• Sophos XG too many Notification IPS and Malware over Mail

    Simplified Sam
    Simplified Sam
    Hello, i am reciving many Notifications like Message: BROWSER-IE Microsoft Internet Explorer XSS filter bypass attempt Mostly i look up it has something to do with some kind of advertisement api from google or other cloud services…
    • over 2 years ago
    • Sophos Firewall
    • Discussions
  • [garner] konstant 30% CPU, resolve Cache error

    StefanS
    StefanS
    Hi there, Sophos XG230 and v19.01. We have here permanently 30% CPU from garner process. Looking closer with "tail" you can see the following. usercache_output: resolve_gr_cache for FW_PBR_MODULE failed usercache_output: resolve_gr_cache for FW_PBR_MODULE…
    • Answered
    • over 2 years ago
    • Sophos Firewall
    • Discussions
  • L2TP VPN stopped working

    Anthony Dunne
    Anthony Dunne
    Hi, We have an established L2TP VPN tunnel that has been working for years. Local authentication on the firewall. The firewall is XG ver 19.01 MR-1 Build 365, and a copule of days ago the VPN just stopped working. Around the same time we imported…
    • Answered
    • over 2 years ago
    • Sophos Firewall
    • Discussions
  • Logging incomplete: Admin Audit logs not showing all changes

    LHerzog
    LHerzog
    on SFOS 18.5.4 and 19.0.1 we still notice that Admin Audit logs in Logviewer are not showing all changes admins make on the system. Example: anything you do with IPS policies is not logged. Adding, changing, deleting other example: IPSec Site…
    • over 2 years ago
    • Sophos Firewall
    • Discussions
  • Generate OTP token with next sign-in

    Jae
    Jae
    Hi, I recently upgraded to SFOS 17 to 19.0.1 MR-1 and I used to have access to the user's QR codes as admin. This was handy with remote users when they got new phones or lost their phone I could easily add the OTP token back to their new phone. I understand…
    • over 2 years ago
    • Sophos Firewall
    • Discussions
  • Intrusion Prevention (IPS) high cpu usage - Snort

    Simplified Sam
    Simplified Sam
    Hello, in our company we got about 60-80 users. Each department got his own vlan running over one port. XGS2100 (SFOS 19.0.1 MR-1-Build365) Over the year i was setting up the sopho xg and adding all Firewall rules, like all department are in one…
    • Answered
    • over 2 years ago
    • Sophos Firewall
    • Discussions
  • Private IP to WAN side without NAT

    Mayuresh Bhagwat
    Mayuresh Bhagwat
    I recently moved the customer from Sonicwall to Sophos. The customer being a bank has a P2P connection with their ATM service provider. There are multiple resources on this P2P service and most have an IP binding configured. For most of them they have…
    • over 2 years ago
    • Sophos Firewall
    • Discussions
  • Sudden loss of all IPSEC VPN connections

    Niklas Schäfer
    Niklas Schäfer
    Hello there, like the title describes, I'm currently facing or investing the problem of the sudden loss of all IPSEC VPN connection to our back offices and also both connection to our cloud provider. We made no changes before the incident and…
    • over 2 years ago
    • Sophos Firewall
    • Discussions
  • Adding FQDN host object causes restart of DNS and failure in name resolution.

    Rieski
    Rieski
    Every time FQDN hosts object is being added to firewall it causes dnscache to restart. During restart name resolution using firewall fails. New FQDN host object being added to firewall, notice how PID changes for dnscache process. Instead of reloading…
    • over 2 years ago
    • Sophos Firewall
    • Discussions
  • Rotue specific internet traffic over Site to Site VPN on Sophos XG

    Miftaul Haque
    Miftaul Haque
    I have a site to site IPSec VPN between two Sophos XG both located in LA. HQ Site: SG230 (SFOS 17.5.16 MR-16-Build830) BrachOffice: XG125 (SFOS 19.0.1 MR-1-Build365) Problem: A particular site is not accessible from branch office but that is accessible…
    • over 2 years ago
    • Sophos Firewall
    • Discussions
  • Outgoing country block rule not working

    duggan1
    duggan1
    XGS6500 (SFOS 19.0.1 MR-1-Build350) I have incoming and outgoing rules to block traffic from certain countries, both are the same (with source and destination swapped). Incoming block works, outgoing doesn't seem to trigger. I get the same result from…
    • over 2 years ago
    • Sophos Firewall
    • Discussions
  • Running Sophos XG in OpenStack

    Tobias Hansen1
    Tobias Hansen1
    Has anyone done that yet? We are currently trying to setup a Sophos XG 19.0.1 kvm version in OpenStack. Installation runs seemlessly. But when trying to get network traffic from LAN to WAN nothing happens. It seems as if the traffic is not getting back…
    • Answered
    • over 2 years ago
    • Sophos Firewall
    • Discussions
  • If no user on a firewall for an API call, the WebAdmin breaks down

    Ben@Network
    Ben@Network
    Hello Community, for info: if there is no user on a firewall for an API call, the WebAdmin breaks down and is unreachable for about 10 minutes. The API responds with this message: <?xml version="1.0" encoding="UTF-8"?> <Response APIVersion="1900.1…
    • over 2 years ago
    • Sophos Firewall
    • Discussions
  • Mobile Wireless devices staying connected to wireless network but losing internet

    Travis Dickson
    Travis Dickson
    Android and iPhone devices are staying connected to the wireless network but they quickly lose internet connection if they get it at all. Workstations, laptops etc. do not have this issue. Constant ping to 8.8.8.8 from affected devices will drop packets…
    • over 2 years ago
    • Sophos Firewall
    • Discussions
  • Any update on NC-87666? (Settings export of DataManagement section.)

