• SSL VPN: remotely authenticated (ADDS) but VPN fails

    Hi, one of our recently created users cannot use SSL VPN. We use Microsoft ADDS, users are imported & created through the console manually ("Prefetch Directory Users"). On dial-up authentication services return success... 2017:03:10-10:47:27 <firewall…
  • Sophos UTM9 Remote access SSL VPN Certificates

    I'm new to setting up VPN's and I am tasked with setting up Sophos UTM9 Remote access SSL VPN, but they would like SOPHOS to require a certificate installed on the clients machine in order to be able to install the VPN client and then connect into the…
  • SSL VPN Geschwindkeitsprobleme (Vodafone LTE)

    Hi Ihr, folgendes Szenario Standort A (Zentrale): ASG525 9.408-4 Remote Access SSL VPN Protocol TCP, AES-128-CBC, MD5, 2048Bit, Compress SSL VPN Traffic Standort B (Aussenstelle): Client-PC Standort via LTE erschlossen, Bandbreiten…
  • Remote Access SSL VPN + Comodo SSL Certificate

    Hey All! :-D I was curious if adding a Comodo Positive SSL Cert would benefit the Remote-Access SSL VPN ? or is there another benefit other than the Certificates that come standard with Sophos? What do you guys think ?
  • Remote Access SSL VPN

    Hi, May I know, is there a way to make Sophos UTM 9 Remote Access SSL VPN to auto connect? Currently, when I turn on my PC, the vpn not connected. I have to manually connected it. Is there any solution? THANKS ALL!
  • 2 SSL Tunnel über Hauptstandort miteinander verbinden

    Hallo ! ich habe 3 x UTM 1x Standort A feste IP 1x Standort B dyn IP 1x Standort C dyn IP B --> A Site2Site C --> A Site2Site B Kann auf A zugreifen, von A auf B sowie C auf A und von A auf C ich möchte nun aber, dass B und C miteinander…
  • Sophos SSL VPN and SSL Scanning

    I'm sitting behind a UTM 9.4 firewall(1) with HTTPS Decrypt and scan enabled. I'm trying to SSL VPN into another UTM 9.4 firewall(2) using a publicly addressable FQDN via OpenVPN on a Linux Mint 18.3 laptop. Firewall1 will not allow the SSL VPN to…
  • SSL VPN with 2 Internet Connections and 2 Hostnames

    Good Morning Everybody, I need your help... I have 2 difference Internet Connections. One from A1 (slowly....) and a twice (faster,backup) LTE Connection. The UTM is configured with Upload Balancing beetween this two Uplinks. I also have a…
  • Emulating automatic VPN firewall rules

    The automatically-generated firewall rules for a site-to-site SSL VPN connection allow traffic to/from the remote network as well as the IP address assigned to the tunnel; i.e. 10.242.2.x or something like that. I need to setup rules along the same lines…
  • Steam-inhouse-Streaming & SSL VPN

    Hallo liebe Sophos Community, ich besitze bereits seit geraumer Zeit eine "Sophos Home", welche ich als virtuelle Appliance, auf meinem HP Microserver Gen8 am Laufen habe (ESXI). Dank CPU, RAM, SSD, und HP P221 RAID Controller Upgrade, läuft die Appliance…
  • SSL VPN non user specific config

    Is there a way to set up the SSL VPN on company laptops that are not tied to a particular user config? I have several laptops I check out to users at our business, right now I have to install the config for every user it seems. Am I missing something…
  • UTM 9 SSL VPN ausgerollt, Probleme bei einzelnen Usern

    Hallo Zusammen, Wir haben bei uns im Unternehmen ein Problem welches den VPN-Zugang von diversen Usern betrifft. Grundsätzlich läuft alles einwandfrei nur es ist nun bereits einige Male aufgetaucht, dass User sich einwählen konnten, allerdings nicht über…
  • SSL VPN Client to use local IP in Home Office does not work properly

    Hello everyone, I am very concerned about an issue that I am experiencing with SSL VPN Clients. The idea is to simulate the SG210's local (public) IP-address on a couple of home offices. They shall not have access to the internal network, though…
  • DNAT config issues when blocking access to internal network from VPN

    Hi guys, Hope this finds you well, I'm having issues configuring a DNAT correctly. The end goal is to create a full tunnel SSL VPN profile that has access out to the internet only, denying all connections to the local network. This topic has…
  • Remote access SSL VPN not working

    Hi folks. I am trying to establish a Remote Access VPN tunnel on my newly deployed UTM 9 Home. The configuration for the SSL VPN is pretty straightforward and I've followed all of the instructions that Sophos published here . The remote browser gives…
  • SSL-VPN 9.355 nach 9.407-3

    Hallo zusammen, ich habe vor, unsere UTM von 9.355 auf 9.407-3 upzudaten. Die SSL-VPN UTM läuft im HA-Verbund und ich würde sowieso im Reserved-Modus updaten wollen. Habe dabei vorab in den Release Notes gelesen das der mit 9.404 installierte…
  • Routing HTTP(S) traffic outside of Site to Site SSL VPN

    Hi, We've only had our SG430 a few months and for the most part have figured out how to do what we want it to do. The one thing I cannot figure out is this. We have an externally hosted website that internal users need to access, this external site…
  • SSL VPN via Viscosity -- Won't Connect

    Sophos Forum, Hello. Ive been trying to get this to work for a few days now. Spent the past two days spinning up a brand new UTM instance. -- Still, no workie. Please help. The situation: I do not have DNS set up for this, so I am putting my exterior…
  • VPN IP assignment pools overlap whatever I choose

    Hi, I want to change the settings of my SSL remote access, but where ever I chose to change anything it keeps complaining about VPN IP assignment pools overlap. Ofcourse I checked if it is used somewhere else, but it isn't. If I change it to a completely…
  • RE: Version of OpenVPN Client that comes with UTM 9.405-5

    Hello, I will answer my own questions here in case it helps someone else, as we have just upgraded to UTM firmware 9.405-5 from previously 9.356: UTM v9.356: OpenVPN client v2.3.0 with TAP driver v9.00.00.20 UTM v9.405-5: OpenVPN client v2.3.8 with…
  • RE: Is it possible to add additional connections to the SSL VPN Client?

    The client does support multiple different accounts (and/or presumably different UTMs), if that is what you're asking. For example, I have 2 accounts setup, each with it's own separate certificate downloaded through the User Portal. We do this for…
  • OpenVPN 1.07 - no connection possible anymore

    Hello, I try to use VPN on iOS devices, but I´m facing serious problems since OpenVPN was updated to 1.07 for iOS devices. I cannot establish a connection anymore with the previous versions of OpenVPN and/or Sophos UTM I was able to connect. Log…
  • VPN SSL Disconnect after 1 hour, PPTP or L2TP don't have problem

    Since 15 days we began with this problem, all the ssl vpn clients are disconnect every hour, for example one client connects at 7:45 AM, another connects at 8:00 AM and the last at 8:05 AM, then at 8:31 AM o clock all clients are disconnected and the…
  • SSL VPN with internal CA - root,intermediate and clientCA

    Hi all, I am trying to migrate RAS SSL openvpn from an existing setup to sophos UTM 9 and I am struggeling with sophos certificate management. The existing openvpn setup works well and from a certificate point of view looks like the following: rootCA…
  • Is there a guide for connecting IOS and Android to Sophos UTM 9 SSL VPN?

    Hi, We just setup a new Sophos UTM, and Windows clients are working well. However, I have some users that want to connect via iPad and Android tablets. I haven't seen any guides on how to allow access from these devices. Thanks! --Kent