Guest User!

You are not Sophos Staff.

This discussion has been locked.
You can no longer post new replies to this discussion. If you have a question you can start a new discussion

VPN and Certificate Authentication

Hello,

Looking for guidance here with VPN and certificate authentication.

We have a client that requires we implement certificate based secondary authentication for the VPN. We currently use LDAP authentication to AD and they want to use certificates for the secondary authentication method.

How can we accomplish this with the Sophos SSL VPN, we're using the Sophos Connect client? There are two XGS 3300's in HA Active/Passive.



This thread was automatically locked due to age.
Parents Reply
  • To be honest, most customers i talked to, have still a licensed VMware Machine somewhere. Hyper-V was not a blocker for customers for most integrations. They simply spin up another Vmware Machine, they have laying around somewhere (depends on the costumer size). 

    __________________________________________________________________________________________________________________

Children
  • This customer has 400 users connecting to Sonicwall NetExtender SSL VPN and we need to move them over to Sophos Connect or ZTNA. We have servers on-prem running on Hyper-V and slowly migrating to Azure so I can either have the SSL VPN run off the Sophos XGS on-prem or the one in Azure. The only thing holding us back from moving the VPN off the Sonicwall is the MFA requirement and that must use certificates installed on company owned devices.

    I might just abandon the SSL VPN on the XGS and move over to Azure VPN. It's pretty quick, the only thing I haven't figured out is how to update the routes that are being advertised.

    We don't have any VMWare hosts unfortunately, it's purely a Hyper-V/Azure show.

Share Feedback
×

Submitted a Tech Support Case lately from the Support Portal?