This discussion has been locked.
You can no longer post new replies to this discussion. If you have a question you can start a new discussion

XG firewall Virtual and appliance are they the same? Apparently no.

So i have been running XG in a Virtual machine (VM) for a while now and I wanted to see what the appliance was like, same, better or worse than VM. So I got an XG125 set it up exactly the same as the VM, IP address , Rules, VPN set up ETC. the only exception is i tried to set up web site publishing on VM but could not get it working. So after one day on XG125 i discovered some issues with my server. It has Wsus patching service running on it and behind the appliance it can no longer download updates or send email. Email error is quite interesting, mailbox unavailable, relaying denied. And i also have Symantec endpoint protection management console (SEPM)and it can no longer check to see what the latest definitions are, says 'not available'. but it can still download updates. So i shut down the appliance and turned on the VM, now it all works. So what is up on the appliance?



This thread was automatically locked due to age.
Parents
  • Sounds like your configuration did not restore correctly on the XG123. Also did you check the logs to see what was failing in which rule?

    A further thought is that Sophos licensing for XG hardware is different to software.

    Ian

Reply
  • Sounds like your configuration did not restore correctly on the XG123. Also did you check the logs to see what was failing in which rule?

    A further thought is that Sophos licensing for XG hardware is different to software.

    Ian

Children
  • I actually configured the appliance manually by looking at the Vm config and creating same rules. even an allow any to any of any rule does not solve it. yes logs did not help. what is different about licensing?

  • So not much feedback so far. I have solved the email issue with Wsus console. Disabling the 'Auto added firewall policy for MTA' rule fixed the email error. VM also has this rule so why does it work differently here? And the other issues stem from the appliance not being registered. It seems that you cannot use the software/appliance with out activating it as problems not working correctly are designed into the product when unactivated. 

  • also another bug is that firewall logs show nothing, i mean not one entry from the ip address i am testing email from in the lan zone. source and destination IP filters are blank. even port filter 25 log empty.