This discussion has been locked.
You can no longer post new replies to this discussion. If you have a question you can start a new discussion

Webserver Protection does not accept licence

Hello Community,

I've a new firewall installed with a Webserver Protection license enabled. The Sophos License Portal and the Firewall itself shows the license is activated and synced. If I create a WAF Rule I see the message

This feature requires a subscription. It can be configured but cannot be enforced without a valid Web server protection subscription.

and the rules does not handle SSL Traffic. 


Reboot the firewall does not work. After the reboot the firewall still not accept the license. 

Has anybody the same issue or a solution for this issue?

Thanks,

Ben



This thread was automatically locked due to age.
Parents
  • Can you share a screenshot of the Licensing page? 

    __________________________________________________________________________________________________________________

  • Hello LuCar,

    here is the screenshot. The Firewall is part of an HA-Cluster. I also opened a Support Case for this issue but the Support said I should reimage the Firewall. This is no solution for me.

    Thanks,

    Ben

    If a post solves your question please use the 'Verify Answer' button.

  • Does anybody has an idea to get the license accepted by firewall?

    If a post solves your question please use the 'Verify Answer' button.

  • Hi Ben,

    you could try reset factory defaults, apply the licence then do a restore, might work?
    ian

    XG115W - v19.5.1 mr-1 - Home

    If a post solves your question please use the 'Verify Answer' button.

  • It seems to be a known issue and only a cosmetic issue. So the Webadmin actually is pointing out, the license is not there, but the feature should be 100% functional. 

    Can you confirm this? 

    __________________________________________________________________________________________________________________

  • Hello LuCar, Hello Ian,

    In my case it is not a cosmetic issue, it is a real issue. I build a rule that listen on port 443 with a public certificate. Behind the firewall is a webserver with a self-signed certificate. If I try to access the webserver I see in my browser the self-signed certificate except the public certificate.

    To restore the firewall to factory defaults is not really possible because the firewall is far away from my site.

    Is there any possibility to start the license sync from the scratch without a factory reset?

    Thanks,

    Ben

    If a post solves your question please use the 'Verify Answer' button.

Reply
  • Hello LuCar, Hello Ian,

    In my case it is not a cosmetic issue, it is a real issue. I build a rule that listen on port 443 with a public certificate. Behind the firewall is a webserver with a self-signed certificate. If I try to access the webserver I see in my browser the self-signed certificate except the public certificate.

    To restore the firewall to factory defaults is not really possible because the firewall is far away from my site.

    Is there any possibility to start the license sync from the scratch without a factory reset?

    Thanks,

    Ben

    If a post solves your question please use the 'Verify Answer' button.

Children