Hi. Does anyone know if it's possible to exclude configured network interfaces from the coloured interface status icon on the home page of the firewall? Its purpose is to show at a glance of connectivity problems. However, sometimes it is normal for an…
So, I have Port2 and 4 as WAN interfaces. Port 2 is the main interface with multiple public IP addresses assigned to number of services. Life was going just fine until month ago when one public IP address stop working! You can't ping it from outside the…
We have set a bridge on ports 3 and 4 to plug the Aruba 2930 switches in parralell vs daisy chain, the bridge works as expected except we had an issue with printers. the pritners connected to port 3 work, but the printers on port 4 stop connecting, has…
Hello Everyone, I hope this message finds you well.
I would like to understand if there is a method available to assess the internet speed of various ISPs configured on separate WAN ports within the Sophos Firewall.
Additionally, It is possible to…
I'm trying to send a ping to an external address using a specific interface; the documentation is not clear to me and every attempt tried throws me a "% Error: Unknown Parameter"
ping -a <sourceip> <destinationip> % Error: Unknown Parameter
Hi All,
Working on XG115. Had a complaint that VPN not working for one user, no connect.
On investigation i discovered that an old WAN private IP that was changed to public is showing up in tracert to workstations/servers from those who can connect…
We are adding Verizon boxes for failover port 3 static ip from ISP port2 Verizon DHCP, when I tested the failover today, the internet remained at the site, but i was not able to manage it from there portal. Has anyone else had experience with this?
Hi all,
I am trying to change from SG210 to XGS2100.
In the SG210 there is a section "interfaces > Additional Addresses", that lists each of our IP addresses from the WAN block. As I have some other devices, I am able to turn the interface off for…
From time to time, disabling an interface would be very useful in troubleshooting an issue. Why is there no ability to disable an interface. I've had calls with SOPHOS Engineers who also wished this would be possible for troubleshooting. Engineers at…
Hello,
we are trying to get the Sophos Firewall (19.5-MR3) up and running in a public datacenter and to do this we need to change the assignment of zones to interfaces and statically configure the public IP address for the WAN interface. Since the admin…
I would like to see an easy way to move vlans to another port.
This will help in moving a heavily used port from one port to another without having to delete the vlan and DHCP scope and recreate it.
This would speed up moving vlans across ports. …
Hi all,
I rarely work with Sophos Firewalls and haven't ever had to do much on them before, but having recently logged in to one I found that on the 'Control Centre' page that 'Interfaces' is highlighted orange.
When I then select 'Interfaces' it…
So i'm a bit confused and could use some help. After running NMAP on my public IP for a sanity check i was greeted with ports showing open that shouldn't be available to the WAN port. I don't have any services checked on my local service ACL for WAN Starting…
Dear Sir
I have configured two ISP on two different ports of firewall providing the internet facility through Sophos Firewall. I am using the firewall load balancing features by assigning the weightage of 2:1 to both the ISP's. But load balancing feature…
Dear community members!
We are planning to insert an XGS firewall into our existing network infrastructure with multiple WANs. This is the current setup: Three WAN routers from different ISPs with fixed public IPs are connected to a multi-WAN router…
Hello,
Can I have PIM-SM and IGMP on a interface in the same time? I have a problem with IGMP on interface with active PIM-SM neighbour (pim-sm router). In the presence of a PIM-SM neighbour, IGMP is inoperable for another destination. Is this behavior…
Hello,
I still try to preconfigure the XGS for migration from SG.
L2TP, IPSEC-VPN with RADIUS and AD-auth is working.
IPSEC tunnel to our branch is fine.
Now I want to preconfigure all public IPs and their DNAT/SNAT rules.
Actually I am stuck…
XGS136/SFOS 19.5.2
Is it possible to use an alias WAN IP other than the firewall's IP with the SSL VPN?
I'm setting up the XGS to replace an existing production firewall, and using an unused LAN and WAN IP to do it. My plan is that on migration day…
Hey Team,
One of my end customer having issue in FW while upgraded SFOS 19.5.1 --> SFP ports/interfaces couldn't respond or stopped working and ethernet ports are working fine.
XGS3100 (SFOS 19.5.1 MR-1-Build278)
Expecting usual support from my…
Hi All,
I recently added IPv6 support to XG FW and something says not right. I have pubic v6 address on WAN link, 2 private ranges on LAN and DMZ . I am using router advertisement for IPv6. The FW rules show traffic on v6 both directions, The v6 test…