This discussion has been locked.
You can no longer post new replies to this discussion. If you have a question you can start a new discussion

sophos xg have issus in the first time configuration

Hello all,

 

I have issues in Sophos xg as following:

I installed Sophos xg “SFOS 17.1.0 GA” in pc core i3, Ram 4G, 80G HDD, connect it with AD

I made a policy that allow all traffic from any to any for any user, I want to test the firewall in the first time, but I notes these:

I have 2 issues: when I choose " Match known users " in the roll and select a group of users in AD the internet stopped in their PCs, so the internet just works when un-choose " Match known users ". But even the internet works the big problem that: there are continuous cutting in the Internet, I connect the users now directly to the modem, I want to solve this problem before I can return Sophos to service.

 

Thanks

Sami

 

 

 



This thread was automatically locked due to age.
Parents Reply Children
  • Hello Mr. Deo,

    thanks to your replay and I'm so sorry to late.

    In fact, I raised RAM to 8GB, the avarage in the dashboard was: CPU 2% , Memory 44% , then follow the steps in the link, all thing right about the users and groups, I make group in AD and import it to sophos, all users in that group appear in alive users, until now all thing right.

    the problem appears when make rules, at first, I make 2 rules:

    1> to (reject or deny) any traffic from any to any.

    2>to allow all traffics from any to any, without any "Web Malware and Content Scanning", no “Intrusion Prevention ”, no “Web Policy ”, no “Application Control ”. But in “Identity” I have 2 results:

    When check Match known users” and select the group that have AD users, the internet has unstable connection.

    When non-checkMatch known users” to allow any user, the internet become stable.

    In fact, I delete the first rule “deny any” because sometimes the user stop in it and don’t Continue to the second rule.

    I note that in the log, sometimes the user has Invalid Traffic with Denied action and take no firewall rule.

    Regards

    Sami