• Remote VPN access - best Practice for increase number remote staff access HQ network shares and services

    Good Morning, A newbie question - in these days of increase remote access to HQ, what is the best VPN service (or combination of) protocol to for staff remote access back to the office from their business laptops. Appreciate it's very much a 'it depends…
  • IPv6 Best Practice

    Hi, I'm running several Sophos UTM's at different places. Some in business environments, one at home with the home use license. When configuring DNS I used these two guides and that worked Pretty well. https://community.sophos.com/kb/en-us/120283…
  • Memory Usage: what do you think?

    Dear all A warning message regarding memory usage draw my attention, found in Up2Date -> Overview. Sophos UTM 9.506-2. Not finding anything particular I rebooted UTM which freed up memory significant. From 75% to around 10%. See below graphic from…
  • DNS Forwarding not changing

    So I am trying to change from my ISP DNS servers to OpenDNS, and I have it set up but keeps saying under "currently assigned forwarders" that it is using the ISP DNS servers.
  • Improving DNS performance on company network

    Greetings Sophos Community, We have a Windows network that connects our automotive group’s dealerships together. I’ve inherited a setup that I believe I can make more efficient by modifying our DNS settings in our Sophos firewalls. I have read BAlfson…
  • UTM distorts IP phones

    Our SG 105 Firewalls are distorting the ip phone calls. We tried it without the firewall and the calls were not distorted anymore. Is there any helping page / recommendations for configuring the firewalls correctly for ip telefon services?
  • Chosing FQDN UTM Hostname alternative

    I have read "The Rulz" and have come away knowing a great deal more about chosing a hostname. I have a DynDNS domain as I do not have a static external IP, so that is my starting point. However, after searching through the threads I am still confused…
  • Best practices when migrating from Verizon ISP Router to Sophos UTM

    Hello, I am planning to migrate to Sophos UTM from my default verizon router. What are the things I should do in preparation in order to have this migration so as smooth as possible. Here are a few things that came to mind: Find out what ports…
  • Can't access router webpage from another network

    Goodmorning everyone, after a little study i realize that the packet filter rule let me pass to the modem 192.168.0.1 from the network 192.168.1.0/24 now the scenario is: one interface of my sophos doing pppoe while the modem is in bridge mode; in…
  • Host not found

    Hi, I'm new to the firewall we used in our company today we are using SG 310 and right now i have problem on DNS and errors logs "Host not found" lately i have been receiving logs: 2016:06:10-10:54:01 sg httpproxy[15120]: id="0002" severity="info…
  • Web filtering issues

    Hello All, I'm new to the forums and have the need to be blocking some websites. I have taken over the role of IT administrator for the time being, so I'm not the original architect of this configuration. I don't know how long I will be maintaining…
  • What is your preferred method adding an additional local network to an existing Site-to-site VPN-Tunnel (IPsec)?

    Is there any checklist I have to follow? Do I have to restart the VPN tunnels on both sides?
  • S2S IPSEC VPN throughput/performance issue with Exchange

    We are seeing some performance issues on our IPSEC VPN connected WAN. We have a remote office connected through a S2S IPSEC VPN. Both WAN connections are Comcast Business 150/25 Mbps We are both on SG210 appliances - latest and greatest firmware…
  • Blocking access time & site based?

    Good morning, I'm in the process of installing a new firewall... Is it possible with the UTM to block internet access based on PC name (or mac address) in combination with certain hour interval & site? VB: Portable-HP can't access Facebook between…
  • How to bind VPN tunnel endpoints to dedicated IP addresses?

    Hi folks, I'm running a SG 115 W with latest sw release. On WAN NIC I've been assigned a /28 subnet from my ISP. Let's name the net AA.BB.CC.DD/28. From this /28 I'like to use 3 IP addresse for the UTM itself, i.e. one as "default" gateway for general…
  • Is it possible to push local user accounts from the SUM to connected UTMs?

    As the subject suggests the general question/idea is: push out user accounts from the SUM to connected UTMs based on groups. The reason for this is: It makes it easy for MSPs to manage technician/user access to the firewall. Let me know if anyone…