• Logging der TLS Version ein- und ausgehender Connections

    Hallo, wir würden gerne die TLS Version für die Webserver Protection auf v1.2 anheben und möchten dafür vorher überprüfen, ob noch Verbindungen über TLS v1.0 oder TLS v1.1 aufgebaut werden. Gibt es eine Möglichkeit das über die GUI oder die CLI…
  • DNS Cache flush in terminal

    Hello, Who want to flush the dns cache for real run this command in terminal(ssh): /var/mdw/scripts/named flush this worked for me better then GUI flush button and etc.
  • Can I setup Multicast to work on a L2TP over IPsec connection

    Hello, I am trying to setup a Sophos SG 115 to exchange multicast-messages between clients in a directly connected network with vpn-clients, that are connected via a L2TP over IPsec connection. Is this possible in any way?
  • SG230 Drop in speed between WAN and LAN

    Hi all, I have a SG230. Our WAN is a 1Gbps/1Gbps fibre link and yet running various Speedtests on the LAN from *any* client (workstations or servers) always returns results of 62Mbps/62Mbps fairly consistently. This in itself is weird as prior to this…
  • IPsec with multiple subnets

    I have recently aquired a sophos firewall at work and I have successfully created a IPSec tunnel with a remote site ( IPSec Site-to-Site ) that is attached to our LAN network. ( Users can connect to this remote site via the LAN network flawlessly ) After…
  • How to use cc change_object to delete item from array

    I figured out that I can add items to the cff_profiles array by running: cc change_object REF_HttProContaInterNetwo13 cff_profiles REF_HttCffXYZ Now that I have added that profile. What command would I use to remove that object from the cff_profiles…
  • Is there a way to force an email out from UTM?

    Hi, I've been getting to grips with the UTM (Home license) for a few days and creating a few outbound firewall rules to allow apps such as crashplan and my security camera viewer establish their connections. But the email alerts from the UTM have stopped…
  • Firewall drops traffic from internal network

    The UTM firewall just drops connections or disconnects itself from internal network, while we are able to access the firewall from external network side, at the same time internally their is no problem, connectivity between the internal network is normal…
  • Sophos UTM SG330 DHCP Relay not working over Transfer Network

    Hey guys, I have a Problem with configuring the dhcp relay on a Sophos SG 330 (9.705-3). We want to use a RED60 (standard/unified mode) to manage our branch office, so we attached it on a ISP Router on a different DSL-Connection for testing purposes…
  • UTM API Log Search Capability

    Does the UTM API have the ability to take a list of URLs/IPs/Domains in TXT or CSV, and run it against the logs?
  • Instagram/Facebook Videos Buffering

    Hi folks, I am struggeling with iOS devices (iOS 14) behind a Sophos UTM Firewall using Firmware 9.705-3. The UTM is using Firewall Rules, Intrusion Prevention and Endpoint Protection features. Instagram stories, IGTV videos and Facebook videos are…
  • Wifi Instability with Networks rebooting consistently

    Hallo, out Wifi is currently very instable and the wifi is not available for a few moments. After the few moments the wifi is again available.We have 2 Network Device ( Wifi SSIDs namely 'intern' -> wlan1 and 'gäste' -> wlan0 Hardware: Sophos UTM…
  • "Backup" SSL VPN over second WAN

    As far as I know, setting up the Sophos SSL VPN has one "Interface address" for all profiles. Now, we only have one profile, but I would like to, if possible, set up UTM so that it allows connections over one additional WAN IP (we have two WAN connections…
  • Unable to connect through L2TP/IPSec via macOS and iOS

    Hi, everyone. I'm having a bit of an issue... I cannot connect to my company's VPN with my iOS devices and macOS system. We use L2TP/IPSec. I told Apple, and received this response: Hello. We have upgraded the proposed ciphers in L2TP IPsec VPN…
  • SG230 UTM9 firewall with 1Gb supports Class C network

    hai class C network is possible to configure in a single ethernet port of SG230 firewall with speed of 1 Gb with DLMS/COSEM protocol
  • How to use Packet Filter option for live logs?

    Hello Team, I have tried to use the packet Filter option with multiple combination like IP address, Port, protocol but it doesn't filter/display any result. Can I have some information regarding how exactly it is working and can I have some example…
  • Issue with "Detected Tx Unit Hang"

    Hi all! We are running Sophos UTM9.5 (9.510-5) on ESXi 6.0.0, 9239799 (Hardware Lenovo System x3650 M5, Broadcom NetXtreme BCM5719 gigabit ethernet). Within the last two months the virtual appliance drops the network connection. Networking is completely…
  • VLAN and Setup Help

    I am trying to configure VLANs for my WiFi and I am having problems and I am not sure if its the WiFi system, the HP switch or the Sophos SG135w UTM 9. I currently have 6 AP's to cover the whole site, 3 x UniFi AP and 3 x UniFi AP-Pro they end up in…
  • Add another routed subnet to physical interface

    Hello, I have a Sophos UTM SW with 3 network interface, eth0 for lan (192.168.1.0/24), two for wan ( eth1 on j.x.y.z/24 and eth2 on n.x.y.0/30). The two wan are configured with own default gateway, uplink balancing uses either interface and multipath…
  • IPv6 prefix delegation over WLAN interface is not working

    Hello, i have some problems with the prefix delegation on the WLAN interfaces. I use a AP100 and a AP50. I have a running Teredo tunnel. Now i have set a new network on all interfaces. But the problem is that it's working but only on the internal network…
  • IPv6 prefix delegation on internal interface

    Hi, I'm running UTM in the following scenario: PPPoE DSL Upstream <-> UTM <-> internal router My provider Deutsche Telekom provides me with a /56 IPv6 prefix, I would like to be able to delegate a prefix of e.g. /58 to the internal router so that…
  • Uplink Monitoring Alerts

    I've been using a UTM9 appliance for a couple of years and have fiber Internet service from AT&T. The patch from my AT&T router comes into one of my switches, which has a dedicated vlan which then goes to my 2 clustered UTM9 appliances, before each having…
  • CLI scripts

    Hi guys, I am fairly new with UTM and there was an issue(their log files are 100%) with one of our clients which was resolved by a Sophos Support. Here is what she said she did (yes the support is a female). >Found out that the packetfilter and…
  • Support for PPPoE on Ethernet interface with VLAN tagging

    I have recently changed my home internet from ADSL2+ to NBN (National Broadband Network) FTTC (Fiber-to-the-Curb, not Fiber-to-the-Cabinet). As part of this upgrade, my ISP said that I had to purchase a new router, as this one particular router was…
  • Intermittently losing IPv4 connectivity on WAN

    For a couple of weeks now, I've been encountering intermittent loss of WAN connectivity. Looking in the System log, I see the same sequence of events every time: /var/log/system.log:2018:07:20-01:40:32 astaro dhclient: Killed old client process /var…