SlideShare a Scribd company logo
2
Most read
3
Most read
5
Most read
WorkingfromHome using SOPHOSXG FIREWALL SSL VPN withSingle-On
NASEEMKHOODORUTH 1
SOPHOS XG FIREWALL
Contents
SOPHOS XG FIREWALL .......................................................................................................................................... 1
Configure and enable Single Sign-on (SSO) ......................................................................................................... 2
Install Agent on Primary Domain Controller .................................................................................................... 2
Setup VPN on the XG Firewall................................................................................................................................ 7
How to use SSL VPN through Sophos XG Firewall (Join Domain Computers) ........................................................... 11
WorkingfromHome using SOPHOSXG FIREWALL SSL VPN withSingle-On
NASEEMKHOODORUTH 2
Configure and enable Single Sign-on (SSO)
Install Agent on Primary Domain Controller
Downloadandinstall STASonthe domaincontroller
Port shouldbe openonAD: AD= XG UDP 6060, XG = AD UDP 6677, Agent= collectorTCP5566
Install the STASsuite onthe Primary DomainController
WorkingfromHome using SOPHOSXG FIREWALL SSL VPN withSingle-On
NASEEMKHOODORUTH 3
Specifythe networktomonitorandSTA collector
Once configure testthe connectivitywiththe SophosAppliance,if youhave additional domaincontrollerdeploy
STASagent andspecifycollectorthe primarydomaincontroller
WorkingfromHome using SOPHOSXG FIREWALL SSL VPN withSingle-On
NASEEMKHOODORUTH 4
Enable STASon the XG Firewall
GO to authentication
Addyou active directoryserver
WorkingfromHome using SOPHOSXG FIREWALL SSL VPN withSingle-On
NASEEMKHOODORUTH 5
Addthe serverfor authentication
In Active directorycreate asecuritygroupandadd memberswhichwill be allow forSSLVPN
Afterimportthe SSL VPN Users group to XG Firewall
WorkingfromHome using SOPHOSXG FIREWALL SSL VPN withSingle-On
NASEEMKHOODORUTH 6
WorkingfromHome using SOPHOSXG FIREWALL SSL VPN withSingle-On
NASEEMKHOODORUTH 7
Setup VPN on the XG Firewall
For accessto VPN the VPN port and userportal mustbe openfromthe wan to downloadinstaller,configurationand
access (inmyscenarioport444 and 8443 has beenopenonthe ISPRouter – PortForwarding)
Configure SSLVPN(remote access) andin the Policymembersaddthe SSLVPN Usersgroup that needVPN Access
WorkingfromHome using SOPHOSXG FIREWALL SSL VPN withSingle-On
NASEEMKHOODORUTH 8
Enable the tunnel accessforyour office network
Gatewaycan be turnoff if clientside will use theirWAN (example:theirmytathome)
Setupthe VPN settings
WorkingfromHome using SOPHOSXG FIREWALL SSL VPN withSingle-On
NASEEMKHOODORUTH 9
Create the Firewall Rule
WorkingfromHome using SOPHOSXG FIREWALL SSL VPN withSingle-On
NASEEMKHOODORUTH 10
Allowaccesstouserportal andssl vpnfromWAN
WorkingfromHome using SOPHOSXG FIREWALL SSL VPN withSingle-On
NASEEMKHOODORUTH 11
How to use SSL VPN through Sophos XG Firewall (Join Domain Computers)
Work outside the Office Securely
Connectto the publicname and downloadyoursetup+ configurationfile
Importantnote: each userhas to downloadtheirownsetupandconfigurationfile
URL: https://example.dyndns.biz:444
Loginto the portal usingyourusername andpassword
Go to SSL VPN and downloadclientandconfigurationforwindows
WorkingfromHome using SOPHOSXG FIREWALL SSL VPN withSingle-On
NASEEMKHOODORUTH 12
Afterdownload,proceedwithinstallationof the SSLVPN client(Install)
Afterinstallation,lookforthe icon rightclickandconnect (Internetconnectionisrequired)
Enter yourwindowsusername andpassword
Once you are connect the iconwill change fromred to green - now you are connectedwiththe server
(xxxx.LOCAL)
As fromhere youcan browse or connectto your terminal server

