SG UTM

Suggest, discuss, and vote on new ideas for SG UTM. The ultimate network security package.

SG UTM

Suggest, discuss, and vote on new ideas for SG UTM. The ultimate network security package.

Suggest an Idea...

(thinking…)

Enter your idea and we'll search to see if someone has already suggested it.

If a similar idea already exists, you can support and comment on it.

If it doesn't exist, you can post your idea so others can support it.

Enter your idea and we'll search to see if someone has already suggested it.

  • Hot ideas
  • Top ideas
  • New ideas
  • My feedback
  1. SSL VPN: Support IPv6

    Currently SSL VPN only pushes IPv4 configuration to the client. With some manual editing under the hood you can add IPv6 in the config files.

    I'd like to have this feature by default using the GUI!

    7 votes
    Sign in
    (thinking…)
    Sign in with: Facebook Google Sophos Features & Ideas Laboratory
    Signed in as (Sign out)

    We’ll send you updates on this idea

    1 comment  ·  VPN  ·  Flag idea as inappropriate…  ·  Admin →
  2. Hook to support DNS Server update for Linux VPN Clients

    An option to get a updated DNS Server for Linux VPN Clients. Currently the OpenVPN option only sets the DNS Server for Windows Clients.

    2 votes
    Sign in
    (thinking…)
    Sign in with: Facebook Google Sophos Features & Ideas Laboratory
    Signed in as (Sign out)

    We’ll send you updates on this idea

    0 comments  ·  VPN  ·  Flag idea as inappropriate…  ·  Admin →
  3. Dynamic VPN: AD password change over SSL VPN

    users needs to be able to change their Active directory password remotely via dynamic VPN when password expires

    12 votes
    Sign in
    (thinking…)
    Sign in with: Facebook Google Sophos Features & Ideas Laboratory
    Signed in as (Sign out)

    We’ll send you updates on this idea

    0 comments  ·  VPN  ·  Flag idea as inappropriate…  ·  Admin →
  4. email on vpn connection

    Get an email alert when a specific user logs into the VPN

    6 votes
    Sign in
    (thinking…)
    Sign in with: Facebook Google Sophos Features & Ideas Laboratory
    Signed in as (Sign out)

    We’ll send you updates on this idea

    0 comments  ·  VPN  ·  Flag idea as inappropriate…  ·  Admin →
  5. Access Control - "Restart IPSEC Connections"-"Right"

    There has to be a "right" for restarting (deactivate and then activate) "IPsec Connection" which is actually not possible. There is now only a possibility to fully give access an user to "networking" or only "Read" rights which is not enough to restart ipsec connection. For example if you have administrators who have to be restricted on the sophos firewall but have to check daily tasks like check ipsec connections and restart them if needed, then this is not possible with the actual version 9.351-X. MAKE IT POSSIBLE PLEASE!

    4 votes
    Sign in
    (thinking…)
    Sign in with: Facebook Google Sophos Features & Ideas Laboratory
    Signed in as (Sign out)

    We’ll send you updates on this idea

    0 comments  ·  VPN  ·  Flag idea as inappropriate…  ·  Admin →
  6. PDF preview in HTML5 webapp (http) (SG UTM)

    When using HTML5 VPN session with http webapps, PDF preview is not supported.
    PDF preview would be a nice feature.

    1 vote
    Sign in
    (thinking…)
    Sign in with: Facebook Google Sophos Features & Ideas Laboratory
    Signed in as (Sign out)

    We’ll send you updates on this idea

    0 comments  ·  VPN  ·  Flag idea as inappropriate…  ·  Admin →
  7. Add multiple domain searching in SSL VPN

    Currently it is not possible for us to add our two domains to the VPN client. Please update so more than one domain can be added in the Remote Access > Advanced section, allowing VPN to search multiple domains.

    11 votes
    Sign in
    (thinking…)
    Sign in with: Facebook Google Sophos Features & Ideas Laboratory
    Signed in as (Sign out)

    We’ll send you updates on this idea

    1 comment  ·  VPN  ·  Flag idea as inappropriate…  ·  Admin →
  8. IKEv2 support

    We would like to see IKEv2 support so that we can connect to Azure.

