Guest User!

You are not Sophos Staff.

This discussion has been locked.
You can no longer post new replies to this discussion. If you have a question you can start a new discussion

XG Firewall wifi no authenticating connections on AD Domain Controller and no access to LAN printer

I recently installed XG135w firewall with two additional access points. Since doing this, laptop users who connect via wifi are not authenticating on the AD Domain Controller and cannot print to a network printer.

Local LAN uses  x.x.0.x
Wifi is set up to use the DHCP server on the AD and the connection is set up as Bridge to AP LAN. Laptops are connecting to the wifi and picking up a x.x.0.x IP address from the Domain Controller. I can see the laptop on the wireless access point on the Sophos XG, I can see the laptop on the DHCP list on the DC.

Access to the wifi network is via a PSK.

The domain controller is on x.x.0.2 and I can ping it from the laptops connected via wifi. The printer is on x.x.0.40 and I can also connect to the printers web interface from the laptop. When I tried to log in to the laptop using a domain account that has never been used previously, I got the error 'Your domain is not available'. None of the laptops are able to print when connected to wireless either. 

I have a rule set up on the XG 'Traffic to Internal', which (I beleiove) should give access from all wireless devices to the network printer. The MultiFunction Printer is set up in the Hosts and Services as a fixed IP address.

Looking at the rule in the Rules and Policies there is no traffic going through this rule. 

As a test I enabled a new admin account on the AD and then connected a laptop to the wireless. The laptop picked up an x.x.0.x IP address from the DHCP server on the AD. The laptop was showing on teh Wireless AP list on the Sophos. It had internet access and was able to browse web pages using a local account logged into the laptop. When I then tried to log in as the new temporary admin I get the error 'We can't sign you in with this credential because your domain isn't available'.

Can anyone shed some light on what I may have configured incorrectly or how I can diagnose the issue.

Thanks



This thread was automatically locked due to age.