This discussion has been locked.
You can no longer post new replies to this discussion. If you have a question you can start a new discussion

After updating to 9.501-5 SSO for HTTP authentication failed and domain join not working.

UTM 9.501-5

Windows server 2012 domain controller.

I installed the 9.5 update on June 2, did not see any issues with this for the client, updated to 9.501-5 on June 12 midnight, and Internet access is failing on multiple sites.

Can get to Google.ca

Cannot get to canada411.com - Too many http redirects message.

Turned off web filtering and the websites were available - but the client requires filtering.

Re-enabled and turned off AD SSO authentication and websites are available again with correct content being blocked.

Attempted to remove from and rejoin domain, but domain join failed.

 

Currently, I have the client functioning, but, I need to rejoin AD and resume SSO authentication.

 



This thread was automatically locked due to age.
Parents Reply
  • My case was escalated yesterday at 11am GMT for a hotfix to be applied. (I have premium support)

    As of this morning, The hotfix has still not been applied and Business operations continue to be disrupted.

    I'm hoping that the hotfix will be applied today to give some value to the premium support we paid a premium for.

Children
  • At this stage your probably better waiting for the 9.502 release this week rather than applying any of the rpm 'fixes' - all you need to do to get the SSO working again is 'add' the UTM back into the domain..  simply go to the SSO tab and put in the username and password and hit apply (don't remove the utm's AD entry or anything else), user DO have to restart the PC's etc to allow the Kerberos auth to work into the utm SSO again however.

    Hopefully 9.502 will be here any day :-)

  • That's not true.

    It might work for about 30/40 minutes then authentication issues come back again. I'm talking about 4 UTM's not just one..... so the sample is valid.

    It doesn't matter if you remove from UTM from AD, rejoin domain.... 

    I'm struggling this since 12 of June... 15 days....

     

  • For systems that were really struggling we have factory reset the UTM's and then brought them back up to a lower firmware level such as 9.500009 and then restored data from backup - the AD fix certainly works on those units..   Strange thing is that out of all the utm's we have it's only really been a handful that had the SSO problem after upgraded to 9.501.. some are still running happily after the update.  

  • Removing from AD etc doesnt work at all for me.  Oddly I can access https sites..

    I spent three hours on the phone to the slowest person on earth as Sophos last night - I kept thinking he had fallen asleep.  I am promised that they will jump on remotely and fix the damn thing but I lack hope and our management team are on my back.  Hopefully bacs and payroll will still work.

    Argh...

  • Damn!! My bad luck!! All my 4 UTM's had this issue...

    But that's ok, mistakes happens, the problem is that i can't rollback to my latest firmware (9.500-9) because isn't in the SOPHOS FTP site!!

    So I ask again: Can SOPHOS provide this firmware??

     

    Thanks