• when will IKEv2 come for remote access?

    LHerzog
    LHerzog
    When will SFOS support IKEv2 for Remote Access? I was expecting a technical problem when I tried to enable IPSec RA and it did not allow me to select the default profile. I could not believe, this is not supported on a modern firewall. Vivek Jagad…
    • 2 days ago
    • Sophos Firewall
    • Discussions
  • Can I create VPN site2site tunnel from XGS as client out to OpenVPN server?

    Andrej Pirman
    Andrej Pirman
    Hi, I cannot find instructions on how, if possible at all, create Site2Site VPN tunnel, from Sophos XGS outbount to OpenVPN server. This is for IP phone service, I created one LAN port for local phones, MASQ via WAN interface....and now I nned to create…
    • Answered
    • 13 days ago
    • Sophos Firewall
    • Discussions
  • IPsec Connections using two Uplinks and DDNS

    FICS
    FICS
    Hello Community, here's the situation: Head Office (HO) : two WAN uplink connections, both have static IPs. One connection is 'cost based' and slower (backup WAN) and the other is quicker and has no traffic costs (primary WAN). Weights have been configured…
    • Answered
    • 1 month ago
    • Sophos Firewall
    • Discussions
  • Request for Assistance: Upgrading Sophos Connect via Group Policy (GPO)

    Prateek Singhal
    Prateek Singhal
    Dear Community Members, I am immensely grateful for being part of this wonderful community. Could someone kindly provide guidance on how to upgrade SophosConnect_2.2.90.msi to SophosConnect_2.3.0.msi using Group Policy (GPO)? Alternatively, if there is…
    • 5 months ago
    • Sophos Firewall
    • Discussions
  • Desinstalación Forzada de SSL VPN Sophos (Semáforo)

    Soporte Sisbler
    Soporte Sisbler
    Buenas tardes, Me pueden ayudar por favor con algún comando o instrucción para forzar la desinstalación de la VPN "SSL VPN Sophos (Semáforo)" de forma desatendida (Remota) en 150 equipos para luego actualizar e instalar a Sophos Connect, Muchas gracias…
    • 5 months ago
    • Sophos Firewall
    • Discussions
  • Sophos Connect 2.2 scx file gateway_order not working

    EastCoastUser
    EastCoastUser
    I have a Sophos that has a publicly accessible IP address which I will call 47.x.x.x, and this same IP is also publicly reachable via DNS name which I will call myhost.com. I have IPsec set up and working on my Sophos v20 firewall. I have Sophos Client…
    • Answered
    • 7 months ago
    • Sophos Firewall
    • Discussions
  • Connect: Multi-user Autoprovisioning

    RIWE
    RIWE
    Hi, as we can read in multiple threads, Sophos does not think multi-user devices are important. Sophos Connect with multiple users on the same PC - Discussions - Sophos Firewall - Sophos Community Sophos Connect client multi-user environment: usage…
    • 7 months ago
    • Sophos Firewall
    • Discussions
  • Captive portal on branch site with RED on standard/split setup - update

    Sagar Ghosh
    Sagar Ghosh
    We have a community post 5 years ago regarding Captive portal on branch site with RED on standard/split setup. The answer was that is not possible because, in Standard/Split implementation, the internet traffic is routed directly from the RED to the…
    • Answered
    • 8 months ago
    • Sophos Firewall
    • Discussions
  • Remote access SSL VPN with certificate only based authentication

    cicro
    cicro
    Hello! I know that a few years ago there was a feature request on the currently retired Sophos's ideas portal, regarding remote access SSL VPN with certificate only based authentication, for Sophos XGS firewalls. Does anybody know if it's possible right…
    • 8 months ago
    • Sophos Firewall
    • Discussions
  • Limit NON MFA ssl vpn access to specific public ip

    Matteo Vinti
    Matteo Vinti
    Hello everyone, I searched the forum if there is a way to limit SSL VPN access to a specific Public Ip Address but it seems to me that You cannot do it. I see that when You create a Group or a User there is a section called "Limit access" that lets…
    • Answered
    • 9 months ago
    • Sophos Firewall
    • Discussions
  • Azure SAML auth for Connect SSL VPN

    Sophos User4091
    Sophos User4091
    Hi, what is the status of this development, when is it coming? has sophos not yet understood how important this is for customers? the workaround that you send to people here in the forum does not always work properly either. we need a solutions, now…
    • 8 months ago
    • Sophos Firewall
    • Discussions
  • How to modify target Host for IPsec remote access

    Fred12
    Fred12
    With Sophos Connect Admin I can modify Target host definition for IPSec remote access connection. With XG I can do same already on XG for SSL VPN (Override hostname). However, I cannot override hostname for IPSec remote access configuration via Web-console…
    • 9 months ago
    • Sophos Firewall
    • Discussions
  • Blocking Mac addresses from SSL VPN

