• How to find out IP-Adresses of incoming ipsec vpns at sophos xgs firewall

    msw_fisit
    msw_fisit
    We have a sophos xgs with several ipsecn vpns site to site running. the Sophos XGS is responding to some VPNs that are without fixed public ipv4 adresses. One VPN incoming has no fixed static ip adress, but i need to enter that ip-adress at xgs to…
    • 8 months ago
    • Sophos Firewall
    • Discussions
  • How to modify target Host for IPsec remote access

    Fred12
    Fred12
    With Sophos Connect Admin I can modify Target host definition for IPSec remote access connection. With XG I can do same already on XG for SSL VPN (Override hostname). However, I cannot override hostname for IPSec remote access configuration via Web-console…
    • 9 months ago
    • Sophos Firewall
    • Discussions
  • Change AD Domain name for IPSec

    Downsideup
    Downsideup
    Hi Our staff currently VPN using the Sophos Connect client over IPSec with AD authentication. We are having a rebrand so will be changing our external domain name. But we will be keeping our old one. How do I confirgure AD and Sophos to use the…
    • 9 months ago
    • Sophos Firewall
    • Discussions
  • display problem with the Sophos Connect VPN

    adnane alislami
    adnane alislami
    Hello, I have a display problem with the Sophos Connect VPN tool, please find below a screenshot
    • 9 months ago
    • Sophos Firewall
    • Discussions
  • Outgoing openvpn connection through SophosXG: Constant disconnects and Transport error inovpn log

    SenorChang
    SenorChang
    Hello, i have yet again a strange error. We have some clients in our network that use openvpn connections with Openvpn client is v3.4.4.3. They can connect successfully and have mostly 1-2 Disconnects, but now constantly disconnects to the target. I…
    • 9 months ago
    • Sophos Firewall
    • Discussions
  • Sophos Connect Multiple Gateway order not working

    Ricardo Hartzenberg
    Ricardo Hartzenberg
    Hi, i createa .pro file using the link https://docs.sophos.com/nsg/sophos-firewall/19.5/Help/en-us/webhelp/onlinehelp/AdministratorHelp/RemoteAccessVPN/IPsecSSL/SophosConnect/RAVPNSConProvisioningFile/index.html#templates but it does not switch over…
    • 9 months ago
    • Sophos Firewall
    • Discussions
  • Sophos Connect(IPSec): VPN User keep logging out

    StopTheBeat
    StopTheBeat
    Hello, yesterday we set up MFA for IPSec Remote Access. We are using the local MFA. Now we having Problems with some Users, because after some time there are automatically logging out of the vpn (Sophos Connect). See Logs: Before the MFA. We used…
    • 9 months ago
    • Sophos Firewall
    • Discussions
  • SophosConnect 2.2.90 MSI repair broken

    IT-Service Stadtverwaltung Wörth am Rhein
    IT-Service Stadtverwaltung Wörth am Rhein
    Ironically, when you have a fully working SophosConnect client, and you run the MSI in "repair" mode, the Sophos TAP Adapter will be removed but not added again, resulting in the Sophos Connect Service not starting.
    • 9 months ago
    • Sophos Firewall
    • Discussions
  • How to enable Sophos Connect using the CLI with an OTP?

    ff9394611
    ff9394611
    Hello there, I am trying to connect to the VPN using the command line "sccli". When there no One Time Password, it works without a problem. But when OTP is active, I can't seem to get it done. I came across this post that says to use {PASSWORD}{TIMEOTP…
    • 10 months ago
    • Sophos Firewall
    • Discussions
  • IPsec client disconnection problem , at 60'minutes firewall XGS116 (SFOS 20.0.0 GA-Build222)

    Marcello Guastella
    Marcello Guastella
    Hello , on upgraded system SFOS 20.0.0 GA-Build222), we encounter problems with VPN Client IPsec disconnection after 60 minutes, the system does not take into account the Dislabe Disconnect when tunnel is idle. can you help me solve problem , i have…
    • Answered
    • 10 months ago
    • Sophos Firewall
    • Discussions
  • Allow Guest Wirless to VPN for testing

    StopTheBeat
    StopTheBeat
    I would like to allow access to our IPSec VPN from our guest Wi-Fi for testing purposes. I have created a simple rule that allows internet access. Unfortunately, I always get an error when setting up the VPN connection. Anyone know a solution…
    • 10 months ago
    • Sophos Firewall
    • Discussions
  • Remote access VPN IPsec - Gateway/Address in SCX/Provisioning file

    Jeff Yankowski
    Jeff Yankowski
    Currently when you export the SCX file (or use a provisioning/pro file to automatically update the VPN configuration in the Sophos Connect client) the file's "gateway" parameter has the WAN IP of the Sophos XG firewall. Our firewall is currently behind…
    • 10 months ago
    • Sophos Firewall
    • Discussions
  • IPSEC VPN Client connected but no access to internal resources

