Guest User!

You are not Sophos Staff.

This discussion has been locked.
You can no longer post new replies to this discussion. If you have a question you can start a new discussion

Web Authentication MR5

Last friday, I installed the latest version of the firmware (SFOS 18.0.5 MR-5-Build586) on an XG230 Active/Passive cluster (we still had SFOS 18.0.4 MR-4).

All looked well, until I got a message this morning that (nearly) nobody could access the web.

After a while I noticed that the 'firewall rule' requiring authentication wasn't triggered, and the rule allowing anonymous traffic was fired (this is placed below the one with authentication).  

According to https://docs.sophos.com/nsg/sophos-firewall/18.5/Help/en-us/webhelp/onlinehelp/nsg/sfos/concepts/AuthenticationWebAuthentication.html the working isn't altered, so once the firewall rule is applied it should try to authenticate first (AD SSO). 
From the log viewer > authentication I can't tell if there is an authentication attempt, and if so, if it is failing.

I read the thread where is stated that the "client authenticator agent" might need to be installed, but I'm not even sure if it was installed previously, I don't find anything on my computer which I think this might be it :)

What might I be overlooking .. Or is this a bug?

BR,

Alain



This thread was automatically locked due to age.
Parents Reply
  • Hello Alain,

    Thank you for the follow-up and confirmation.

    Since you mentioned something about the "Authentication Agent" I got confused.

    Please go to System >> Administration >> Device Access 

    And make sure AD SSO is enabled for the zones where the authentications are coming from, as well If Client Authentication and Radius is enabled, please disable them.

    Also confirm the Authentication Server configured for the Authentication is still reachable (Configure >> Authentication >> Servers)

    Regards,

Children