

Setup two-factor authentication via Authentication > One-time password > Settings to ensure you’re only allowing MFA access to the user portal. For optimal security, we strongly advise the use of multi-factor authentication. SSL VPN requires access to the XG Firewall User Portal.Follow these initial setup instructions for creating an IP address range for your clients, user group, SSL access policy, and authentication.While macOS support for SSL remote access via Sophos Connect is expected soon, we recommend any organizations using macOS take advantage of the new OpenVPN macOS client in the interim. With Sophos Connect v2 now supporting SSL (on Windows) and with the enhanced SSL VPN capacity available in XG Firewall v18 MR3, we strongly encourage everyone to consider using SSL to get the best experience and performance for your remote access users. Then setup your Firewall to accept Sophos Connect VPN connections before deploying the client and connection configuration to your users. The first decision you will want to make is whether you wish to use SSL, IPSec, or both. Making the Most of Sophos Connect Remote Access Group support for IPSec VPN connections which now enables group imports from AD/LDAP/etc.The capacity increase depends on your Firewall model: desktop models can expect a modest increase, while rack mount units will see a 3-5x improvement in SSL VPN connection capacity. Enhanced SSL VPN connection capacity across our entire firewall line up.XG Firewall v18 MR3 Remote Access Enhancements: File extension association for policy files – import a policy file into Sophos Connect just by double-clicking it in Windows Explorer, or opening the file attached in an email.Automatic synchronization of the latest user policy if the SSL policy is updated on the firewall (when using the provisioning file to deploy) as well as a manual re-synchronization of the latest policy.Automatic failover to the next active firewall WAN link if one link fails.Option to execute a logon script when connecting.Enhanced DUO token multi-factor authentication support.Bulk deployment of SSL VPN configurations (as with IPSec) via an enhanced provisioning file.Sophos Connect v2 makes remote access VPN easy and fast! Our new Sophos Connect v2 remote access VPN client also add new features that make remote access faster, better and easier. And we’ve significantly boosted SSL VPN capacity across our entire product range in XG Firewall v18 MR3 through several optimizaitons. With XG Firewall it’s extremely easy – and free! XG Firewall is the only firewall to offer unlimited remote access SSL or IPSec VPN connections at no additional charge. Working remotely and using VPN has become an important part of everyday life.
