberts
    Brian Roberts
    Hi, Is it possible that an XG125 Firewall can block programs and TCP/UDP ports for network traffic between a Windows Server and client computers within the same LAN? I know the firewall can block traffic between the LAN and the internet but my question…
    • Answered
    • 3 months ago
    • Sophos Firewall
    • Discussions
  • Email flow to Exchange server stops

    Mark Hebblethwaite
    Mark Hebblethwaite
    Sophos XGS 2300 running 20.0.1 Internal exchange server DNAT rule allowing passthru of SMTP traffic to the exchange server. ports 25,465,587. From time to time we stop receiving email. to fix, we reboot the sophos firewall. When it stops working…
    • 3 months ago
    • Sophos Firewall
    • Discussions
  • Please allow rule renaming

    huang xing
    huang xing
    HELLO When we create a routing rule (or other items that do not support renaming), and feel that the name is unreasonable or needs to be changed for other reasons, we find that the name cannot be modified and can only be rebuilt or copied. This is a…
    • 3 months ago
    • Sophos Firewall
    • Discussions
  • INTERNAL NETWORK ACCESS TO EXTERNAL IP

    ASP AÇAO SOCIAL DO PLANALTO
    ASP AÇAO SOCIAL DO PLANALTO
    Hello, we have implemented the Sophos firewall and we are facing a serious problem, no matter how much we configure the internal network IPs, it does not access the external IP, Could you help us? Grateful
    • Answered
    • 3 months ago
    • Sophos Firewall
    • Discussions
  • Network Configuration Issue

    Dominik Potocki
    Dominik Potocki
    ##### Aktualna konfiguracja **Router:** - Adres IP: 192.168.1.1 - Maska podsieci: 255.255.255.0 **Sophos:** - Interfejs LAN: 192.168.1.79 - Interfejs WAN: 192.168.2.1 **Reguła wyjątku listy ACL usługi lokalnej:** - Strefa źródłowa: WAN - Sieć źródłowa…
    • Answered
    • 3 months ago
    • Sophos Firewall
    • Discussions
  • Replaced firewall with xgs 2300 - video server playback not working

    johnm_19
    johnm_19
    We recently replaced all our xg230 with xgs 2300 firewalls. Geovision Video server is on a dmz with port forward rule and NAT rule. Remote playback and viewlog you can't connect to them. Live view works fine. Other sites no issues. Firewalls are setup…
    • 3 months ago
    • Sophos Firewall
    • Discussions
  • IPS not applying to policies

    Elmo Heyns
    Elmo Heyns
    Hi All Ive spent some time on the Sophos documentation but I'm unable to get to an answer via the available online resources. I have a firewall with a few basic rules. Unrestricted internet policy - less web and app filter restrictions based on…
    • Answered
    • 3 months ago
    • Sophos Firewall
    • Discussions
  • Firewall rule - apply traffic with specific DSCP marking only - not works

    Libor Kolar
    Libor Kolar
    Hello everybody, I would have a question to the firewall rules and DSCP marking under "Other security features"... My Sophos instance is running in bridge mode in front of my router's WAN interface (with only one public IP). I apply the function " Scan…
    • 3 months ago
    • Sophos Firewall
    • Discussions
  • New firewall rule does not show in listing

    Tony Graham
    Tony Graham
    Added a new firewall rule. It does not show in the Rules and Policies. I thought maybe I didn't click 'Save'. So I went back in to add a new rule. This time when I try to add the rule, it says 'Rule already exists.' Ummm, okay. Where is it?
    • Answered
    • 3 months ago
    • Sophos Firewall
    • Discussions
  • County Block with MTA enabled

    Steve Pringle
    Steve Pringle
    I would like to block access to and from certain countries with the MTA enabled. This was really simple on the UTM, but seems much more complicated in Sophos Firewall. I have created a black hole NAT rule as suggested in the documentation, but can’t work…
    • 3 months ago
    • Sophos Firewall
    • Discussions
  • Sophos XGS time based VPN

    admin_idl
    admin_idl
    Hallo, how is it possible to control the IPSEC Remote VPN Access time-based on the XGS, so that the users can only establish a connection at certain times? Thank You!
    • 3 months ago
    • Sophos Firewall
    • Discussions
  • Bridge needs firewall rules, or not?

    Wayne Folta
    Wayne Folta
    I had our Sophos XG87 configured by our reseller when we bought it, since I knew nothing about how to do it properly. I've learned a lot and have changed quite a few things, but want to make a foundational change that will require destroying several things…
    • Answered
    • 4 months ago
    • Sophos Firewall
    • Discussions
  • Basic set of firewall rules for a very basic office

    Mark Tarrant
    Mark Tarrant
    Hello, I'm new to Sophos, and am deploying my first firewall to a very basic client, and just want to check what I have configured is a reasonable balance between security and functionality? I am just looking for opinions and whether I have missed anything…
    • Answered
    • 4 months ago
    • Sophos Firewall
    • Discussions
  • Connect from guest network to VPN

    Sophos User3521
    Sophos User3521
    I have a new xgs ( SFOS 20.0.0 ) and would like for the guest wifi users to be able to connect to our vpn. How can I achive that?
    • Answered
    • 4 months ago
    • Sophos Firewall
    • Discussions
  • Sophos XGS firewall Rule Configuration

    Yuvraj Singh
    Yuvraj Singh
    Hii Community, I configured a firewall rule for VPN to LAN connection and another for LAN to WAN connection, attaching a NAT rule with MASQ for internet access. Despite this, I could establish a VPN connection with the Sophos Connect client but couldn…
    • Answered
    • 4 months ago
    • Sophos Firewall
    • Discussions
  • Proxy inbound connection to external ip

    LMSIIATO
    LMSIIATO
    Good morning, I currently have a server in an on-premise datacenter that responds to TCP port 12233. So there is a very normal DNAT on the XGS firewall of the public ip 80.80.80.80:12233 towards the private server ip 192.168.1.10:12233 This service is…
    • Answered
    • 4 months ago
    • Sophos Firewall
    • Discussions
  • View related content throughout Sophos Firewall
  • More
  • Cancel
<>