    Otherwise this will be a deal breaker and we will be forced to use other appliances very soon.

    29 votes
    Sign in
    (thinking…)
    Sign in with: Facebook Google Sophos Features & Ideas Laboratory
    Signed in as (Sign out)

    We’ll send you updates on this idea

    6 comments  ·  VPN  ·  Flag idea as inappropriate…  ·  Admin →
  9. Make SSL-VPN "route delay" option configurable over the Web-GUI

    We have DNS resolve problems with some SSL-VPN clients which can be solved bei changing the value of "route delay" from "4" to "2" in the template config-file /var/confd/res/openvpn/client.ovpn-default. But these changes will be overwriten every time the firewall gets an openvpn update. So please make die value configurable via web-gui.

    4 votes
    Sign in
    (thinking…)
    Sign in with: Facebook Google Sophos Features & Ideas Laboratory
    Signed in as (Sign out)

    We’ll send you updates on this idea

    0 comments  ·  VPN  ·  Flag idea as inappropriate…  ·  Admin →
  10. Netbios over VPN and SAMBA AD over VPN

    Dear Sir

    We have sold SG210 and SG125 to one of my client to connect their two offices over IPsec VPN. They have workgroup environment in both their offices, after configuring IPSec VPN they are able to ping the computers but not able to access the computers (workgroup).
    I had a talk with sophos support and read some technical documents which say that NETBios over VPN traffic is disabled automatically by device.
    Then sophos support suggested to implement Active Directory then i have configured SAMBA as AD but we are not able to connect the AD over VPN.

    This is…

    2 votes
    Sign in
    (thinking…)
    Sign in with: Facebook Google Sophos Features & Ideas Laboratory
    Signed in as (Sign out)

    We’ll send you updates on this idea

    0 comments  ·  VPN  ·  Flag idea as inappropriate…  ·  Admin →
  11. Have L2TP remote users show up on the Remote Access Online Users screen

    Have L2TP over IPsec users show up on the Remote Access Online users screen. right now the only way to see if someone is connected is through Logging Remote Access and then Session.

    2 votes
    Sign in
    (thinking…)
    Sign in with: Facebook Google Sophos Features & Ideas Laboratory
    Signed in as (Sign out)

    We’ll send you updates on this idea

    0 comments  ·  VPN  ·  Flag idea as inappropriate…  ·  Admin →
  12. SSL VPN on multiple interfaces

    It would be nice to select 2 or more interfaces on the settings of the SSL remote access. We have an UTM with multiple WAN addresses. One of the addresses is used for 443 (SSL) NAT to an internal webserver. But we want to let the UTM listen on 2 other addresses for incoming SSL VPN connections on port 443 TCP. We can only select one interface or any. But with any the UTM sees the conflict with the SSL NAT.

    11 votes
    Sign in
    (thinking…)
    Sign in with: Facebook Google Sophos Features & Ideas Laboratory
    Signed in as (Sign out)

    We’ll send you updates on this idea

    1 comment  ·  VPN  ·  Flag idea as inappropriate…  ·  Admin →
  13. VPN timeout for Windows and IOS clients

    I would think this would be something that would be a standard feature, but guess now. There should be a way to set a timeout on the VPN connection either users connected via laptops or iOS devices so they don't have to remember to go back in and manually turn off or disconnect their vpn connections when they are done, they end up staying connected forever and I see this as a security risk when they are connected in to our network from the outside.

    Please add a simple timeout feature for SSL VPN connections.

    7 votes
    Sign in
    (thinking…)
    Sign in with: Facebook Google Sophos Features & Ideas Laboratory
    Signed in as (Sign out)

    We’ll send you updates on this idea

    0 comments  ·  VPN  ·  Flag idea as inappropriate…  ·  Admin →
  14. simplified chinese for SSL VPN client

    At the moment, SSL VPN client supports multiple language, including traditional Chinese.
    It would be great if Simplified Chinese is supported as well.

