This discussion has been locked.
You can no longer post new replies to this discussion. If you have a question you can start a new discussion

Only Deprecated AES-CBC Algorithms Available in UTM Home - Android Requires AES-GCM

I am using a particular Openvpn client on Android that is no longer supporting AES-CBC.

Will Sophos ever update UTM Home to include newer AES-GCM algorithms?

Pretty please?



This thread was automatically locked due to age.
Parents
  • ***Sophos has entered the chat***

    "Switch to XG!  It's the bestest!"

    In 3... 2... 1...

    Joy

    OPNSense 64-bit | Intel Xeon 4-core v3 1225 3.20Ghz
    16GB Memory | 500GB SSD HDD | ATT Fiber 1GB
    (Former Sophos UTM Veteran, Former XG Rookie)

  • Switch to SFOS. It supports TLS1.3 + GCM. 

    __________________________________________________________________________________________________________________

  • What does the migration from UTM to SFOS look like? Is there a migration tool or some export/import ability?

    Or am I looking at doing a full reconfiguration?

  • Get ready to do it all over again.  

    And maybe even be confused.  The interface is completely different, and to me makes absolutely no sense.  But, others love it.

    OPNSense 64-bit | Intel Xeon 4-core v3 1225 3.20Ghz
    16GB Memory | 500GB SSD HDD | ATT Fiber 1GB
    (Former Sophos UTM Veteran, Former XG Rookie)

  • Depends on the deployment. 

    If you are a home user, you can use it site by site and simply deploy the Android devices via SFOS. 

    If you are a business user, it depends on your setup: you can do a site by site deployment as well.

    Migration is likely not a case, as SFOS works differently in many senses due the fact of integration of firewall rules and other topics. 

    __________________________________________________________________________________________________________________

Reply
  • Depends on the deployment. 

    If you are a home user, you can use it site by site and simply deploy the Android devices via SFOS. 

    If you are a business user, it depends on your setup: you can do a site by site deployment as well.

    Migration is likely not a case, as SFOS works differently in many senses due the fact of integration of firewall rules and other topics. 

    __________________________________________________________________________________________________________________

Children
No Data