• SOPHOS 2 BRANCH CONNECTION

    TimothyWanume
    TimothyWanume
    Hello I have two branches, both with Sophos firewalls. I have run fibre between these branches; how should I connect them so that they share resources? I have configured a site-to Site VPN, but what if one side loses internet? I need a backup.
    • 9 months ago
    • Sophos Firewall
    • Discussions
  • Sophos Site to Site IPSEC Conection with Selectet Clients

    Roger Domig
    Roger Domig
    Hello dear Sophos Forum, I have set up a Site-to-Site VPN connection between a NAS and 2 ESXi servers with a Sophos XGS. Setting up the connection was no problem, but I still can't reach the ESXi servers from the NAS, even though every port is allowed…
    • 10 months ago
    • Sophos Firewall
    • Discussions
  • Vendor router/ipsec tunnel on /29 routed subnet behind /30 sophos xg. Tunnel disconnecting.

    Andrew Schoonover
    Andrew Schoonover
    Summary: AT&T provides us a /30 for our equipment and a /29 routed subnet. We are currently using several of these addresses as Alias NAT'd for hosted services. We have a vendor who wants to establish a VPN tunnel to their remote site via a cisco 4300…
    • 10 months ago
    • Sophos Firewall
    • Discussions
  • POLICY BASED IPSEC VPN with Source NAT (MASQ)

    Callum Roseneder1
    Callum Roseneder1
    I'm migrating from a UTM to an XG so i'm trying to replicate a config that already existed. I have the IPSEC VPN setup and the tunnel comes up. The VPN selector on my side only has a /30 I need to have the rest of the organisation talk through this VPN…
    • 10 months ago
    • Sophos Firewall
    • Discussions
  • Using public IPs in different locations with IPSEC

    Christian Garcia N
    Christian Garcia N
    Good morning. I don't know if someone can help me as I have been trying various configurations and conducting tests without any success, and I'm not sure if the XG allows what I need. I have 2 offices: Office A has a public IP addressing (e.g.,…
    • 10 months ago
    • Sophos Firewall
    • Discussions
  • Site-to-Site VPN FritzBox -> Sophos XG

    Jan Schumann
    Jan Schumann
    I have established a VPN Tunnel between * Sophos XG (Head Office) * FritzBox (Branch Office) I can access Head Office Resources from Brach Office. But I cannot access the internet from Branch Office. I have created a Firewall Rule to allow Branch…
    • 10 months ago
    • Sophos Firewall
    • Discussions
  • RDP freezes for 5-10 seconds

    VTH
    VTH
    So we have a pretty new XGS 2300 and we have some cases where we connect to our customers servers over an Ipsec Site-to-Site tunnel with RDP. the tunnel is stable but sometimes the remote desktop session freezes for a short time. I looked into the…
    • 10 months ago
    • Sophos Firewall
    • Discussions
  • Connected to Sophos VPN has Internet but can't ping anything it always show ("Request Time out")

    Apo Lakay
    Apo Lakay
    there is internet before and after connecting vpn but every time I ping anything the result is always "Request time out". however after conecting to vpn the internet is slowing and cant ping servers Help me to fix this.
    • 10 months ago
    • Sophos Firewall
    • Discussions
  • malformed payload in packet. Probable authentication failure (mismatch of preshared secrets?)

    Izuchukwu Edeh
    Izuchukwu Edeh
    I am trying to configure ipsec Site-to-site VPN between the Head and branch offices. The Head office is a Sophos UTM SG 210 configured as the responder (Repond-Only), and the branch Firewall is a Sophos XGS configured as the initiator. The Head office…
    • Answered
    • 10 months ago
    • Sophos Firewall
    • Discussions
  • unable to Allow Internet access from head office to branch office through mols VPN

    Anesu Dangarembwa
    Anesu Dangarembwa
    Good day we are using sophos firewall xgs 87 I have a problem. I want to allow the internet to go to all branch offices through the XG firewall at the head office. via ,mols vpn The other branch office has a Sophos firewall, Currently, I have…
    • 10 months ago
    • Sophos Firewall
    • Discussions
  • IPSec site-to-site Reauthentication

    osterhagen
    osterhagen
    How do I enable reauthentication for site-to-site IPSec connections ? Sophos XGS3100, SFOS 19.5.3 MR-3-Build652
    • 10 months ago
    • Sophos Firewall
    • Discussions
  • VPN IPsec site to site between Sophos and Fortigate

    Boris Brunel
    Boris Brunel
    Hello, I have to create several site-to-site IPsec between Fortigate Firewall and our Head Office Sophos Firewall. All connections must go to the same subnet in our Head Office. I've configured the Sophos as "Respond Only", the subnets are configured…
    • 10 months ago
    • Sophos Firewall
    • Discussions
  • VPN Site to Site - Questions about encryption