    CK2024
    CK2024
    Hey guys, no change and I don't unterstand where is the problem. I have a Macbook. The internal Client ist connected but no access or ping to the internal resources. Any idea
    • Answered
    • 10 months ago
    • Sophos Firewall
    • Discussions
  • IKEv2

    AdminJH AdminJH
    AdminJH AdminJH
    When will IKEv2 for Remote Access VPN be available?
    • Answered
    • 11 months ago
    • Sophos Firewall
    • Discussions
  • Sophos Connect ipsec VPN Geo restriction

    onward
    onward
    In SFOS 19.x or 20.x is it possible to restrict Sophos Connect (remote access) ipsec VPN clients by country without putting a 2nd XG firewall in front of the XG serving the VPN? Example: permit client vpn connections only from Canada.
    • Answered
    • over 1 year ago
    • Sophos Firewall
    • Discussions
  • Trying to connect a OpenVPN Connection to third party server

    Lino Baeumler
    Lino Baeumler
    Hi Guys, we have a network running with multiple sites. All the Sites are connected via IKEv2 Tunnel to our Sophos XG330 (via Lancom Routers). In each site we have a device running which is trying to connect (via OpenVPN Tunnel) (UPD Port 1194) to…
    • over 1 year ago
    • Sophos Firewall
    • Discussions
  • IPsec Remote Access VPN - Change Client information name (field greyed out)

    Alexander Glänzer
    Alexander Glänzer
    Hello Sophos Community, I'm rolling out Sophos Connect Client and IPsec provisioning file via group policies for a customer right now, everythings working fine except for one thing. When the vpn provisioning file is imported to sophos connect client…
    • over 1 year ago
    • Sophos Firewall
    • Discussions
  • IPSec Remote Access VPN not passing traffic XGv19

    Stefan Zauchenberger
    Stefan Zauchenberger
    We are fairly certain the setup is correct and the FW rules are in place, but remote access user cannot see internal resources on the LAN (other than the SOPHOS FW) when connected. After SOPHOS Connects successfully establishes the tunnel, the user can…
    • over 1 year ago
    • Sophos Firewall
    • Discussions
  • Disable auto reconnect for VPNs with Sophos Connect

    Martin Choy
    Martin Choy
    Hi peoples, So maybe i'm doing this wrong... im currently testing 2FA for VPN users. We are using the Sophos Connect client with IPSec into an XGS 116. Currently using DUO for the 2FA. Everything is connecting up fine, but i want to enable the option…
    • over 1 year ago
    • Sophos Firewall
    • Discussions
  • Sophos Connect Client not changing DNS server

    Technik Technik1
    Technik Technik1
    Hi, following problem. We use Sophos Connect Client version 2.2.90.1104 on Windows 10 and 11 and IPSec VPN. We set a prefered DNS on firewall. After the VPN connect, the DNS server is set on the VPN adapter settings in Windows. Than the problem began…
    • Answered
    • over 1 year ago
    • Sophos Firewall
    • Discussions
  • Sophos Connect / Provisioning File / Issue with additional connections

    damiri
    damiri
    Hi, started to play with Sophos Connect since some customers ran in to issue with it: 1. there is centralized management of Sophos Connect (correct me if I am wrong) 2. there is difference in SSL VPN and IPSEC connections, how provision file works…
    • over 1 year ago
    • Sophos Firewall
    • Discussions
  • Automatically Push Sophos Connect Upgrade

    damiri
    damiri
    Any development on this feature? What is suggested to customer with 500+ remote people working over VPN? (And Sophos ZTNA is not the solution. We already seen that is doesn't cover most use cases.) Automatically Push Sophos Connect Upgrade
    • over 1 year ago
    • Sophos Firewall
    • Discussions
  • Allow IPSec from certain endpoints, deny the rest

    Jack Valko
    Jack Valko
    I understand I need to create a blackhole DNAT to block inbound IPSec traffic. What I also need to do is allow a few endpoints to establish a tunnel. To me, this means I need two NAT rules -- one to passthru legit IPSec and the other to blackhole. I…
    • Answered
    • over 1 year ago
    • Sophos Firewall
    • Discussions
  • Notes / Comments in SCX file?

    Nez_Pottage
    Nez_Pottage
    Hi all, When editing an SCX file for Sophos XG / Connect VPN, is there a way that you can add comments into the file for information, i.e. in a split tunnel config, can we make a note of what the network address / range relates to? Current config…
    • Answered
    • over 1 year ago
    • Sophos Firewall
    • Discussions
  • Error VPN ipsec Client

    Alves I
    Alves I
    Hi everybody, For some time now, I have been facing some problems with the Vpn Ipsec client, which shows the following error below. This happens to any user who tries a new connection, from what I noticed, users who are already connected do not experience…
    • over 1 year ago
    • Sophos Firewall
    • Discussions
  • View related content throughout Sophos Firewall
  • More
  • Cancel
<>