• User Authentication over S2S IPSec VPN

    CV_Sophos
    CV_Sophos
    We have currently have two locations, each with a XG330 v19.5.4 MR4 and an EPL fiber connection between them that has a S2S IPSec tunnel setup and a static route on both ends pointing to the other. Each FW is setup with the local DC for user authentication…
    • Answered
    • 3 months ago
    • Sophos Firewall
    • Discussions
  • Sophos Connect VPN password expired... not using AD for authentication

    Alex Glasener
    Alex Glasener
    Hello, we have a single remote user at our organization using the Remote SSL VPN group. We do not use AD to sync passwords or anything. they are just set by the Admin. He emailed me today saying that his password expired, and he can log-in to the VPN…
    • 4 months ago
    • Sophos Firewall
    • Discussions
  • Azure SAML auth for Connect SSL VPN

    Sophos User4091
    Sophos User4091
    Hi, what is the status of this development, when is it coming? has sophos not yet understood how important this is for customers? the workaround that you send to people here in the forum does not always work properly either. we need a solutions, now…
    • 7 months ago
    • Sophos Firewall
    • Discussions
  • Sophos Firewall Authentication to server in Azure across VPN Tunnel

    DavidSain
    DavidSain
    I recently worked through a problem where an on premise firewall was unable to authenticate Remote Access VPN users with Active Directory as the server is hosted in Azure through a VPN (Active Directory is used instead of AAD as it's less expensive to…
    • over 1 year ago
    • Sophos Firewall
    • Discussions
  • AD SSO Authentication and site-to-site VPN connection

    Sophos User6264
    Sophos User6264
    Hello all, We have a problem with one of our software applications. We are using SFOS 19.5.0 GA-Build197. The software needs to connect to a remote server which is only available via site-to-site VPN. The connection is configured and is working (green…
    • over 1 year ago
    • Sophos Firewall
    • Discussions
  • Microsoft 365 users migration for SSLVPN authentication

    Madhusudhana Y1
    Madhusudhana Y1
    I have xgs116 appliance and microsoft365 licenses. I would llike to config sslvpn ; with micrososft 365 license authentication to access on premise network. Please help to config
    • over 1 year ago
    • Sophos Firewall
    • Discussions
  • Add AD User to SSL VPN

    Deb Smith1
    Deb Smith1
    I have my XG set up with both local VPN users and 1 user (mine) authenticating via AD. I've imported the AD OU named Staff where this 1 user resides. I have a new employee coming on, so I created his domain account in the Staff OU. I then logged into…
    • over 1 year ago
    • Sophos Firewall
    • Discussions
  • Sophos Connect SSL authentication with Windows Server Radius

    Gianluca Maistri
    Gianluca Maistri
    Hello, we have an XGS 2100 (SFOS 19.0.1 MR-1 Build365).and we tried to configure (without luck) SSL Authentication using a Windows Server Radius. We always get "authentication failed" using "test connection" button (I know that pap must be enable…
    • Answered
    • over 2 years ago
    • Sophos Firewall
    • Discussions
  • GoDaddy SSL Certificate for User Portal

    ChrisBacker1
    ChrisBacker1
    I have an SSL certificate from GoDaddy that I am trying to import into the XG 230 firewall. It wants the private key in a .key format which GoDaddy is only giving me a .crt format. The certificate key is in .p7b format which works just fine it appears…
    • Answered
    • over 8 years ago
    • Sophos Firewall
    • Discussions
  • VPN and Certificate Authentication

    Jason Bristow
    Jason Bristow
    Hello, Looking for guidance here with VPN and certificate authentication. We have a client that requires we implement certificate based secondary authentication for the VPN. We currently use LDAP authentication to AD and they want to use certificates…
    • over 2 years ago
    • Sophos Firewall
    • Discussions
  • SAML Integration for Sophos Connect

    Jason Bristow
    Jason Bristow
    Will SAML integration be available for Sophos Connect authentication in the future?
    • over 2 years ago
    • Sophos Firewall
    • Discussions
  • Restrict LDAP VPN users to AD security group

    Liam Evans
    Liam Evans
    I have setup AD authentication to our XG for Sophos Connect, everything is working well (users auto import when connecting to the user portal and VPN connects no problems). Is it possible to restrict User Portal/VPN Connections to a particular security…
    • Answered
    • over 2 years ago
    • Sophos Firewall
    • Discussions
  • vpn hardening?

