Skip to content
DigitalRGS

DigitalRGS

Journey through the Gaming World, Navigate the Social Media Landscape, and Dive into the Tech Realm

Primary Menu
  • Home
  • Gaming World
  • Social Media World
  • Tech World
  • Contact Us
  • Gaming World
    • Freshest Facts
  • Home
  • Latest
  • How to configure WAF feature on Sophos XGS –

How to configure WAF feature on Sophos XGS –

Renee Straphorn 4 min read
2105

Sophos XGS is a web application firewall that’s designed to protect your organization from the threats of today and tomorrow. It provides powerful protection against hackers, malware, and other cyber-threats.

The sophos utm waf troubleshooting is a tutorial that shows how to configure the Sophos XGS firewall.

Vincent Sophos 0 Vincent Sophos 0 Vincent Sophos 0 Vincent Sophos 0 Vincent Sopho

How-to-configure-WAF-feature-on-Sophos-XGS-%E2%80%93

Overview

The article explains how to set up the Sophos XGS firewall’s Web Application Protection functionality. Instead of using a Web server like NAT, the Sophos firewall will simulate direct contact with clients outside the Internet with WAF. This will help to safeguard the Web server from external threats while also ensuring that web traffic remains consistent.

Diagram

1628058097_929_How-to-configure-WAF-feature-on-Sophos-XGS-%E2%80%93

Steps to Configuration

  • Set up the Ubuntu web server with a local IP address of 172.18.18.50/24.
  • Configure the Sophos XGS’s WAF capability to connect to a public Ubuntu web server.
  • External access to the web server
  • Result

How to set it up

Set up the Ubuntu web server with a local IP address of 172.18.18.50/24. www.test.com is the domain name.

1628058098_510_How-to-configure-WAF-feature-on-Sophos-XGS-%E2%80%93

1628058099_714_How-to-configure-WAF-feature-on-Sophos-XGS-%E2%80%93

1628058100_847_How-to-configure-WAF-feature-on-Sophos-XGS-%E2%80%93

Configure the Sophos XGS’s WAF capability to connect to a public Ubuntu web server.

  • Create an Ubuntu web server and host it on a Sophos XGS.
  • Go to SYSTEM -> Choose Hosts and services -> Choose IP host -> Click Add
  • Fill in your name here.
  • Choose IPv4 as the IP version.
  • Choose IP as a type.
  • In terms of IP address: Enter the Ubuntu web server’s IP address.
  • Save the file.

1628058101_522_How-to-configure-WAF-feature-on-Sophos-XGS-%E2%80%93

  • On the Sophos XGS, create a web server.
  • Go to PROTECT -> Choose Web server -> Choose Web servers -> Click Add

1628058102_910_How-to-configure-WAF-feature-on-Sophos-XGS-%E2%80%93

  • Fill in your name here.
  • In Host, select the previously built Ubuntu web server as the host.
  • Because the web server does not have an SSL certificate, choose Plaintext (HTTP) (choose Encrypted (HTTPS) if the web server does have an SSL certificate).
  • Keep the default port in Port.
  • Keep alive is enabled.
  • Save the file.

1628058104_519_How-to-configure-WAF-feature-on-Sophos-XGS-%E2%80%93

  • Go to PROTECT -> Choose Rules and policies -> Choose Firewall rules -> Click Add firewall rule -> Choose New firewall rule

1628058105_850_How-to-configure-WAF-feature-on-Sophos-XGS-%E2%80%93

  • Fill in your name here.
  • Choose top in the rule position.
  • Choose None in the Rule group.
  • In Action: Select Protect with Web Server Protection from the drop-down menu.
  • In the address of the host: Select the WAN port through which the remote client will connect.
  • If the web server does not have an SSL certificate, select 80 as the listening port; if the web server does have an SSL certificate, select HTTPS with port 443 as the listening port.
  • If you choose HTTPS, select an SSL certificate that was created previously (see import instructions below) **
  • Enter your web domain in the Domains section.
  • In Web server, select the web server that was previously created.
  • Advanced: Select the web server security features that you want to protect.
  • If you want to keep the request from the client to the web server, select Pass host header.
  • If the web server’s public domain name differs from the web server’s local domain name, select Rewrite HTML.
  • If you don’t want traffic to be compressed when accessing the web server, select Disable compression support.
  • Save the file.

1628058106_502_How-to-configure-WAF-feature-on-Sophos-XGS-%E2%80%93

1628058107_996_How-to-configure-WAF-feature-on-Sophos-XGS-%E2%80%93

1628058108_52_How-to-configure-WAF-feature-on-Sophos-XGS-%E2%80%93

** If a web server’s SSL certificate is available, follow the instructions to add it.

  • Install an SSL certificate on your computer if one is already installed on your Ubuntu web server.
  • Go to SYSTEM -> Choose Certificates -> Choose Certificates -> Click Add
  • Upload two files: a certificate and a key.
  • Save the file.

1628058109_485_How-to-configure-WAF-feature-on-Sophos-XGS-%E2%80%93

Allow external access to the web server

Because the domain test.com is not registered in my lab, you’ll need to change the hosts file on the external system that wishes to connect to the web server.