More Related Content

PDF
Projet stage : Mise en place d'un système générique de sauvegarde et de rest...
PDF
VPN site-to-site.pdf
PDF
Mise en place d'une Plateforme de Supervision et de Détection d'Intrusion Sys...
PDF
Rapport de Projet de Fin de Parcours
PPTX
Mise en place d’une infrastructure cloud basée sur cloudstack
PDF
configuration vpn-ipsec-routeur
PPTX
Splunk Phantom SOAR Roundtable
PPTX
CA_Module_1.pptx
Projet stage : Mise en place d'un système générique de sauvegarde et de rest...
VPN site-to-site.pdf
Mise en place d'une Plateforme de Supervision et de Détection d'Intrusion Sys...
Rapport de Projet de Fin de Parcours
Mise en place d’une infrastructure cloud basée sur cloudstack
configuration vpn-ipsec-routeur
Splunk Phantom SOAR Roundtable
CA_Module_1.pptx

What's hot (20)

PDF
Mémoire L3
PDF
Rapport pfe isi_Big data Analytique
PDF
Authentification Forte 1
PDF
Alphorm.com Formation Certification NSE4 : Fortinet Fortigate Security 6.x
PDF
PNETLab.pdf
PDF
Mise en place d’un système de détection
PDF
Secure Access – Anywhere by Prisma, PaloAlto
PDF
Etude et mise en place d’une solution open source de gestion de la sécurité d...
PDF
PRÉSENTATION D’UN KIT SIEM DÉDIÉ AUX PMES
PDF
Les Outils de la CSA (Cloud Security Alliance)
PPTX
Top 10 use cases for Microsoft Purview.pptx
PDF
Mise En Place d'une Solution de Supervision Réseau
PPTX
SOC and SIEM.pptx
PDF
Implementation d'un portail captif cas de pfsense produit par bamba bamoussa
PDF
55174240 rapport-cloud-computing
PDF
Rapport PFE ingénieur réseaux marwen SAADAOUI ( Juin 2018 )
PPTX
Système de détection d'intrusion (Intrusion Detection System)
PDF
projet sur le vpn presentation
PDF
Étude et mise en place d'un serveur messengerie
PDF
Protocole IKE/IPsec
Mémoire L3
Rapport pfe isi_Big data Analytique
Authentification Forte 1
Alphorm.com Formation Certification NSE4 : Fortinet Fortigate Security 6.x
PNETLab.pdf
Mise en place d’un système de détection
Secure Access – Anywhere by Prisma, PaloAlto
Etude et mise en place d’une solution open source de gestion de la sécurité d...
PRÉSENTATION D’UN KIT SIEM DÉDIÉ AUX PMES
Les Outils de la CSA (Cloud Security Alliance)
Top 10 use cases for Microsoft Purview.pptx
Mise En Place d'une Solution de Supervision Réseau
SOC and SIEM.pptx
Implementation d'un portail captif cas de pfsense produit par bamba bamoussa
55174240 rapport-cloud-computing
Rapport PFE ingénieur réseaux marwen SAADAOUI ( Juin 2018 )
Système de détection d'intrusion (Intrusion Detection System)
projet sur le vpn presentation
Étude et mise en place d'un serveur messengerie
Protocole IKE/IPsec
Ad

Similar to Sophos XG FIREWALL SSL VPN Configuration (20)

PDF
Hosted security
PPTX
XO _Hosted Security Product Overview__v.21 (1)
PPT
12 Understanding V P Ns
PDF
Ch8 - Implementing Virtual Private Networks
PPT
Acit Mumbai - understanding vpns
PPTX
PACE-IT: Networking Services and Applications (part 1) - N10 006
PDF
Citirx Day 2013: Citrix Enterprise Mobility
PDF
online-module-guide.pdf
PPT
Virtual private networks by darshana viduranga
PPTX
Meet XO Communications
PPTX
Meet XO Communications - 2011
PPTX
Meet XO
PDF
Vpn security agenda by cover our privacy
PPT
V P N
PPT
CCNA Security - Chapter 8
PPT
Chapter 8 overview
PDF
Sangfor SSL VPN Datasheet
PPTX
Meet XO Communications
PPTX
PPTX
ENSA_Module_8.pptx
Hosted security
XO _Hosted Security Product Overview__v.21 (1)
12 Understanding V P Ns
Ch8 - Implementing Virtual Private Networks
Acit Mumbai - understanding vpns
PACE-IT: Networking Services and Applications (part 1) - N10 006
Citirx Day 2013: Citrix Enterprise Mobility
online-module-guide.pdf
Virtual private networks by darshana viduranga
Meet XO Communications
Meet XO Communications - 2011
Meet XO
Vpn security agenda by cover our privacy
V P N
CCNA Security - Chapter 8
Chapter 8 overview
Sangfor SSL VPN Datasheet
Meet XO Communications
ENSA_Module_8.pptx
Ad

