This discussion has been locked.
You can no longer post new replies to this discussion. If you have a question you can start a new discussion

Sophos XG - VPN Tunnel - SSL Connect - Broken Pipe

Dear all,

i´ve been struggling to get a Sophos XG up and running for some time. Most of the things do work now, there is only one thing i seem to be unable to solve, do you have some idea how to solve this:

a) ipsec site 2 site vpn tunnel to some remote location defined and established

b) http / https / rdp connects to this remote locations internal network are up and running

c) as soon as i try to open a ssh connection from remote location to local one or from local one to remote, the ssh client exits with a broken pipe error

d) if i shutdown the sophos and use the old kerio appliance instead, the ssh connection works immediately

e) if i use the sophos and open a separate vpn connect on the client to the target system, the ssh connection works as well, so i suppose it might be some filtering / rewriting issue on the sophos

what i don´t understand: why is sophos inspecting / filtering the ssh vpn traffic even when the following settings are applied:

  • firewall is defined without any filtering / protection
  • intrusion prevention is off
  • advanced threat protection & security heartbeat are off



This thread was automatically locked due to age.
Parents
  • Hi Tobias,

    There is an unwritten rule on Community that we follow i.e., one question per thread. This makes other members to search for the similar answer with more transparency and  one step search.

    Considering you first question on IPSec refer this KBA.

    Hope that helps.

    Sachin Gurung
    Team Lead | Sophos Technical Support
    Knowledge Base  |  @SophosSupport  |  Video tutorials
    Remember to like a post.  If a post (on a question thread) solves your question use the 'This helped me' link.

  • Hi,

    thanks and sorry for the confusion - to be more clear: vpn tunnel is working - i can connect via rdp and http / https to the remote servers but NOT ssh, i always get a broken pipe - so the question is how can i change a setting in sophos xg to allow ssh traffic to work properly

Reply Children
No Data