• FW-Rules not working to restrict VPN-Portal?

    bmu
    bmu
    Hi there, since some days, we encounter Bruteforce-Attacks against our Mainfirewall (Sophos XGS): Access from IP address '92.53.xxx.xxx' is blocked for '30' minutes after '5' unsuccessful login attempts I've tried to block all requests from…
    • Answered
    • 1 month ago
    • Sophos Firewall
    • Discussions
  • Microsoft Internet Explorer PNG tRNS chuck size 1 information disclosure attempt

    Maroun Moussallem
    Maroun Moussallem
    hello, I got this intrusion attempt for the first time. just don't know what to do. I looked for any recent downloads and browsing history, and asked the user if he plugged any device to the computer but nothing suspicious found. this is a screenshot…
    • 1 month ago
    • Sophos Firewall
    • Discussions
  • SFOS 20.0.1 MR-1-Build342 DHCP not working

    Sophos User6453
    Sophos User6453
    Hello, I've added a DHCP-Server for an interface on my XG. The interface is an RED-VLAN-Interface and ping from the switch is working. An Accesspoint connected to the switch did not get an IP-Adresse. Today we found out, that we have the same problem…
    • Answered
    • 1 month ago
    • Sophos Firewall
    • Discussions
  • Sophos XGS 116w - DNS Request Route

    Clawcity
    Clawcity
    A customer site has a 2nd gateway that is required to access one of their vendor's systems. Our Sophos XGS has static routes in place to direct any traffic intended for the vendor network to the 2nd router. Rather than adding host entries for the vendor…
    • 1 month ago
    • Sophos Firewall
    • Discussions
  • I cannot reach one of the 2 DVR devices.

    Kenan
    Kenan
    Hello, we also have 2 DVR devices in our network. I can access it via HTTP (Web). I cannot reach the second device. It seems like it is going to log in to the second DVR device, but it doesn't. It gives ERR_CONNECTION_REFUSED error. I tried many things…
    • 1 month ago
    • Sophos Firewall
    • Discussions
  • Interface counters for WAN interface in Sophos firewall

    Firewall Monitoring
    Firewall Monitoring
    HI How can i check the interface counters for WAN interfaces in the Sophos firewall ?
    • 1 month ago
    • Sophos Firewall
    • Discussions
  • Sophos Firewall Dynamic DDNS failed to connect FreeDNS

    Wepee
    Wepee
    Hi, I have set up a free account with FreeDNS. My public IP address is pointing to the correct subdomain.mooo.com However, I have a query about the hostname, SF only accept: subdomain.mooo.com. But in order to work, you need to include the update…
    • Answered
    • 1 month ago
    • Sophos Firewall
    • Discussions
  • Failover for Adjacent Vendor Routers on Separate Networks over SD-WAN

    Andrew Schoonover
    Andrew Schoonover
    I'm having an issue where we have two vendor routers that need to be highly available to all branch and data center locations (No changes permitted on the vendor R1 and R2) The networks at all the branch locations consist of a Sophos XG135 as the Gateway…
    • 1 month ago
    • Sophos Firewall
    • Discussions
  • XGS136 is blocking STAS traffic

    Daniel Zulian
    Daniel Zulian
    Hi everyone, I have some problems with the STAS service. The picture shows the topology: I have two locations, the HQ with an XG210, and the branch with XGS136. Both are connected through a VPN tunnel. The STAS server is in HQ location. The communication…
    • 1 month ago
    • Sophos Firewall
    • Discussions
  • WAN ALIAS

    SatyabrataB
    SatyabrataB
    Hi, we have the below IP series in Wan port and alias, all tunnel services are running. now ISP is providing a new alias /29 subnets with different IP series if we add a new alias /29 subnets with the existing setup it will work or not. - Port…
    • Answered
    • 1 month ago
    • Sophos Firewall
    • Discussions
  • Schedule firewall rule - disable it after some time automatically

    LHerzog
    LHerzog
    For firewall rules that allows access to a sensitive system (host) and where access is usually not required all the time, it would be nice to have a feature to enable them manually when needed but with a timer that disables the rule after 60 minutes or…
    • 1 month ago
    • Sophos Firewall
    • Discussions
  • NAT problem

    Wesley Left
    Wesley Left
    Hello everybody, Just new to the forum so please be gentle. I have 2 WAN's on Port 3 and port 6 What I wanted to do is put the guest and staff wifi to use the connection on Port 6 instead of the main connection on port 3 I made firewalling…
    • Answered
    • 1 month ago
    • Sophos Firewall
    • Discussions
  • close connection from one country

    bijan saba
    bijan saba
    I want to drop the connection to my Sophos SG 310 from one country for example Xcountry. what must I do Thanks
    • Answered
    • 1 month ago
    • Sophos Firewall
    • Discussions
  • DNS over HTTPS and TLS.

