This discussion has been locked.
You can no longer post new replies to this discussion. If you have a question you can start a new discussion

XG Firewall v18.0.4 - VPN - No option to configure Sophos Connect Client

I noticed there is a connect client for Mac and I wanted to use it.  I followed the instructions for setting up the Connect Client in the Sophos Firewall XG.

What I found was there is no configuration for Connect Client:

Does anyone know WHY the option is not here?

This is from the setup video. 

support.sophos.com/.../KB-000038464

Thank You,

Peter Geremia



This thread was automatically locked due to age.
Parents
  • Hello,

    For Sophos Connect IPsec configuration It's inside IPsec (Remote Access). *This option will also allow to create the provisioning file without scadmin.

    For Sophos Connect SSLVPN configuration it's Inside the "Show VPN Settings" for the own SSLVPN Configuration, and SSLVPN (Remote Access.) for the User/Group allowed configuration.

    And then you will need to create a provisioning file, you can see some examples at the Docs.

  • Why does it seem like solutions go from simple to deploy to way more complex?  I think I will just stuck with Tunnelblick and just downloading the SSL VPN client config from the user portal.  It seemed like they. had a good solution and even a video on how to easily deploy it.  Why did that change?

  • Sophos Connect WAS a Ipsec Client. So the solution back in the day was to replace the Cisco VPN term with "Sophos Connect". 

    As Sophos Connect launches 2.0, it supports SSLVPN on Windows too. So customers got confused to configure Sophos Connect via SSLVPN and via Sophos Connect.

    Therefore Sophos moved away from Sophos Connect calling, instead replaced it with SSLVPN and IPsec Remote access. Those are standard terms for both technologies. 

  • So if I want to use Sophos Connect client on my Mac I have tried everything to create a SSLVPN profile or IPSEC.  There is a lot of conflicting information.  Do you have a pointer to documentation for this?  Thanks for the explaination.

  • Basically Sophos Connect is a Client, which uses basic SSLVPN and IPsec VPN technologies. So it does not matter, if you use Sophos Connect, Tunnelblick, or OpenVPN etc. The Configuration on the XG is the same. The same is for IPsec VPN.

    Many customer uses different technologies to connect to the XG firewall and different clients. Therefore it makes sense to me to rename it to the standard industry phrases. 

    PS: Sophos Connect on MacOS only supports IPsec, not SSLVPN. 

    If you want to use Sophos Connect for IPsec on MacOS, it should be the same covered by this: https://docs.sophos.com/nsg/sophos-firewall/18.0/Help/en-us/webhelp/onlinehelp/nsg/sfos/concepts/VPNSophosConnectClient.html

Reply Children
No Data