    Cheers

    1 vote
    Sign in
    (thinking…)
    Sign in with: Facebook Google Sophos Features & Ideas Laboratory
    Signed in as (Sign out)

    We’ll send you updates on this idea

    1 comment  ·  VPN  ·  Flag idea as inappropriate…  ·  Admin →
  15. Allow IP Reservations for Users using the SSL VPN

    Having an issue with Cisco IP Communicator and the Sophos SSL VPN client where we are having to hardcode the ip of the VPN in the Communicator. And every time these users log back in they get a new IP and causes me to have to remote in and change it for them everytime. This worked fine on our low end FortiGate, and now we have an SG430...and it doesn't work.

    3 votes
    Sign in
    (thinking…)
    Sign in with: Facebook Google Sophos Features & Ideas Laboratory
    Signed in as (Sign out)

    We’ll send you updates on this idea

    0 comments  ·  VPN  ·  Flag idea as inappropriate…  ·  Admin →
  16. Feature Request: Capability to Define the Number of Permissable Concurrent SSL VPN Connections

    I need a way to specify the maximum number of concurrent SSL VPN connections to our AWS SOPHOS UTM9 Security Appliance to meet a NIST 800-53 Rev4 FedRAMP requirement. I am permitted to to allow concurrent connections, but must either limit them to no more than three, or disallow them completely. Since Sophos SSL VPN leverages Open SSL, this feature does not currently exist in the product. It would be very beneficial to our development team if Sophos could implement this feature.

    1 vote
    Sign in
    (thinking…)
    Sign in with: Facebook Google Sophos Features & Ideas Laboratory
    Signed in as (Sign out)

    We’ll send you updates on this idea

    0 comments  ·  VPN  ·  Flag idea as inappropriate…  ·  Admin →
  17. notification for SSL VPN connection

    UTM should send notification when someone is connecting on remote access SSL VPN

    4 votes
    Sign in
    (thinking…)
    Sign in with: Facebook Google Sophos Features & Ideas Laboratory
    Signed in as (Sign out)

    We’ll send you updates on this idea

    0 comments  ·  VPN  ·  Flag idea as inappropriate…  ·  Admin →
  18. SSL VPN Software Deployment (XG)

    We need the ability to deploy the SSL VPN client is a centralized manner. Our remote users do not have local admin rights on their machines, so it would be great if a package could be deployed that would automate the install. I understand that each installation package has the users' certificate, but there still needs to be a solution to this. It was simple with the firewall product we moved from to remotely deploy the SSL VPN client software to the endpoints.

    7 votes
    Sign in
    (thinking…)
    Sign in with: Facebook Google Sophos Features & Ideas Laboratory
    Signed in as (Sign out)

    We’ll send you updates on this idea

    2 comments  ·  VPN  ·  Flag idea as inappropriate…  ·  Admin →
  19. Failed logins displayed WAN IP

    when failed logins UTM gives a log by WAN IP - suggest must have a way to find out or masked the WAN IP from the AD users when connecting. Thanks!

    1 vote
    Sign in
    (thinking…)
    Sign in with: Facebook Google Sophos Features & Ideas Laboratory
    Signed in as (Sign out)

    We’ll send you updates on this idea

    0 comments  ·  VPN  ·  Flag idea as inappropriate…  ·  Admin →
  20. Notification OTP session time out

    By default VPN session is droppedafter 8 hours when OTP token reaches end of validity. Causing loss of data for users. Suggest a 5-10min popup warning from the VPN session icon in the system tray so user can save data and close session and then open renewed OTP VPN session.

    1 vote
    Sign in
    (thinking…)
    Sign in with: Facebook Google Sophos Features & Ideas Laboratory
    Signed in as (Sign out)

    We’ll send you updates on this idea

    0 comments  ·  VPN  ·  Flag idea as inappropriate…  ·  Admin →
  • Don't see your idea?

Feedback and Knowledge Base

icon-data-protection icon-endpoint-protection icon-phish-threat icon-sophos-central icon-sophos-central icon-sophos-central icon-sophos-central icon-sophos-central icon-sophos-central icon-sophos-central icon-sophos-mobile icon-sophos-utm icon-sophos-utm icon-sophos-utm icon-web-appliance icon-xg-firewall icon-xg-firewall icon-avid-secure icon-lightbulbCreated with Sketch.