More from Naseem Khoodoruth (15)

DOCX
Azure File Share and File Sync guide (Beginners Edition)
DOCX
How to install and use MS Teams for meeting and live events
DOCX
How to install and use microsoft teams for beginners
DOCX
Work from home under the lockdown
DOCX
Fortinet SSL VPN access
TXT
Powershell direct
DOCX
Exchange 2010/2013 Exchange Management Shell Command
TXT
Basic command for Time sync (Domain Controllers)
PDF
Implementation of Scom 2016
PDF
Sophos_XG_Firewall_Certified_Engineer v15.0
PDF
Backup Exec 15 VSEPlus
PDF
Backup Exec 15 VSE
PDF
CP250915V3.1EL14818
PDF
DSST0214WBTS - Dell Support Services training.PDF
PDF
MCSA Office 365
Azure File Share and File Sync guide (Beginners Edition)
How to install and use MS Teams for meeting and live events
How to install and use microsoft teams for beginners
Work from home under the lockdown
Fortinet SSL VPN access
Powershell direct
Exchange 2010/2013 Exchange Management Shell Command
Basic command for Time sync (Domain Controllers)
Implementation of Scom 2016
Sophos_XG_Firewall_Certified_Engineer v15.0
Backup Exec 15 VSEPlus
Backup Exec 15 VSE
CP250915V3.1EL14818
DSST0214WBTS - Dell Support Services training.PDF
MCSA Office 365

Recently uploaded (20)

PPTX
Programs and apps: productivity, graphics, security and other tools
PDF
Architecting across the Boundaries of two Complex Domains - Healthcare & Tech...
PPT
Teaching material agriculture food technology
PPTX
SOPHOS-XG Firewall Administrator PPT.pptx
PPTX
A Presentation on Artificial Intelligence
PPTX
MYSQL Presentation for SQL database connectivity
PDF
Approach and Philosophy of On baking technology
PPT
“AI and Expert System Decision Support & Business Intelligence Systems”
PDF
Video forgery: An extensive analysis of inter-and intra-frame manipulation al...
PDF
gpt5_lecture_notes_comprehensive_20250812015547.pdf
PDF
Profit Center Accounting in SAP S/4HANA, S4F28 Col11
PDF
MIND Revenue Release Quarter 2 2025 Press Release
PDF
Per capita expenditure prediction using model stacking based on satellite ima...
PDF
TokAI - TikTok AI Agent : The First AI Application That Analyzes 10,000+ Vira...
PDF
Advanced methodologies resolving dimensionality complications for autism neur...
PDF
Getting Started with Data Integration: FME Form 101
PDF
Agricultural_Statistics_at_a_Glance_2022_0.pdf
PDF
Empathic Computing: Creating Shared Understanding
PPTX
KOM of Painting work and Equipment Insulation REV00 update 25-dec.pptx
PDF
The Rise and Fall of 3GPP – Time for a Sabbatical?
Programs and apps: productivity, graphics, security and other tools
Architecting across the Boundaries of two Complex Domains - Healthcare & Tech...
Teaching material agriculture food technology
SOPHOS-XG Firewall Administrator PPT.pptx
A Presentation on Artificial Intelligence
MYSQL Presentation for SQL database connectivity
Approach and Philosophy of On baking technology
“AI and Expert System Decision Support & Business Intelligence Systems”
Video forgery: An extensive analysis of inter-and intra-frame manipulation al...
gpt5_lecture_notes_comprehensive_20250812015547.pdf
Profit Center Accounting in SAP S/4HANA, S4F28 Col11
MIND Revenue Release Quarter 2 2025 Press Release
Per capita expenditure prediction using model stacking based on satellite ima...
TokAI - TikTok AI Agent : The First AI Application That Analyzes 10,000+ Vira...
Advanced methodologies resolving dimensionality complications for autism neur...
Getting Started with Data Integration: FME Form 101
Agricultural_Statistics_at_a_Glance_2022_0.pdf
Empathic Computing: Creating Shared Understanding
KOM of Painting work and Equipment Insulation REV00 update 25-dec.pptx
The Rise and Fall of 3GPP – Time for a Sabbatical?

