Guest User!

You are not Sophos Staff.

This discussion has been locked.
You can no longer post new replies to this discussion. If you have a question you can start a new discussion

new XG installs are causing ScreenConnect 'last connected' timer resets even though NO security services are enabled.

I have now set up two firewalls for two different clients who also use our screenconnect software on their machines for us to remotely connect for repair, diagnostics, etc. The screenconnect software on the client machine will regularly poll back to the screenconnect server (located in my office) to let the server know that it is available and online. This shows as a 'time connected' counter in the screenconnect dashboard. This has always been very stable, and has not been blocked or otherwise interfered with by any other firewall or security appliance. All clients that do not have sophos firewalls do not exhibit this behavior. However, the two XG (115 and 210) firewalls that I have installed in the last two days are causing that counter to reset every 5 minutes (I can see the activity in the screenconnect logs). Both firewalls are in gateway mode, directly connected to the ISP and have NO security services enabled yet. No AV, no IPS, No web filter...nothing. Just the default rule in the firewall that is put in place during the initial configuration wizard.

FYI, the client is set to relay out to the screenconnect server on port 80 and 443, so I don't understand why that would get reset every 5 minutes.



This thread was automatically locked due to age.
Parents
  • I know this is an XG version thread (and a few months old) but I have an SG210 UTM and I updated 6 versions to 9.414-2 at once on July 4th. That is when I noticed this weird issue with my screenconnect clients that were behind the Sophos never staying connected to the connectwise-hosted service for more than a few minutes. After investigating further, I found that it was exactly 5 minutes and the client would disconnect and reconnect.

    I was going to start with an exception but I ended up going with the transparent mode skiplist first. I added a new DNS group with servers.screenconnect.com as the host and it resolved all of their IPs (76 as of today). Once I applied the changes, I have been connected for over 25 minutes now.

Reply
  • I know this is an XG version thread (and a few months old) but I have an SG210 UTM and I updated 6 versions to 9.414-2 at once on July 4th. That is when I noticed this weird issue with my screenconnect clients that were behind the Sophos never staying connected to the connectwise-hosted service for more than a few minutes. After investigating further, I found that it was exactly 5 minutes and the client would disconnect and reconnect.

    I was going to start with an exception but I ended up going with the transparent mode skiplist first. I added a new DNS group with servers.screenconnect.com as the host and it resolved all of their IPs (76 as of today). Once I applied the changes, I have been connected for over 25 minutes now.

Children
No Data