• when will IKEv2 come for remote access?

    LHerzog
    LHerzog
    When will SFOS support IKEv2 for Remote Access? I was expecting a technical problem when I tried to enable IPSec RA and it did not allow me to select the default profile. I could not believe, this is not supported on a modern firewall. Vivek Jagad…
    • 2 days ago
    • Sophos Firewall
    • Discussions
  • IPsec Remote Access not Receiving traffic

    Adebisi Atilola
    Adebisi Atilola
    I need some assistance please. Also i am new here, in the community. My ipsec remote access sends traffic but does not receive. See the screenshots of my configuration:
    • Answered
    • 1 month ago
    • Sophos Firewall
    • Discussions
  • IPsec Remote Access from iOS using certificates not asking for password

    Saarbruecken
    Saarbruecken
    Hi guys I can't see the wood for the trees -- so please forgive me this (probably stupid) question: When using PSK for IPsec without certificates, everything is working properly. It asks for password (or I save my password) click Connect and it works…
    • Answered
    • 2 months ago
    • Sophos Firewall
    • Discussions
  • Sophos Firewall - Remote access VPN - IPsec - download IPsec VPN profile for iOS fails

    Markus Schlueter
    Markus Schlueter
    Hi folks, I did setup a remote access IPsec profile with a uthentication type digital certificate. The local certificate was created with a CSR by the firewall with help of OpenSSL under Linux and the remote certificate as described in docs.sophos…
    • Answered
    • 2 months ago
    • Sophos Firewall
    • Discussions
  • Comments in SCX files works

    Sophos User5136
    Sophos User5136
    I came across a couple of these threads mentioning that commenting didn't work in JSON, but it will as long as you put them in the right area. If you put the comments just outside the child set, then it will import the SCX without an issue. Example…
    • 2 months ago
    • Sophos Firewall
    • Discussions
  • No response from gateway

    Gerald Werner
    Gerald Werner
    Sophos XG XGS116 (SFOS 20.0.2 MR-2-Build378) has problems with ipsec vpn. The Sophos Connect client shows "No response from gateway [Adress]" So we took a look on the firewall at "Administration" and "Device Access". Here we have IPSec selected. …
    • 2 months ago
    • Sophos Firewall
    • Discussions
  • Remote IPSEC VPN doesn't work after configure SD-WAN route

    Ravin
    Ravin
    Hi, Good day! I am looking for guidance regarding my network configuration involving two ISPs connected to my firewall. One set as active and the other as a backup. This setup has enabled us to utilize Remote IPsec VPN effectively. I am currently…
    • Answered
    • 2 months ago
    • Sophos Firewall
    • Discussions
  • Disconnect after 30600 Seconds, but cannot find this value

    Gerald Werner
    Gerald Werner
    We use Remote acces VPN with our XGS2100 (SFOS 20.0.2 MR-2-Build378) and Sophos Connect client. All VPN Connections disconnect after 30600 seconds oder 8,5 hours. In the Profile we do not have any lifetime or margin set to this value. Phase 1 Key…
    • 2 months ago
    • Sophos Firewall
    • Discussions
  • Probleme mit Sophos XGS IPsec-VPN (iPadOS) und Deutsche Telekom

    Dome96
    Dome96
    Sehr geehrte Community, ich habe ein Problem mit iPadOS und der IPsec-VPN-Verbindung in Zusammenhang mit der Telekom. Beim Versuch, einen VPN-Tunnel von meinem iPad aufzubauen, gelingt dies nur unregelmäßig. Lediglich (geschätzt) 2 von 10 Verbindungsversuchen…
    • 2 months ago
    • Sophos Firewall
    • Discussions
  • Remote IPSEC VPN Disconnections

    Alejandro Riveros
    Alejandro Riveros
    Hello Sophos Community, Is there any documentation or procedure to troubleshoot end user disconnection from our remote access IPsec VPN? I have been looking on how to look at the firewall logs but I couldn't finds anything usefull.
    • Answered
    • 3 months ago
    • Sophos Firewall
    • Discussions
  • Remote Access IPSEC - tunnel connects but unable to access any devices

    Aaron Berger
    Aaron Berger
    I have configured Remote Access VPN - IPSEC and I am able to establish a connection via the Sophos Connect app. However, I am unable to talk to any LAN devices connected to the Sophos XG 125W. Here are my configuration settings: 1. Remote Client…
    • Answered
    • 4 months ago
    • Sophos Firewall
    • Discussions
  • IPSEC/L2TP with Radius and CVE-2024-3596

    Dieter
    Dieter
    Hello, with the patch from Microsoft KB5040434 07/2024 there are problems with Radius authentication for L2TP. Without the patch, the client connection works without any problems. What can we do? Best Regards Dieter
    • Answered
    • 4 months ago
    • Sophos Firewall
    • Discussions
  • Sophos XGS time based VPN

    admin_idl
    admin_idl
    Hallo, how is it possible to control the IPSEC Remote VPN Access time-based on the XGS, so that the users can only establish a connection at certain times? Thank You!
    • 5 months ago
    • Sophos Firewall
    • Discussions
  • Sophos Connect 2.3 MR1 iPSec DNS problems but SSL OK