    Andre Soares
    Andre Soares
    Hello everyone, To configure a site-to-site VPN between two XGS 116, is it better to configure encryption as IKEV2 on both firewalls or DefautHeadOffice for the headquarters and DafautBranchOffice for the branch? Thanks André Soares
    • Answered
    • 11 months ago
    • Sophos Firewall
    • Discussions
  • Only one way traffic ipsec site to site vpn

    PeteH
    PeteH
    I have a new Sophos XGS116 I have just installed replacing a Cisco ASA5506. (Site B) I setup the s2s with the same profile and settings (not subnet or public IP) as I use on another XGS116 (Site C) for the same customer. Both these 116s have a site…
    • 11 months ago
    • Sophos Firewall
    • Discussions
  • Multiple IPSEC Tunnels with Combination of RSA and Preshared Keys.

    ywillie
    ywillie
    Been using 1 same preshared keys for over 10 sites that backhaul back to our HQ till now. However eversince v18 onwards, it's getting more and more unstable. After restarting our HQ Firewall, at least 3-4 sites tunnels wouldn't up. Ticked the create firewall…
    • 11 months ago
    • Sophos Firewall
    • Discussions
  • Can't access remote server via IPSec s2s after migration (xg135w to xgs136)

    Pawel_L
    Pawel_L
    Hi, We have an IPSec s2s connection, and there is a remote subnet 10.0.0.0/255.255.255.0. Migration was done with configuration export/import and it seemed almost everything migrated successfully (only some firewall rules involvind ad users where…
    • 11 months ago
    • Sophos Firewall
    • Discussions
  • XFRM Interface Diagnostic

    AstaroNBack
    AstaroNBack
    2 XGS connected via ISP PTP fiber as primary. Each XGS has a second ISP which will be used for a IPSEC tunnel in case the primary link fails. Currently OSPF is in use. I have a IPSec VPN between 2 XGS using a tunnel. Both XFRM interfaces are 192…
    • 11 months ago
    • Sophos Firewall
    • Discussions
  • Issue on site to site VPN

    SteveChung
    SteveChung
    Hello, I have a strange issue on site to site VPN between two Sophos XG firewall. The site to site VPN was built with class C subnets as below. Site A - 192.168.1.0/24 Site B - 192.168.8.0/24 The sophos XG firewall generated VPN rule on top permit…
    • 11 months ago
    • Sophos Firewall
    • Discussions
  • Sophos-to-Meraki IPsec VPN Issue

    Zane Donaldson
    Zane Donaldson
    Hey All, I've created an IPsec tunnel between my Sophos XG unit and a Meraki. On the Sophos unit, the "Connection" dot is yellow and when I click for more info, it shows that only one of two subnets is accessible. Clearly, the IPsec settings are correct…
    • over 1 year ago
    • Sophos Firewall
    • Discussions
  • ipsec connection

    MADHURA SAPATE
    MADHURA SAPATE
    please guide me for activation between two firewalls ipsec vpn connection ..
    • over 1 year ago
    • Sophos Firewall
    • Discussions
  • IPsec VPN Failover Groups between two firewalls

    SI Braveo
    SI Braveo
    Hello, everybody! Got a quick question for the experts out there. I'm trying to set up an IPsec VPN Failover Group between two XGS firewalls, HQ and Branch, each with two WAN connections. I created 4 tunnels (two for each WAN connection) and added them…
    • over 1 year ago
    • Sophos Firewall
    • Discussions
  • Routing system generated traffic via IPSEC with failover

    Patrick Moore ZA
    Patrick Moore ZA
    Hi all I have a site where the XGS2100 is currently set to authenticate against the local AD Domain Controller. The DC is planned to move off-site and so the XGS will need to authenticate to the DC via IPSEC - the DC will be hosted behind an OpnSense…
    • over 1 year ago
    • Sophos Firewall
    • Discussions
  • XG IPSec Tunnel to UDM VLANs Connection Error

    Sheldon Trewin
    Sheldon Trewin
    Hi all, I have a working IPSec tunnel from my Sophos XG to my UniFi UDM at a remote site. I have many VLANS at the remote site. The XG can connect to the UDM default VLAN, but not any others. Does anyone have experience with this? Thanks!
    • over 1 year ago
    • Sophos Firewall
    • Discussions
  • IPSec Site to Site VPN Disconnection

    Jason G
    Jason G
    Hello, I have setup a site to site IPsec VPN between a Sophos XG (Responder) & a DrayTek (Initiator) router. Everything is working as it should apart from a disconnection every so often. I believe this has something to do with the re-key event that…
    • over 1 year ago
    • Sophos Firewall
    • Discussions
  • Crear enrutamiento entre dos VPN

    Lluis Bigordà
    Lluis Bigordà
    Buenas, necesito ayuda, porque no consigo por mis medios.. La SubredLocal la llamaremos Subred1 Tengo un Sophos XG, que esta conectado a otro host a través de una IPsec "Interfaz de Tunel", la llamaremos Subred2. Luego tengo usuarios que se conectan…
    • over 1 year ago
    • Sophos Firewall
    • Discussions
  • View related content throughout Sophos Firewall
  • More
  • Cancel
<>