Guest User!

You are not Sophos Staff.

This discussion has been locked.
You can no longer post new replies to this discussion. If you have a question you can start a new discussion

WAF issues after updating to 9.709-3

Hi,

anyone else noticed that after updating to 9.709-3 Exchange Web Services is not working anymore? We get HTTP Error 500 when connecting to EWS published trhrough WAF. Also, the virtual server changes to orange when this error occurs. Accessing EWS through the browser shows the service page after authentication, but when interacting with EWS by using the Exchange Remote Connectivity Analyzer or EWS Editor generates the HTTP 500 error and the WAF rule turns orange.

When directly connecting to EWS and bypassing UTM works fine and we can interact with EWS.

Before the update everything worked fine.

Franc.



This thread was automatically locked due to age.
  • Seroal,  I can only speak for my setup.  If you have an Exchange Hybrid setup, this will break Autodiscover, Free busy and any calls for EWS redirection.  Stay away from upgrading until this is fixed would be my advise.   Read the whole posts to see what other people have been running into.

  • Alex, what suggestions do folks have in the Microsoft Exchange community?  That might give us a clue on what to do in the UTM.

    Cheers - Bob

  • Still no word from Sophos support other then ‘it’s with engineering’. It’s really unacceptable it takes so long.

  • Apologies , it seems that the Escalation Engineer that has been assigned to your case may have been replying to you with an incorrect email. I have brought this to their attention and you should receive updates to this case very shortly!

    Best,

  • I just stumbled on this thread after weeks of troubleshooting failing on-premise mailbox migrations to O365. After eliminating all other suspects, I turned my attention to our Sophos UTM. We're on 9.710-1 and it seems all the trouble started once we updated to 9.708006 in Feb this year. Just the mailbox migrations seem to be affected while all other on-premise Exchange services, e.g. ActiveSync, seem to be working fine.

    Have there been any further updates from Sophos support/engineering on this topic?

  • Well... I have to say that things went downhill. After a lengthy session capturing packets and reproducing issues almost 2 weeks ago I've received a reply last week telling me to... capture packets and mentioning things that were never previously mentioned ("Public URL Tool"). When I asked for clarification I got no response.

    This was last Thursday.

    Now there's an update to the UTM which doesn't resolve the issue (as other people have confirmed) but I'm not sure if I can install it because of this ongoing case... except IS it ongoing, given the lack of responses?

  • I think it is clear, that Sophos does not care about the old UTM horse. There is no improvement in the product anymore and I bet they will discontinue UTM in the near future.

  • So, Version 9.711 is out.

    There is no fixed for NUTM-13425 mentioned, however since this release comes with an update for Apache / WAF, maybe...

    Will anybody volunteer and try to witness a miracle? :)

  • Just tried it couple of minutes ago. No luck.. still broken…

  • Alex, my intention was not to mix anything up nor would it prevent finding the solution. 
    I have a client that also uses WAF with on-prem exchange hybrid, today I created a mailbox move request and it was successful. Their UTM is on 9.709-3. Admitedly, I haven’t looked further into their setup as of yet…

    I will take a closer look next week at their setup to see how it may differ to others I manage out there. I am now aware of two of our clients that are having this issue!