    Joshua Drost
    Joshua Drost
    Is there any update on bug NC-87666? I don't see it listed in the Sophos bug list, under the "Sophos Firewall" section, located here: https://docs.sophos.com/support/kil/index.html Here's a link to the old forum post on the matter: https://community…
    • over 2 years ago
    • Sophos Firewall
    • Discussions
  • XG v19 WAN Link Manager: Error when updating Failover Rules

    Joshua Drost
    Joshua Drost
    I often receive the following error when trying to update a failover rule for one of my gateways: "Gateway failover rule could not be updated" I can't find any consistency in how to re-create this. I'm not sure if the problem also existed in v18.x…
    • Answered
    • over 2 years ago
    • Sophos Firewall
    • Discussions
  • Sophos XG - Delete Spam mail in bulk

    Bart van der Horst
    Bart van der Horst
    Hi, Is there an easy way to delete all spam mail in SMTP Quarantine. I've got a customer with 189 pages of spam email I want to clean. I don't have the time deleting them per page. Customer is on an HA 210 v19.0.1 MR1. Any help would be very…
    • over 2 years ago
    • Sophos Firewall
    • Discussions
  • Traffic won't go through policy based S2S IPSec tunnel

    Ale1007
    Ale1007
    Hi guys, I'm trying to setup a policy based site-to-site tunnel, but the traffic won't go through the tunnel. Like the tunnel itself is up and running. Per the others party policy, we had to use SNAT and the needed subnet is not private: 100.270.xx…
    • Answered
    • over 2 years ago
    • Sophos Firewall
    • Discussions
  • WinSCP can't access log folder

    dakster
    dakster
    Any ideas, using WinSCP to access my XG 19.0.1 firewall on my LAN. Can authenticate fine with admin. Can browse and transfer most files. However, /log/ or /var/tslog/ give me "Error 2 - permission denied." If I copy log files from /log to another folder…
    • Answered
    • over 2 years ago
    • Sophos Firewall
    • Discussions
  • image

    Dragos Avram1
    Dragos Avram1
    Hello everyone, I am just getting started with sophos firewalls and i could use some advice. I got an old sg210 from work hoping to play around with it and design my own lab at home. i would like to install an xg image on it. tried with an usb the…
    • Answered
    • over 2 years ago
    • Sophos Firewall
    • Discussions
  • ApplianceCertificate incorrect object

    Alfonso Alfonso
    Alfonso Alfonso
    Hi as per the subject in the ApplianceCertificate certificate in the subject field I have incorrect values such as the email field, in which na@example.com is reported how can I correct this data? thank you Oggetto /C=NA/ST=NA/L=NA/O=NA/OU…
    • Answered
    • over 2 years ago
    • Sophos Firewall
    • Discussions
  • Sophos AP100C Access Points issues

    Praveen Kumar13
    Praveen Kumar13
    Hi Team We are using Sophos AP100C Access Points in our office We are facing the below issues - Google Meetings are getting dropped ( you lost your network connection. Trying to Reconnect ) - Getting Pocket loss - Wi-Fi disconnection Sophos…
    • over 2 years ago
    • Sophos Firewall
    • Discussions
  • IPSec connection not used

    dirkkotte
    dirkkotte
    Hi all, i have a ipsec-connectin, but packets didn't use these: XGS2100_RL01_SFOS 19.0.1 MR-1-Build365# ip route show table 220 192.168.192.1 dev ipsec0 scope link src 192.168.179.254 XGS2100_RL01_SFOS 19.0.1 MR-1-Build365# ip route show table all…
    • Answered
    • over 2 years ago
    • Sophos Firewall
    • Discussions
  • Sophos XGS SSL-VPN .ovpn file

    Lubor Kacian
    Lubor Kacian
    Some trouble with .ovpn file for linux or android. After we add a SD-RED device, there is missing one "remote" IP address in .ovpn file, only TCP port. ... remote a.b.c.d 8443 tcp-client remote 8443 tcp-client remote x.y.z.k 8443 tcp_client How…
    • over 2 years ago
    • Sophos Firewall
    • Discussions
  • Site to Site Connection Slow on XGS116 and XGS2300 with big Files

    Markus Straubinger
    Markus Straubinger
    Hi there, I have a site to site Connection from a Site A XGS116 1GB/300MBit to a Site B XGS2300 1GB/1GB. First i use encryption IKEv2. With this Configuration it was not possible to work with the Shares. Click on a File with about 300 MB, a blue…
    • Answered
    • over 2 years ago
    • Sophos Firewall
    • Discussions
  • View related content throughout Sophos Firewall
  • More
  • Cancel
<>