Hello!
I have a need for configuration that has never been necessary before.
I have remote users using SSL VPN. In my global SSL VPN settings I give my two internal DNS servers and also the company domain so that name resolution for internal services…
I notice several of the help screens for SCCLI.EXE have verbiage to this effect (in this case, from 'SCCLI remove')--
* The remove command will fail in environments where policy does not allow unmanaged connections to be used. * The remove command can…
Good Afternoon,
We have recently performed a migration from Sophos UTM to Sophos XGS and I am currently working on re-instating the SSL VPN service for use by our third party support companies. We operate two DCs with services either 'homed' in a specific…
Hi,
I have configured SSL VPN according to Sophos KB. The issue i have is that clients can connect to SSL VPN but cannot access internal network resources (shares, RDP, etc).
ISP - Router - XG - LAN
Config:
XG WAN: 192.168.1.89 (static)
XG LAN…
Hello,
do you know if is possible to use a third party wildcard certificate to configure an SSL remote access on an XG firewall?
Thank you in advance, Marco.
Hi,
We provide IT-support for one of our customers in Nigeria.
I can manage the firewall via VPN connection from Belgium.
Is it a good idea to upgrade the firmware from the webbrowser in Belgium, or do I need someone onsite? (I could use a local…
Hi all
I have a Site to Site SSL VPN configured between two locations, with Subnets 192.168.100.0 /24 server side and 172.16.18.0 /24 client side. The connection says its active and I have added rules on both firewalls to allow from LAN to VPN and…
Hi Guys,
Is there any way to disable user access SSLVPN from LAN. Some users connected to VPN from home and when thy bring laptop to work it still stay connected.
I did this and still no luck.
Just disable the SSL VPN check box for LAN in the Administration…
Good afternoon, I am starting to test the options that XG Firewall has to work with VPN.
Currently I want to set up a Site to Site SSL VPN with two geographically separated XG.
The example configuration of both is as follows:
XG1 and VPN server…
Good afternoon,
How many SSL VPN server/listeners can be configured? In short what I'm wishing is for two SSL VPN options, on full tunnel and one split tunnel etc. I've done this previously with pfsense, but can't see a way of doing it with Sophos XG…
We are currently in the process of upgrading our SG to an XG and because of that have to deploy new SSL VPN configs to all our clients.
In the past we used Tunnelblick as our OpenVPN client of choice, but there is one major issue, in order to import…
Connecting from an Android Mobile via IPv6 only carrier (Telstra) network (single stack) to Sophos XG19 via SSL VPN seems to create some strange issues.
The Sophos XG firewall has a single IPv4 gateway address that the client connects too without any…
Hi;
We have a large server farm behind sophos firewall. There are different domain name AD servers available. I can authenticate users over ADs with these different domains. I can also use AD authentication on SSL VPN connections. No problem till this…
Hi folks,
we are currently in the rollout of SSL-VPN Configurations and noticed performance issues at users which are using LTE Internet connections with latency.
So we want to improve performance by switching from tcp to udp at the sophos firewall…
Hello,
We would need a specific user to connect SSL tunnel client and access internet troughtout the sophos so that he can have the public Ip from the company.
I've created an SSL VPN and set the tunnel access as "Use as default gateway", created…
After setting up the auto connect on a windows 10 machine I receive access to c:\program files (x86)\sophos\connect was denied. I have tried running with admin rights and get the same error. Can someone provide a resolution to this?
Hello everyone.
I have 2 XGS Firewalls connected via SSL Site2Site VPN, which works good. I created a DNS Request Route for contoso.com (changed of course to my setup) to go to DC DNS IP in main office.
This worked for quite some time, now it does…
Hello,
We are monitoring VPNSSL for security purpose with snmptraps.
It's working, but in the text send in the trap by the sophos firewall, we don't have the real public client ip address.
Here is an example :
20230308.100302 UDP: [XXX.XXX.XXX…
Hello there, When i have the static IP Address disabled in my SSL Global Config it works fine, the firewall can reach all the devices connected through VPN.
The issue comes when I enable the Static IP Address in SSL VPN Global Config, When I assign…
Hi !!
im having a problem whit my SSL VPN´S, i have my SSL VPN whit the "USE as Default gateway option on"
In my NAT rules i Have my SSL VPN doing MASQ to original, and in firewall rules i have permitid the SSL VPN to access my LAN´S and the WAN on…
Hi,
first of all is it possible to use the internet on both wan ports? Like combine?
Secound, would it possible to combine both wan ports for ssl vpn? We have two providers which give use each 50mbit/s uploud, and sometimes we need more for remote…
I am facing problem to conect ssl vpn through windows 10 only two system when i was connection network connected successfully but when i try to surfing internet then....give me error "your conmection reset by "ip address" default gateway i will also scan…