This discussion has been locked.
You can no longer post new replies to this discussion. If you have a question you can start a new discussion

SFOS 16.05.2 MR2: constant reboots

Hi there,

Since last month I am having some issues after upgrading my Sophos XG firewall from SFOS 16.05.2 MR1 to the latest available firmware (SFOS 16.05.2 MR2). The firewall keeps rebooting after the migration. I had the idea that the cause was probably the configuration or the (automatically) downloaded firmware was possible corrupt. Upgraded the XG firewall using different ways (GUI, shell, firmware uploader via SFLoader) to the latest available firmware but having the same issue.

This morning installed a new virtual machine using the latest available installer (SW-SFOS_16.05.2_MR-2-160.iso; md5sum: 8d56fbb3898667bd54090cc5d4949c5b). Result was remarkable the same. After the initial setup (configuration of the interfaces and device activation) the firewall needs to reboot in order to complete the setup. After that I have the same symptoms: constant reboots.

Details of my XG firewall and virtual environment (as this can possible be helpful):

* Hypervisor (Proxmox version 4.4-12)
* Virtual Machine (software installation)
* Memory: 6 GiB
* 8 processors (2 sockets, 4 cores)

I want to check the log files for failure and isolate the issue that I am facing, but unable to mount successfully the hard disk of the virtual machine. Any suggestion about memory / hard drive failures; already tested that. Thank you.



This thread was automatically locked due to age.
  • HI , 

     

    Please refer the recommended Virtual Environment supported.

    The text in this section is not seen on Sophos.com, is internal only and may be confidential.

    Supported versions are:

    1. VMware ESXi/vSphere 5.1 & 4.1 along with VMware Workstation 9
    2. VMware ESXi/vSphere 5.5 to 6.5.
    3. Citrix XenServer 6.1/6.0 (No need to backwards check 5.5 for this platform)

    We include the Hyper-V Integration Tools[0] to make it easier for people who want to try Hyper-V but because Dev and QA does not do testing on Hyper-V we do not officially support it.

     

    [0] If the Hyper-V Integration Tools are out of date please escalate the case to GES to have the issue corrected.

    Overview

    This article provides information that relates to the virtualization platforms supported by the Sophos UTM line of products. Supported platforms are those that have been tested and approved by our review teams.

    The following sections are covered:

    Applies to the following Sophos product
    Sophos UTM Software Appliance v9.0 

    Supported virtualization platforms

    Virtual appliances provide the same functionality as the standard UTM hardware platform.
    You can install UTM v9 within the following virtual environments:

    • VMware ESX 5.1
    • VMware ESX 5.5-6.5
    • Microsoft HyperV 2008 R2
    • KVM 1.0 kernel 3.2.0-29-generic (Ubuntu 12.04 LTS)
    • Citrix XenServer 6.0 Enterprise
    • HyperV 3.5 2012 R2

    All supported VM platforms undergo QA testing to ensure installation from ISO image and proper operation. UTM performance in a VM environment can vary widely due to various hardware differences, allocated resources, type of storage, etc.

    Known VM platform limitations

    • Microsoft Hyper-V: legacy network adapters are not supported.

    • VMware: Do not use flexible NICs. Use e1000 for gigabit or lower connection speeds or VMXNET3 for faster connections. It is not recommended to add or remove vNICs after installation as this can result in changes in NIC order.

    • Xen: 32-bit version of Xen is not supported, only 64-bit Xen is supported.

     

    Taken From kb article. https://sophos.com/kb/119230 

  • Same problem here. Even with SFOS 16.05.7 running on latest Proxmox I get constant (1-2 days) reboots. UTM and others are running without any issues as KVM.

  • Hello, I have the same problem, continuous reboots of the firewall. The restarts started at the end of May and today is with the latest version still the same (SFOS 16.05.7 MR-7). Support say they will fix it with version 17. The truth I expected more from this product I have had bad experiences with it, I think in the future it will be robust but not.

     
    regards,
  • Hello, do you still have the same problems?, Have you heard anything in support of Sophos ?. I'm in the same situation. It turns out that I have an XG310 configured with a LAG (4 Sophos Interface) connected to 4 switch with a port of each dedicated to each interface forming a PortChannel (CH8). This has never failed and it turns out that since late May I have constant drops of Link Agregation on the switch (ch8). When I view the Sophos log it tells me that it has been restarted. Is something similar happening to you?, Thank

  • Jose,

    I have a different much simpler setup (no LAG).

    SFOS is running on KVM (virtual environment) - not Sophos hardware.

    I never run it in production due to the reboots every 1-2 days. I just tried the new v17 beta - seems to be more stable with respect to my setup.

    Let's see.

    Dirk

  •  
    Hi, I have answered in support that the reboots are due to the NTLM daemon. They say that in the MR7 version will be solved. To wait, thanks anyway for your interest, greetings

  • Hi guys,

    I'm running Sophos XG 17.0.2 MR-2 on Proxmox 5.1-35 and I noticed randomly reboot of the VM.

    Do you have some ideas on where in the log search for this behaviour?