    Peleg Chai
    Peleg Chai
    Hello all, I have kind of new XG firewall, switched from UTM software based system. I see now in the authentication logs that there are password and user guessings all the time to try connect the vpn system. Are there any hardening suggestions to…
    • over 2 years ago
    • Sophos Firewall
    • Discussions
  • IPSec Remote User w/Certificate Authentication

    GioP
    GioP
    Support is indicating that they do not support x509 Authentication (Certificate or SmartCard) for remote authentication users to an IPSec Tunnel. Has anyone successfully enabled an IPSec tunnel for remote users to authenticate with a certificate or smartcard…
    • over 2 years ago
    • Sophos Firewall
    • Discussions
  • AD server authentication through VPN fails after some time

    Christian Fournier
    Christian Fournier
    Hi Sophos community, I've got some problems with an IPSEC site to site VPN. My setup is : Site 1, head office : XG135, lan 192.168.1.1, network 192.168.1.0/24, domain controllers at this location. Multiple branch offices, all linked with IPSEC…
    • Answered
    • over 2 years ago
    • Sophos Firewall
    • Discussions
  • Sophos XG firewall Captive portal for pptp vpn users !!

    Sophos User4945
    Sophos User4945
    Hi all, My organization is using XG210 FW. Users are connected from outside through pptp vpn and use internet. We want those pptp vpn users go through captive portal. How it can be done ? please suggest ! TIA
    • Answered
    • over 2 years ago
    • Sophos Firewall
    • Discussions
  • Google Authenticator Doesn't Like %3D

    Joshua Smith4
    Joshua Smith4
    We are setting up a new MFA VPN in our organization, and many people in the company already use Google Authenticator, so we'd like them to be able to use that. However, authenticator reports that the data in the QR code is invalid. (It accepts the code…
    • over 3 years ago
    • Sophos Firewall
    • Discussions
  • Is it possible to see the DURATION of an SSL VPN connection? The logs show almost nothing

    Sidney Frey
    Sidney Frey
    Hi, I have tried opening a support ticket as well as searching on these forums but I cannot seem to get a straight answer. I'm using an XG450. With Covid making work from home mandatory for a lot of employees, management is now asking me to produce…
    • Answered
    • over 3 years ago
    • Sophos Firewall
    • Discussions
  • Multiple IPsec Gateways with different PSK

    Tom Altmann
    Tom Altmann
    Hallo Community, I am fairly new to the world of Sophos and I started with setting up an Firewall XG (SFOS 18.0.3 MR-3) for my extended home network. As I have multiple locations with VPN-Clients and different rules how they use my services I set up…
    • Answered
    • over 3 years ago
    • Sophos Firewall
    • Discussions
  • Sophos Connect loses connection

    tim yurgal
    tim yurgal
    I have a network with ~150 connections and with client-to-site vpn every new connection requires the import to be reconnected after our new associates leave our main campus. I just took over this network about 4 months ago and am still learning about…
    • over 3 years ago
    • Sophos Firewall
    • Discussions
  • Compatible hardware tokens for the XG

    svk253
    svk253
    Long story short, we have a user with an outdated phone that they refuse to upgrade, but still want access to our SSL VPN with OTP. Can't get the sophos authenticator or Google authenticator. They are the type that would still have a flip phone if they…
    • Answered
    • over 6 years ago
    • Sophos Firewall
    • Discussions
  • Another SSL VPN question. Not for routing issues, no. End user experience question

    GZgidnick
    GZgidnick
    Hi Gents, I have 2 questions today for you. 1. I'm setting up an SSL servers for bunch of users here. Department requiring access to specific resource. Most of the users are Ubuntu and other Linuxs users with few Windows users. - Windows users…
    • Answered
    • over 6 years ago
    • Sophos Firewall
    • Discussions
  • SSL VPN Suddenly Stopped Working

    LRJadmin
    LRJadmin
    Good Evening, I recently joined a team and started up our own MSP. One of the clients we took over is using a Sophos XG210 (SFOS 17.0.3 MR-3). I am not real familiar with Sophos, though this same unit died and was RMA'd largely in part due to someone…
    • over 6 years ago
    • Sophos Firewall
    • Discussions
  • How to Check which firewall rule is blocking connection in user portal

    tal yoffe
    tal yoffe
    I am able to successfully authenticate to the user portal. However I am unable to connect to the clientless access connection. I get the below error: Error: Protocol Security Negotiation Failure I created the firewall rule for vpn access but…
    • over 7 years ago
    • Sophos Firewall
    • Discussions
  • XG blocking udp 6060 packets from STAS across ipsec tunnel/not working

    Mast_01
    Mast_01
    Hello, i have an XG in a branch office with a VPN tunnel to the main office with any-any rules both ways, main office has a UTM with the AD servers, stas is already configured there. the fixes for the broken xg net to net vpn funcitonality are also…
    • over 7 years ago
    • Sophos Firewall
    • Discussions
  • View related content throughout Sophos Firewall
  • More
  • Cancel
>