    Nikolaos Zisis
    Nikolaos Zisis
    Hello Everyone I will explain the issue we came up with. In our company users use their company laptops to connect to the company through SSL VPN and then use remote desktop to connect to their computers. Some of the users they find it more comfortable…
    • 10 months ago
    • Sophos Firewall
    • Discussions
  • Remote access VPN IPsec - Gateway/Address in SCX/Provisioning file

    Jeff Yankowski
    Jeff Yankowski
    Currently when you export the SCX file (or use a provisioning/pro file to automatically update the VPN configuration in the Sophos Connect client) the file's "gateway" parameter has the WAN IP of the Sophos XG firewall. Our firewall is currently behind…
    • 10 months ago
    • Sophos Firewall
    • Discussions
  • hen the VPN is connected with firewall just the local application/network should be accessible.

    naveen User
    naveen User
    SSL VPN is used as full tunnel and the requirement is when the VPN is connected with firewall just the local application/network should be accessible. Checked the configuration and it was proper NO VPN to WAN rule was present hence the WAN traffic…
    • 11 months ago
    • Sophos Firewall
    • Discussions
  • IKEv2

    AdminJH AdminJH
    AdminJH AdminJH
    When will IKEv2 for Remote Access VPN be available?
    • Answered
    • 11 months ago
    • Sophos Firewall
    • Discussions
  • two connections to the same Sophos in the Sophos VPN Client?

    Tobias Schubert1
    Tobias Schubert1
    Hello, Is there a way to import two connections to the same Sophos in the Sophos VPN Client? The normal VPN User are Domain Users. I have also set up a local user on Sophos in case of an emergency - a failure of the domain server. I would like to…
    • over 1 year ago
    • Sophos Firewall
    • Discussions
  • Two IKE VPN configurations on one firewall

    Niklas R
    Niklas R
    Good day together I normally look after Zyxel firewalls, but I was now allowed to take over a Sophos customer from a former colleague. I would like to switch this customer from IKEv1 to IKEv2, but I don't want to make a hard switch. So that the customer…
    • Answered
    • over 1 year ago
    • Sophos Firewall
    • Discussions
  • Sophos Connect - Autoconnect - MFA - Remote Users

    Andrew Bryson
    Andrew Bryson
    We have autoconnect enabled for users, and used to have MFA (Sophos) enabled. We had to disable MFA as it was causing grief for remote users with flakey Internet (and no other ISP options available). Internet connections would go down for a few seconds…
    • over 1 year ago
    • Sophos Firewall
    • Discussions
  • Monitoring number of connected ssl-vpn users

    softgate gmbh
    softgate gmbh
    Hi all, we would like to monitor the currently connected number of ssl vpn users with PRTG. Unfortunately there seems to be no snmp oid for this - see SNMP - Number of VPN Users? Any other ways to access this value? Sophos API, SSH? Any plans to create…
    • Answered
    • over 1 year ago
    • Sophos Firewall
    • Discussions
  • Site-to-site VPN - Why can't you view your settings when you have a failover group

    Steve Klassen
    Steve Klassen
    Why can't you view your site-to-site settings when you have a failover group active. Whenever I'm working with a SOPHOS engineer on an issue, the first thing they want to do is view the VPN settings, but they can't without taking the VPN tunnel offline…
    • Answered
    • over 1 year ago
    • Sophos Firewall
    • Discussions
  • IPSEC Setup with Zscaler

    v h
    v h
    hi all, we encountered some limitation with sophos fw, under SFOS 19.5 with IPSEC configuration. There is no possibility to set null encryption under ipsec phase 2 part. Is there a way to bypass this limitation ?
    • over 1 year ago
    • Sophos Firewall
    • Discussions
  • SSL VPN Permitted network resources -> ANY?

    Quallensaft
    Quallensaft
    Hello @all, if you have 80 networks, do you really have to add all 80 networks by hand (same to new networks)? No way to allow access to ANY?
    • Answered
    • over 1 year ago
    • Sophos Firewall
    • Discussions
  • Enforce XG local users to change Password connecting through IPSec

    Muhammad Abdullah Siddiqui
    Muhammad Abdullah Siddiqui
    Hi, Is there an option to enforce local users created on Sophos XG2100 firewall to change passwords when they first login with their provided username and password on IPsec Remote access VPN Connection. Password change option is available in User…
    • Answered
    • over 1 year ago
    • Sophos Firewall
    • Discussions
  • Dual WAN on SD-RED 60

    Daniel Bilton
    Daniel Bilton
    Hi, we have a head office with an XGS 136 and a satellite office with an SD-RED 60 on Starlink. The Starlink isn't that great so I need to be able to add a 2nd WAN link. This link uses PPPoE to authenticate. How can I configure the 2nd WAN on the RED…
    • over 1 year ago
    • Sophos Firewall
    • Discussions
  • View related content throughout Sophos Firewall
  • More
  • Cancel
>