This discussion has been locked.
You can no longer post new replies to this discussion. If you have a question you can start a new discussion

After updating to 9.501-5 SSO for HTTP authentication failed and domain join not working.

UTM 9.501-5

Windows server 2012 domain controller.

I installed the 9.5 update on June 2, did not see any issues with this for the client, updated to 9.501-5 on June 12 midnight, and Internet access is failing on multiple sites.

Can get to Google.ca

Cannot get to canada411.com - Too many http redirects message.

Turned off web filtering and the websites were available - but the client requires filtering.

Re-enabled and turned off AD SSO authentication and websites are available again with correct content being blocked.

Attempted to remove from and rejoin domain, but domain join failed.

 

Currently, I have the client functioning, but, I need to rejoin AD and resume SSO authentication.

 



This thread was automatically locked due to age.
Parents
  • Well an interesting time to get a sales call from SmoothWall!

     

    I am starting to believe that my UTM is totally borked now.  I still have authentication errors after the patch, removing the UTM from the domain and rejoining it does nothing and never has, turning off "block on authentication failure" gets rid of the authentication error but we still cant get to the site.  I am tempted to roll out the Sophos agent to our PCs - at least that seems to work.

    I have tried downloading older firmware but I cant get to the site from work so I am downloading at home and copying to my PC over teamviewer so a slow process made worse as I cant find a full list of old firmware downloads.

    Well at least payroll went through ok.

  • I just got off the phone with a 2nd-level tech working on a different issue for me.  He mentioned that all everyone is doing right now is applying patches.  He said there are two different ones.  If the patch you got isn't working, re-open the case and ask if the other patch would be better for you.

    Cheers - Bob

     
    Sophos UTM Community Moderator
    Sophos Certified Architect - UTM
    Sophos Certified Engineer - XG
    Gold Solution Partner since 2005
    MediaSoft, Inc. USA
  • @BAlfson, Does either patch address the transparent SSO authentication that the update broke?  AND does the patch break other stuff so it would be better to wait on the next rev?   Sorry to ask you... but you seem to be better informed than most folks have gotten out of Sophos theirselves.... 

     

    Thanks!

  • @BAlfson

    Thx for your effort and input.

    Your cron job saved my mornings ;)


  • WTF??

    So we should be doing debug for sophos?

    Support already applied two patches and the same issue happens!!!

    First BUG 8110. Ok let's patch it. Nothing solved

    Ahh ok. because of this pactch another bug arise ""UTM-7960". (What?!?) Ok. tet's patch it...  Same thing...

    Next .. Ok. Let's capture data .. some TCPDUMP's, wiresharking.......  Ok stop!! ticket closed. Rolled back to 414.

    Lost a lot of configs, a lot of data but everything is back to normal!!!! Man... 3 fuc.... weeks !!!!! Everybody complaining that authentication fails and can't browsing, etc, etc .... I switched of authentication, and then everyone's able to browsing, but authentication, reports on users, gone .....

     

     

     

     

     

     

  • I learned in this 3 weeks

    blame your reseller and maybe if we are lucky there is an update in the middle of July (but its topsecret) HAHAHAHAAHAH ;)

     

  • Stafford, I have no personal experience with any of this as I've done my best to keep everyone on 9.413.

    Cheers - Bob

     
    Sophos UTM Community Moderator
    Sophos Certified Architect - UTM
    Sophos Certified Engineer - XG
    Gold Solution Partner since 2005
    MediaSoft, Inc. USA
Reply Children
No Data