This discussion has been locked.
You can no longer post new replies to this discussion. If you have a question you can start a new discussion

Sophos Connect VPN Timeout

Hi,

 

Can the VPN timeout on Sophos Connect be extended to say 8 hours? I believe the default in the config file is 15300 seconds or 4.25 hours. As it is in the config file, it can be extended, however the VPN uses the default remote access IPsec profile which have a phase 1 key life of 18000 seconds or 5 hours. I was unable to modify the profile nor can I select another profile for the VPN to use.

The reason for requesting longer timeout on the VPN is because the VPN gets disconnected during renegotiation due to OTP/MFA/2FA being used. Thank you.

 

Regards,

 

WA



This thread was automatically locked due to age.
Parents Reply
  • Please advise if there is an ETA to the resolution of this issue.  Four or five hour timeouts without warning is not acceptable for users, and suggests the MFA should not yet be enabled in Sophos Connect.

     

    I see from another thread that Sophos Connect 2.0 now allows connections to use the SSL VPN instead of Sophos Connect as a work around for this issue.  Does this suggest Sophos is moving away from Sophos Connect and adopters of Sophos Connect should move to SSL VPN instead?

     

Children
  • Sophos is actually integrate SSLVPN into Sophos Connect, that Sophos Connect is able to handle both. 

    This is currently possible but with limits. 

    The goal is, that the User based certificated will be automatically be integrated and the admin/user does not have to do it by their own. Currently Sophos Connect 2.0 supports manual SSLVPN config import by the user and this works fine.