This discussion has been locked.
You can no longer post new replies to this discussion. If you have a question you can start a new discussion

sophos xg have issus in the first time configuration

Hello all,

 

I have issues in Sophos xg as following:

I installed Sophos xg “SFOS 17.1.0 GA” in pc core i3, Ram 4G, 80G HDD, connect it with AD

I made a policy that allow all traffic from any to any for any user, I want to test the firewall in the first time, but I notes these:

I have 2 issues: when I choose " Match known users " in the roll and select a group of users in AD the internet stopped in their PCs, so the internet just works when un-choose " Match known users ". But even the internet works the big problem that: there are continuous cutting in the Internet, I connect the users now directly to the modem, I want to solve this problem before I can return Sophos to service.

 

Thanks

Sami

 

 

 



This thread was automatically locked due to age.
Parents
  • Hi Sami,

    If you wish to use Authentication , you may use the followjing options for captive portal/ SSO. When you authenticate ,is the user location on the same group on the XG or not. 

     If not you may try to move the OpenGroup position below the groups that you have imported as it follows top to bottom as a priority.. If the users are in correct group, then the rule should work. 

    You may create a  test rule and use a single user with a different group. So it woud affect your network downtime.

    As for the network connection, there could be many reasons for having instable connection. 

    Test 1.

    Conduct a PING test using terminal .

    Command console> ping count 100 size 1000 8.8.8.8

    it should not be >5%

    Check the negotation between your WAN link of the XG and the ISP gateway/Modem.

    command  Console> system dia uti band    

    Toggle  'u' two times this should be the expected output. If not, change the negotation speed to 100MBPS FD /HD  and so on.

Reply
  • Hi Sami,

    If you wish to use Authentication , you may use the followjing options for captive portal/ SSO. When you authenticate ,is the user location on the same group on the XG or not. 

     If not you may try to move the OpenGroup position below the groups that you have imported as it follows top to bottom as a priority.. If the users are in correct group, then the rule should work. 

    You may create a  test rule and use a single user with a different group. So it woud affect your network downtime.

    As for the network connection, there could be many reasons for having instable connection. 

    Test 1.

    Conduct a PING test using terminal .

    Command console> ping count 100 size 1000 8.8.8.8

    it should not be >5%

    Check the negotation between your WAN link of the XG and the ISP gateway/Modem.

    command  Console> system dia uti band    

    Toggle  'u' two times this should be the expected output. If not, change the negotation speed to 100MBPS FD /HD  and so on.

Children
  • Hello Mr. Aditya,

    thanks to your replay and I'm so sorry to late.

     

    About: “If you wish to use Authentication , you may use the followjing options for captive portal/ SSO. When you authenticate ,is the user location on the same group on the XG or not.

     I want just the users in AD to access the internet and control them, drop another user, but shuld I cheack the .

     

    About: “If not you may try to move the OpenGroup position below the groups that you have imported as it follows top to bottom as a priority.. If the users are in correct group, then the rule should work.

    The group in the correct group

     

    About: “Test 1.

    Conduct a PING test using terminal .

    Command console> ping count 100 size 1000 8.8.8.8

    it should not be >5%

    How to make it, I installed the Sophos xg in PC and deal with it via web browser.

     

    Million thanks and Regards

    Sami