Sophos XG FIREWALL SSL VPN Configuration

  • 1. WorkingfromHome using SOPHOSXG FIREWALL SSL VPN withSingle-On NASEEMKHOODORUTH 1 SOPHOS XG FIREWALL Contents SOPHOS XG FIREWALL .......................................................................................................................................... 1 Configure and enable Single Sign-on (SSO) ......................................................................................................... 2 Install Agent on Primary Domain Controller .................................................................................................... 2 Setup VPN on the XG Firewall................................................................................................................................ 7 How to use SSL VPN through Sophos XG Firewall (Join Domain Computers) ........................................................... 11
  • 2. WorkingfromHome using SOPHOSXG FIREWALL SSL VPN withSingle-On NASEEMKHOODORUTH 2 Configure and enable Single Sign-on (SSO) Install Agent on Primary Domain Controller Downloadandinstall STASonthe domaincontroller Port shouldbe openonAD: AD= XG UDP 6060, XG = AD UDP 6677, Agent= collectorTCP5566 Install the STASsuite onthe Primary DomainController
  • 3. WorkingfromHome using SOPHOSXG FIREWALL SSL VPN withSingle-On NASEEMKHOODORUTH 3 Specifythe networktomonitorandSTA collector Once configure testthe connectivitywiththe SophosAppliance,if youhave additional domaincontrollerdeploy STASagent andspecifycollectorthe primarydomaincontroller
  • 4. WorkingfromHome using SOPHOSXG FIREWALL SSL VPN withSingle-On NASEEMKHOODORUTH 4 Enable STASon the XG Firewall GO to authentication Addyou active directoryserver
  • 5. WorkingfromHome using SOPHOSXG FIREWALL SSL VPN withSingle-On NASEEMKHOODORUTH 5 Addthe serverfor authentication In Active directorycreate asecuritygroupandadd memberswhichwill be allow forSSLVPN Afterimportthe SSL VPN Users group to XG Firewall
  • 6. WorkingfromHome using SOPHOSXG FIREWALL SSL VPN withSingle-On NASEEMKHOODORUTH 6
  • 7. WorkingfromHome using SOPHOSXG FIREWALL SSL VPN withSingle-On NASEEMKHOODORUTH 7 Setup VPN on the XG Firewall For accessto VPN the VPN port and userportal mustbe openfromthe wan to downloadinstaller,configurationand access (inmyscenarioport444 and 8443 has beenopenonthe ISPRouter – PortForwarding) Configure SSLVPN(remote access) andin the Policymembersaddthe SSLVPN Usersgroup that needVPN Access
  • 8. WorkingfromHome using SOPHOSXG FIREWALL SSL VPN withSingle-On NASEEMKHOODORUTH 8 Enable the tunnel accessforyour office network Gatewaycan be turnoff if clientside will use theirWAN (example:theirmytathome) Setupthe VPN settings
  • 9. WorkingfromHome using SOPHOSXG FIREWALL SSL VPN withSingle-On NASEEMKHOODORUTH 9 Create the Firewall Rule
  • 10. WorkingfromHome using SOPHOSXG FIREWALL SSL VPN withSingle-On NASEEMKHOODORUTH 10 Allowaccesstouserportal andssl vpnfromWAN
  • 11. WorkingfromHome using SOPHOSXG FIREWALL SSL VPN withSingle-On NASEEMKHOODORUTH 11 How to use SSL VPN through Sophos XG Firewall (Join Domain Computers) Work outside the Office Securely Connectto the publicname and downloadyoursetup+ configurationfile Importantnote: each userhas to downloadtheirownsetupandconfigurationfile URL: https://example.dyndns.biz:444 Loginto the portal usingyourusername andpassword Go to SSL VPN and downloadclientandconfigurationforwindows
  • 12. WorkingfromHome using SOPHOSXG FIREWALL SSL VPN withSingle-On NASEEMKHOODORUTH 12 Afterdownload,proceedwithinstallationof the SSLVPN client(Install) Afterinstallation,lookforthe icon rightclickandconnect (Internetconnectionisrequired) Enter yourwindowsusername andpassword Once you are connect the iconwill change fromred to green - now you are connectedwiththe server (xxxx.LOCAL) As fromhere youcan browse or connectto your terminal server