    StefanS
    StefanS
    Hi there, After the firmware update to SFOS 20.0.1 MR-1-Build342, we have rolled out the Sophos Connect Client v2.3.1. It turns out that DNS resolution does not work with IPsec. It looks like the wrong DNS servers are being entered here (ipv6). With SSL…
    • 5 months ago
    • Sophos Firewall
    • Discussions
  • Can't access servers after expanding network over IPsec

    AlbertChua
    AlbertChua
    Hi Everyone, I can't figure out why can't I access any of my servers over VPN (IP Sec) after expanding my network from /24 to /22 I'm running SFOS 20.0.1 MR-1-Build342 Here's my setup: Before network expansion Network, LAN Zone, IPv4/netmask…
    • Answered
    • 5 months ago
    • Sophos Firewall
    • Discussions
  • DNS resolution over VPN issue when LLMNR is disabled - Sophos Conect 2.3

    SteffenDutschke
    SteffenDutschke
    I have the same problem as described in the following post: RE: LLMNR disabled - DNS resolution no longer works over VPN I have now updated to 20v1 MR1 and installed the current Connect Client. Unfortunately, the error is still not fixed with Sophos…
    • 5 months ago
    • Sophos Firewall
    • Discussions
  • Sophos Connect - Sophos TAP Adapter unidentified network

    Amine SAHNOUN
    Amine SAHNOUN
    Every time I wanted to connect to a VPN via Sophos connect the connection was established for the first time but then the Sophos TAP Adapter card displayed unidentified network, The temporary solution is to deactivate/activate the card to be able to connect…
    • 6 months ago
    • Sophos Firewall
    • Discussions
  • Unable to access remote access VPN L2TP Client from main office

    shahzaib
    shahzaib
    Hi I am trying to ping/RDP L2TP client from Main office but unable to access but through L2TP client I can access my office network. Thank you Policy tester Rules and policies NAT Rule
    • 6 months ago
    • Sophos Firewall
    • Discussions
  • Sophos Connect Setup Wizard ended prematurely

    Jiri Zatrepalek
    Jiri Zatrepalek
    Hello I have Paralels Windows machine on MAC and I cannot install Sophos Connect. The message is Sophos Connect Setup Wizard ended prematurely MAC OS SONOMA ver. 14.3 Paralels ver. 19.3.0(54924) Windows11 ver 22H2 Sophos Connect ver. 2.3.0 …
    • 6 months ago
    • Sophos Firewall
    • Discussions
  • Sophos Connect 2.2 scx file gateway_order not working

    EastCoastUser
    EastCoastUser
    I have a Sophos that has a publicly accessible IP address which I will call 47.x.x.x, and this same IP is also publicly reachable via DNS name which I will call myhost.com. I have IPsec set up and working on my Sophos v20 firewall. I have Sophos Client…
    • Answered
    • 7 months ago
    • Sophos Firewall
    • Discussions
  • LLMNR disabled

    Leo März
    Leo März
    Hello, regarding to this post: LLMNR disabled - DNS resolution no longer works over VPN when will version 2.3 of sophos connect be published? kind regards
    • 7 months ago
    • Sophos Firewall
    • Discussions
  • IPsec Remote Access VPN - Force specific traffic through VPN

    DavidSain
    DavidSain
    I reviewed this : Force specific websites through VPN tunnel? This works for SSL VPN. However adding a host IP under IPsec Remote Access does nothing. Also cannot add an FQDN host under IPsec Remote Access under v20. Is there any way to get this…
    • 7 months ago
    • Sophos Firewall
    • Discussions
  • Connect: Multi-user Autoprovisioning

    RIWE
    RIWE
    Hi, as we can read in multiple threads, Sophos does not think multi-user devices are important. Sophos Connect with multiple users on the same PC - Discussions - Sophos Firewall - Sophos Community Sophos Connect client multi-user environment: usage…
    • 7 months ago
    • Sophos Firewall
    • Discussions
  • How to find out IP-Adresses of incoming ipsec vpns at sophos xgs firewall

    msw_fisit
    msw_fisit
    We have a sophos xgs with several ipsecn vpns site to site running. the Sophos XGS is responding to some VPNs that are without fixed public ipv4 adresses. One VPN incoming has no fixed static ip adress, but i need to enter that ip-adress at xgs to…
    • 8 months ago
    • Sophos Firewall
    • Discussions
  • How to modify target Host for IPsec remote access

    Fred12
    Fred12
    With Sophos Connect Admin I can modify Target host definition for IPSec remote access connection. With XG I can do same already on XG for SSL VPN (Override hostname). However, I cannot override hostname for IPSec remote access configuration via Web-console…
    • 9 months ago
    • Sophos Firewall
    • Discussions
  • View related content throughout Sophos Firewall
  • More
  • Cancel
>