This discussion has been locked.
You can no longer post new replies to this discussion. If you have a question you can start a new discussion

v18 MR-1 killing all traffic

I loaded MR-1, everything was fine for a while then suddenly all traffic dropped. I could still get into XG itself and nothing looked wrong, so I thought it was an upstream device. I rebooted those but still nothing. Rebooted XG and suddenly everything started working again. No more than 15 minutes later, all traffic died again. This time I spent some time looking at the XG logs but nothing stood out. No services were reported down and all interfaces and gateways reported as up. I have since reverted back to GA build 354 and all again is right with the world. When I have some time I can push MR-1 back on and dig some more, but wanted to share in case anyone else has had a similar experience.



This thread was automatically locked due to age.
Parents
  • Same here, since 20 minutes the log isn't showing up any new entries and WAN Traffic is dead. Traffic to internal resources or between ipsec tunnels are working.

    On the WebAdmin the page for the pattern updates doesn't load.

  • Hi Felix,

          We have applied probable fix in your device and now monitoring the device.

    Thanks for your prompt and active support.

  • could you please share this fix to the community?

    We just upgraded appliances in our datecenter and if they stop processing traffic, we probably lose remote access!

  • Why are you all updating critical / productive systems the first day a new version is released?

    Of course these problems shouldn't happen but we all know that most XG firmware updates brought new issues to the table.

    And if you do you (should) know that you can roll back to the previous installed version.

    Regards, Jelle

    Sophos XG210-HA (SFOS 18.0.4) on SG210 appliances with Sandstorm and 1x AP55
    Sophos Central with Intercept X Advanced, Device Encryption, Phish Threat, Mobile Control Advanced

    If a post solves your question use the 'This helped me' link.

Reply
  • Why are you all updating critical / productive systems the first day a new version is released?

    Of course these problems shouldn't happen but we all know that most XG firmware updates brought new issues to the table.

    And if you do you (should) know that you can roll back to the previous installed version.

    Regards, Jelle

    Sophos XG210-HA (SFOS 18.0.4) on SG210 appliances with Sandstorm and 1x AP55
    Sophos Central with Intercept X Advanced, Device Encryption, Phish Threat, Mobile Control Advanced

    If a post solves your question use the 'This helped me' link.

Children
  • to fix more critical issues from previous releases.

  • Hello Jelle

    In my case, I do upgrades at night.  I have ample time to revert back to previous version.

    And it helps to warn others if a version is botched.

    Paul Jr

  • Hi Paul,

    so I guess those are not productive systems? Or at least not that important so you can risk downtime? Well, then you were not the one I was talking about. And yes, we need people like you who bump into issues and warn the others not to apply the update. Sophos seems to have big problems to make sure everything is working. Thanks for that! I really appreciate your support.

    Regards, Jelle

    Sophos XG210-HA (SFOS 18.0.4) on SG210 appliances with Sandstorm and 1x AP55
    Sophos Central with Intercept X Advanced, Device Encryption, Phish Threat, Mobile Control Advanced

    If a post solves your question use the 'This helped me' link.