    rfcat_vk
    rfcat_vk
    Hi folks, a question about XG ability to decode DNS over HTTPS and TLS, can the current version of XG decode DNS requests sent to it using HTTPS or than TLS? Ian
    • Answered
    • 1 month ago
    • Sophos Firewall
    • Discussions
  • blocked requests for short-TTL wildcard DNS FQDN

    LHerzog
    LHerzog
    Currently I have some trouble providing Firewall access to some load balanced CDN services on Akamai Servers, where the corresponding DNS names have short TTL's when using wildcard FQDN like *.docusign.net when the URL accesses will be demo.docusign.net…
    • 1 month ago
    • Sophos Firewall
    • Discussions
  • Block Bing Video Preview

    LSG Admin-Venket
    LSG Admin-Venket
    Hello there, Just wondering if there is anything that we can do to block Bing video preview. We have blocked youtube and other video sites. However in when bing search is used, it previews the video and seems there is no way to block. Even there is…
    • 1 month ago
    • Sophos Firewall
    • Discussions
  • Gmail block

    Magus Infratech
    Magus Infratech
    Hi Team, Kindly schedule support call for Gmail block setting in Firewall.
    • 1 month ago
    • Sophos Firewall
    • Discussions
  • Sophos XGS DNAT/PAT Rule

    Leon Pohl
    Leon Pohl
    Hello, I would like to create a DNAT and PAT rule for a customer. However, this doesn't quite work the way I want it to. When saving, I always get the message ‘Original and translated services do not match’. Normally I would also like to use port…
    • Answered
    • 1 month ago
    • Sophos Firewall
    • Discussions
  • Firewall Rules for Microsoft One Note in Microsoft 365

    LSG Admin-Venket
    LSG Admin-Venket
    Hello there, I have been searching long time to do the following with Sophos XG 230 Firewall. But still could not find solution. Can anybody help 1. Block Microsoft 365 One Note alone. Rest of the Microsoft 365 should work. Blocking One Note on Application…
    • Answered
    • 1 month ago
    • Sophos Firewall
    • Discussions
  • 2 WAN Links One Firewall

    BobbyDigital
    BobbyDigital
    Hello World, I have to Internet gateways from my ISP as part of a package deal. I would like to use one internet gateway as my production traffic and the other gateway as my lab traffic. None of the resources behind need to talk to each other. I just…
    • 1 month ago
    • Sophos Firewall
    • Discussions
  • I cannot allow traffic from an external ip and a specific port to my local server. I tried differents things but it doesn't work.

    Yasin Mujawar
    Yasin Mujawar
    Dear tEam, I cannot allow traffic from an external ip and a specific port to my local server. I tried differents things but it doesn't work.
    • 1 month ago
    • Sophos Firewall
    • Discussions
  • "Could not associate packet to any connection." from smart tv causing apps to hang

    Kevin Roman
    Kevin Roman
    I have been having an issue where my smart tv hangs when apps first start up. It hangs for...several minutes sometimes. Checking my firewall logs, this is the reason, and after the several minute hang, everything works, which makes sense since it's now…
    • 1 month ago
    • Sophos Firewall
    • Discussions
  • How do I enable Subinterfaces for a Trunk?

    Kai Lamker
    Kai Lamker
    Hello all, I'm used to another known firewall vendor but I decided to give this for my home network a try since the other solution is way too expensive. My goal is to use a single link between my switch and my Sophos appliance so I do not need lots…
    • 1 month ago
    • Sophos Firewall
    • Discussions
  • Trouble getting BFD+BGP working

    Samuel Marinov
    Samuel Marinov
    I have an XG330 running 20.0.2. I'm trying to configure BFD+BGP. The BGP portion works great. However, the BFD portion does not. I enabled BFD from the CLI. The following is what my BGP configuration looks like from the CLI: Current configuration: …
    • 1 month ago
    • Sophos Firewall
    • Discussions
  • Port scan detection internal network

    @wajdiaa
    @wajdiaa
    Hi, Is there any option to detect internal network port scans from within the network or networks? Like for example using nmap or netcat or others from inside the local network, not from a wan source. I'm posting this in endpoint as well. Thanks…
    • 1 month ago
    • Sophos Firewall
    • Discussions
  • View related content throughout Sophos Firewall
  • More
  • Cancel
<>