• Many to Many NAT rule

    I have a UTM running 9.4xx and need to perform many to many NAT. I am new to Sophos appliances but am familiar with others where this is possible. Is this a limitation of Sophos UTM?
  • ICMP request echo requests on WAN by the UTM/process

    Hi all, I've been recently monitoring a bit my network and found out that my Sophos UTM box is generating ICMP request from it's WAN interface. It seems to me that the process responsible for the ICMP echo request is "service_monitor" here on PID 8942…
  • Publish app server and TCP port to internet - WAF or DNAT?

    Hi I'm running ASG software UTM v9.411 which is installed as a backend proxy. UTM has internal and DMZ interfaces and edge firewall NATs public facing IPs through to UTM DMZ interface additional IPs for my WAF standard HTTP/S webserver rules which are…
  • Webfiltering blocking a webapp

    Hello, We are trying to access a particular website - http://x.x.x.x:1467/capexweb/capexweb/. The webfiltering is blocking the page even with all the exceptions in place. Web Protection > Filter Options > Exceptions > For the above link, everything…
  • Single UTM to control two separate AWS VPCs

    Hello, I have a quick question, is it possible to have a single Sophos UTM which can control and manage two different VPCs in the same region. We have 2 different AWS VPCs in same region lets says EU Ireland. Both VPCs are entirely on different private…
  • Outbound L2TP/IPSEC VPN fails

    Just installed a Sophos UTM 9 Home edition firewall. Everything appears to be working well, but when I attempt to connect to a client VPN from my laptop on the internal network, I get a 789 error and it never connects. So my laptop on internal network…
  • One seperate external Line for only one SSL VPN Power-User of many

    Hello Everyone, a customer of ours asked us a question about giving a Power-User a seperate DSL-Line with a static IP-Address for his home-office. So here is my question: Is it possible to give one single user an ssl-vpn profile that connects…
  • Windows Store error 0x8024500C

    Hello, It's impossible to download or update applications from windows store ! Always error 0x8024500C ! I have UTM 9.502-4 . Is UTM block this application ? thanks Fabrice M.
  • Routing all traffic from LAN to Internet over VPN Tunnel in DMZ

    Sophos UTM Configuration Interfaces External (WAN) 82.x.x.x DMZ 10.0.0.1 /8 Internal (LAN) 192.168.0.1 /24 Network Services - DNS - Global - Allowed Networks DMZ Network LAN Network Forwarders - DNS Forwarders Google DNS…
  • C2/Generic-A AFCd

    I'm having multiple UTMs reporting a C2/Generic-A from IP address: 45.33.9.234. I have scanned every server/PC that is reporting on and there is never anything there. I believe this is a false positive and I cannot get Sophos to help me out on this one…
  • Local Client not able to access resource from Sophose SSL VPN client

    Hello Friends, I am a new to Sophose, i have sophose UTM9 is installed & company employees are able connect through the Sophose SSL VPN client to Office resource. Am able to ping to SSL VPN client machine & client machine is able to ping my machine…
  • DMZ, VPN Client, Routing, FW

    DMZ, VPN Client, Routing, FW Hello, I would like to setup a router (VPN Client) in a DMZ and route traffic from LAN over DMZ to Open VPN Tunnel. I have the following configuration till now: WAN Interface (Ethernet) : 82.x.x.x LAN: 192…
  • pfSense as Remote Access SSL OpenVPN client

    I'm having issues trying to configure my pfSense router as an OpenVPN client (Remote Access) for UTM 9 deployed on AWS. The OpenVPN client can connect fine via TCP/443, however. Neither local devices on the LAN or the router itself is able to reach any…
  • Internet Access for Private EC2 Instance with UTM as the NAT Gateway

    Hello! We have an AWS VPC setup with one private subnet only and hardware VPN access ( scenario 4 ). The private subnet contains one Windows EC2 instance which we connect to using SG105 UTM through RDP. Everything works fine and we are able to connect…
  • NAT rule for internet access for AWS EC2 Private Instance

    Hello, We have a VPC scenario 4 ( private subnet only with hardware VPN access ) implemented on AWS with one Windows EC2 instance in the private subnet. We are using SG105 UTM as the customer gateway. Currently, we RDP into our instance using VPN which…
  • DNS traffic from SSL VPN clients allowed any DNS server

    Hi all, While testing some stuff on travel, I've discovered that my SSL VPN connected client can make DNS requests to ANY dns server (home ISP router, Google public DNS etc). That's a little weird to me because my Network Protection --> Firewall --> Rules…
  • IPS attacks with source IP addresses of UTM

    FormerMember
    FormerMember
    Hi, today, i've got many IPS alerts with the source IP of UTM's LAN and WAN ports. Is this normal? Regards Meghan P.S. The address No.1 in Screenshot 1 is the LAN IP of UTM and address No.2 is the WAN IP of UTM
  • How do I allow Slack Calls from App with UTM 9

    I recently installed a UTM 9 in my home but it kept blocking me from making Slack calls, however I can message via slack, just not call. Although I do receive the incoming call alert
  • Alert in Network Protection with ATP - C2/Generic-A mrdistrupd.com

    Hello, First, sorry for my english, you know french guys don't speaks correctly english x) .... I have an alert on Sophos UTM 9 in network protection Advanced threat protection : ip source : (my server DNS) adresse ip de destination : mrdistrupd…
  • Issue: DHCP is not working for one client. Help!

    I'm having an issue with a new device obtaining a DHCP lease. The client is a LiftMaster MyQ Internet Gateway device and a static IP can't be set. I see the request hit the DHCP log but it just loops between discover and offer every 5 seconds (log below…
  • Block Internet Access of a Host on RED Network

    Hello, We have about 22 IP CCTV cameras that need to be blocked for internet access. Only the DVR (with which the cameras are attached) will be needing the internet access. The cameras are connected to a RED working in split mode. The IPs of the cameras…
  • SG125 Two WAN links and two LAN links with a separate IP

    Hi, I have SG125 currently with one Internet and one LAN network (192.168.5.x). I want to add an extra Internet link to the UTM and use this link for a different LAN (192.168.10.x) which has only camera connected to. The setup I want to do is -…
  • Force specific Clients to use transparent HTTP Proxy

    Hello, I have setup the Sophos UTM 9,5 for my Home Network. Ground configuration was done by the Auto Wizard. Clients get DHCP configuration from UTM. GW / DNS for Clients is the Internal UTM IP Address. Under Network Services - DHCP I add static all…
  • XBox Live Access and Multiplayer Gaming (Overwatch, etc.)

    I am posting this question...and the answer I found...here in this forum in the hopes that it will help others who may encounter the same issues. I'm still new to the world of UTMs, so if I've misstated/misunderstood anything, or any of the experts have…
  • Limiting requests

    Hello, on a specific NAT rule, i receive too many requests and i would like to limit that number. Is that something possible? Thank you!