• mails rejected "server certificate not trusted" (dnssec behind utm)

    Hope someone with some expertise can jump in: I have a personal mail server behind an UTM 9 Home (Firmware 9.413-4) and just enabled E-Mail Protection on the UTM (Bridge Mode - works fine). While Email filtering etc. is working extremely good (Spam…
  • First time setup

    Hi, I'm new to UTMs and Firewalls and all that sort of stuff. I'm trying to configure a Sophos UTM in transparent mode so that any device that connects to my network including devices that come in from outside are protected by the UTM. I do not want…
  • Issue - Setup a Transparent Bridge in Hyper-V

    Hi, I'm in the process of setting up an install of UTM 9.4 as a transparent bridge between my Ubiquiti UGS and my ADSL Modem in a Windows 10 Hyper-V install. I currently have the following network topology: Modem -- 192.168.2.* -- Ubiquiti USG …
  • HTTP / HTTPS traffic does not pass the proxy

    Hello everyone, I have the problem that traffic from two applications does not pass the proxy. The proxy runs in transparent mode without authentication. The proxy is configured for HTTP / HTTPS. The traffic is not visible in the proxy log, the traffic…
  • blocking webmail: How to block webmail that have the url for email section of site in the path.

    Hi All, We're trying to block personal email sites like Ymail, Gmail, iCloud.., etc. We have created a category under web protection > filtering options > categories and created a web filter profile. With such configuration, the UTM is blocking…
  • Netflix Streaming will not work [Resolved]

    I am having issues getting Netflix streaming to work. I've read through probably every discussion on the forum, but they appear old and none have worked. Luckily Netflix is not a big percentage of what we watch, but I'm pretty sure it was working until…
  • SSL inspection in transparent mode

    I'm trying to make sense of SSL inspection functionality in transparent mode. There are two related sections in the manual (9.408) : - Page 322: SSL scanning: Select to skip SSL scanning for the webpage in request. ...Note that for technical reasons…
  • How to configure SMTP full transperent mode SG105 in bridged mode

    Hi, I'm using a Sophos UTM 9 in Bridge Mode and try to activate the full transparent mode for SMTP. The target is to scan all incoming SMTP traffic on Port 25 for SPAM and to filter it before it gets into the network. Unfortunately I fail with this…
  • Whatsapp calls blocked on wifi

    Hi All, Whatsapp calls are blocked on my network, Sophos UTM 9 is my gateway to the internet, i am using it in transparent mode, and i am opening any service from the internal network to any destination. I tried to open ports mentioned in other threads…
  • Please HELP!! Sophos UTM 9 blocking my cams app

    Hi all, i have a network using sophos UTM 9 as default gateway. i connect to my clients using an app using the UDP port 11001, when i deploy sophos in my network, this app always failed to connect. Also, i can't connect to this link https://***…
  • Web filtering with URL filtering only and BYOD

    Hello, I have a question about the configuration of my UTM. At the moment here is the situation : I have a UTM with FQDN I have two types of computers in my network : Computers who can have UTM certificate BYOD in which i cannot ad the…
  • Transparent mode Web Filtering - streaming not working

    Hi all, I have a UTM 9.401-11 (Home) running. I just made a completely fresh install rebuilding all configuration. My issue is related to Web Filtering and streaming from the nordic site viaplay.dk. My web filtering is running default - Base policy…
  • Wild-card DNS definitions in Transparent Skip list?

    Hi I'm trying to add wild card domains for "Skip Transparent Mode" in 9.355 ( This is needed to get sophos cloud endpoints to work behind a transparent proxy) The area only allows import of network objects, and not RegEx like the scanning exceptions…
  • Web Protection With Subordinate CA

    I was researching the idea of using a subordinate CA in Web Protection for HTTPS decryption and scanning. The idea behind this is that, instead of trying to deploy/re-deploy a new certificate for this to function, that I would use a subordinate CA created…
  • Transparent Mode - Terminal Services

    I am trying to understand how to get individual user authentication on my terminal services servers. This is primarily for reporting purposes as the block lists will be the same regardless. What I have configured is transparent mode with Active Directory…
  • UTM 9.3 transparent proxy + AD SSO

    Hello, I'm trying to switch from proxy standard mode to transparent mode. Currenty use the standard mode + AD SSO for authentication and it works without any problem for over a year now. As mobile devices come into play more and more, I would like to…
  • WebFilter and https://outlook.office.com or https://outlook.office365.com "Host not found" HELP

    Okay, so I have setup the Web Filtering and using the transparent mode. I have added exceptions for Office 365 as we're using Microsoft Office 365 for SharePoint and Exchange. Which all has been working well and I cannot tell by the error what is occurring…
  • HTTP request allow by Transparent Proxy, but answer gets blocked by firewall

    Hi folks, I noticed that some pages are very slow since the upgrade to UTM 9.352-6. Don't know if this has to do with the upgrade. But today I also noticed many blocked packets from external hosts in the overview tab of "Network Protection". I did some…
  • Skip Transparent Mode Destination intercepted by Transparent Mode Web Filter Profile

    In 9.314-13.1, it seems that hosts/networks in the "Skip Transparent Mode Destination Hosts/Nets" list are not always properly being skipped and are instead being intercepted by a Transparent Mode Web Filter Profile when one or more profiles are in the…