Guest User!

You are not Sophos Staff.

This discussion has been locked.
You can no longer post new replies to this discussion. If you have a question you can start a new discussion

Two Sophos XG sharing same clients certificates , how to ??

hello

we have two sohos xg in different locations, each one has different ports and configuration
our users use android and windows agents to access the internet.
the problem is that the two XGs have different client certificates, so when user move from location to another, agent doesn't work because different certificates
so they have to reimport certificates every time on each location.
is there anyway to unify clients certificates on both sophos xg so users import them once
and use network agent on all XGs on different locations

THANKS



This thread was automatically locked due to age.
Parents
  • Hello Ali,

    Thank you for contacting the Sophos Community.

    The user will have to import the XG certificate of each Firewall, it should be only a one-time thing, however, if you use Sophos Mobile, you can push this automatically.

    docs.sophos.com/.../InstallRootCertificateUsingSophosMobileControl.html

    Regards,

  • hello

    1- we don't have Sophos mobile, and we have hundreds of users.

    2- could android Sophos client agent import two certificates and use them at the same time? I know it only takes the last one they import?

    3- could I change the predefined certificate for clients (windows, android), for example generate self-signed one and apply them for all agent clients (I know I can do this for web admin and captive portal)

    4- my other scenario is that we have 600 users in one location xg 430, we will buy 4500 xgs for same location , how to transfer client certificate from old one to the new on, to keep users using the same android and windows clients without reimport certificates because our users not technical enough to do this.

    thanks

Reply
  • hello

    1- we don't have Sophos mobile, and we have hundreds of users.

    2- could android Sophos client agent import two certificates and use them at the same time? I know it only takes the last one they import?

    3- could I change the predefined certificate for clients (windows, android), for example generate self-signed one and apply them for all agent clients (I know I can do this for web admin and captive portal)

    4- my other scenario is that we have 600 users in one location xg 430, we will buy 4500 xgs for same location , how to transfer client certificate from old one to the new on, to keep users using the same android and windows clients without reimport certificates because our users not technical enough to do this.

    thanks

Children
No Data