Guest User!

You are not Sophos Staff.

This discussion has been locked.
You can no longer post new replies to this discussion. If you have a question you can start a new discussion

Some websites get ERR_TIMED_OUT

Hello

I have been looking for this problem for a while now.

Support was useless.

On 2 different sites, at random moments, some websites are returning ERR_TIMED_OUT .

Site https://www.bankinter.com/ or another one point on a server on Azure.

I know they work because on the third site with Ubiquiti or from home, it works.

I have : 

1. pretty much any filtering from Firewall rules

2. checked and changed the DNS

3. upgraded to 19.5MR1

4. Disabled HA (no matter if it is disabled / A/P or A/A)

5. changed the internet connection

I already have a post about this but never really got help.

This is my last attempt before I ditch these Sophos.

Any clue is appreciated.

Don't hesitate to ask for screens or logs, I can provide.

Thanks

Fab



This thread was automatically locked due to age.
Parents
  • Did you give more infos in your earlier/older post?

    I find your explanations very unclear and unspecific:

    1. You switched off filtering for testing, ok. But do you use the proxy, if yes, which mode? Did you implement a MASQ rule for the ISP uplink port?

    2. You "checked" the DNS? How? Show us the configuration. please. (paste screenshot)

    3. At least we know the release version your are on.

    4. Do you have a second firewall with HA in place? Is your cabling correct?

    5. What do you mean by "changed the internet connection"? Do you have different providers you can use alternatively?

    We are volunteers trying to help, but we do not have a crystal ball.

    Mit freundlichem Gruß, best regards from Germany,

    Philipp Rusch

    New Vision GmbH, Germany
    Sophos Silver-Partner

    If a post solves your question please use the 'Verify Answer' button.

  • Hi Philip,

    Thank you for the reply.

    Sorry if it is unspecific. I'll try to make it clearer.

    2 Sites, both in HA.

    One Has XG2100 (19.0.1) and the other XG2300 (19.5MR1).

    1. There is no upstream proxy. I don't get MASQ on the uplink port. MASQ is linked to the FW rule

    2. Here you go.

    3. 19.0.1 on one site and 19.5MR1 on the other.

    4. I have checked the cabling on both sites, change from HA A/A to A/P, remove HA. Remove second appliance completely, remove the second internet line, change the internet line. I have replaced the XG2100 by a UDMPro to test and discard any other equipment -> This is working like a breeze.
    5. Yes indeed. On one site I have Telefonica and Orange. On the other I have Proximus and Colt.

    I am sorry if it was not clear enough and I am happy to add anything that might help.

    This is what I get...


    Thank you very much for your time.

    Fab

  • Could you try using IPv4 DNS resolution only? Disable IPv6?

    Mit freundlichem Gruß, best regards from Germany,

    Philipp Rusch

    New Vision GmbH, Germany
    Sophos Silver-Partner

    If a post solves your question please use the 'Verify Answer' button.

Reply
  • Could you try using IPv4 DNS resolution only? Disable IPv6?

    Mit freundlichem Gruß, best regards from Germany,

    Philipp Rusch

    New Vision GmbH, Germany
    Sophos Silver-Partner

    If a post solves your question please use the 'Verify Answer' button.

Children