  • On Windows 10, navigate to C:WindowsSystem32driversetc to edit the hosts file.
  • Copy file hosts to the desktop and open the hosts file with notepad-> Then add the following line -> Click Save

1628058110_455_How-to-configure-WAF-feature-on-Sophos-XGS-%E2%80%93

  • Then, on the desktop, copy the updated hosts file and paste it over the original hosts file in the C:WindowsSystem32driversetc folder.
  • Then go to the domain test.com and log in.

Result

1628058111_827_How-to-configure-WAF-feature-on-Sophos-XGS-%E2%80%93

  • Sophos XGS traffic monitoring

1628058113_931_How-to-configure-WAF-feature-on-Sophos-XGS-%E2%80%93

1628058114_372_How-to-configure-WAF-feature-on-Sophos-XGS-%E2%80%93

YOU MIGHT ALSO BE INTERESTED IN

The sophos waf datasheet is a document that provides information about the Sophos XGS. It includes the configuration and settings for the firewall as well as other features such as intrusion detection, file integrity monitoring, and more.

Frequently Asked Questions

How do I enable WAF in Sophos XG?

To enable WAF, you will need to go into the Sophos XG interface and select WAF under the Security tab.

Is Sophos WAF?

 

How do I configure my Sophos XG Firewall?

To configure your firewall, you need to know the IP address of your computer and the name of your network. If you dont know what the IP address is, please contact your internet service provider.

Related Tags

  • sophos xg web application firewall
  • sophos xg v18 waf configuration
  • sophos waf
  • sophos xg v18 web server protection
  • sophos xg waf rewrite html

About The Author

Renee Straphorn

See author's posts

Tags: images

Continue Reading

Previous: Build 22000.194 comes with the new Snipping Tool, Clock, and Calculator apps
Next: Try 6 Best Photo Frame Apps For iPhone & Android With Beautiful Borders

Related Stories

Maximizing Impact at Corporate Conferences with Innovative Audio Visual Planning Image2
5 min read

Maximizing Impact at Corporate Conferences with Innovative Audio Visual Planning

Corlandis Pyral 15
The Ultimate Basketball Games To Play On Mobile Today Image3
3 min read

The Ultimate Basketball Games To Play On Mobile Today

Renee Straphorn 33
5 Bonus Buy Slots That Actually Give You a Shot
4 min read

5 Bonus Buy Slots That Actually Give You a Shot

Renee Straphorn 31
How Long Is a DUI on Your Record? DUI concept of car keys, beer mug, and gavel together.
3 min read

How Long Is a DUI on Your Record?

Renee Straphorn 33
How Data Is Influencing Decision-Making Today
3 min read

How Data Is Influencing Decision-Making Today

Maggie Hopworth 39
How Social Features (Chat, Leaderboards) Boost Engagement in Casino Apps Image3
4 min read

How Social Features (Chat, Leaderboards) Boost Engagement in Casino Apps

Maggie Hopworth 38

What’s Hot

What are the key features of Ometria? ometria crm 40m 75m butchertechcrunch

What are the key features of Ometria?

March 27, 2023
Moss is a spend management app that helps businesses keep track of their spending moss 75m series tiger 500mdillettechcrunch

Moss is a spend management app that helps businesses keep track of their spending

March 27, 2023
Bibit is a robo-advisor app for Indonesian investors bibit 30m sequoia capital 45mshutechcrunch

Bibit is a robo-advisor app for Indonesian investors

March 27, 2023
What are the key features of Ometria? ometria crm 40m 75m butchertechcrunch

What are the key features of Ometria?

March 27, 2023
Why the Alexa Turing Test is Important the alexa turing test fastcompany

Why the Alexa Turing Test is Important

December 20, 2022

3981 Solmonel Avenue
Melos, SC 10486

  • Privacy Policy
  • Terms & Conditions
  • About Us
  • Freshest Facts
© 2022 Digitalrgs.org
We use cookies on our website to give you the most relevant experience by remembering your preferences and repeat visits. By clicking “Accept”, you consent to the use of ALL the cookies.
Do not sell my personal information.
Cookie SettingsAccept
Manage consent

Privacy Overview

This website uses cookies to improve your experience while you navigate through the website. Out of these, the cookies that are categorized as necessary are stored on your browser as they are essential for the working of basic functionalities of the website. We also use third-party cookies that help us analyze and understand how you use this website. These cookies will be stored in your browser only with your consent. You also have the option to opt-out of these cookies. But opting out of some of these cookies may affect your browsing experience.
Necessary
Always Enabled
Necessary cookies are absolutely essential for the website to function properly. These cookies ensure basic functionalities and security features of the website, anonymously.
CookieDurationDescription
cookielawinfo-checkbox-analytics11 monthsThis cookie is set by GDPR Cookie Consent plugin. The cookie is used to store the user consent for the cookies in the category "Analytics".
cookielawinfo-checkbox-functional11 monthsThe cookie is set by GDPR cookie consent to record the user consent for the cookies in the category "Functional".
cookielawinfo-checkbox-necessary11 monthsThis cookie is set by GDPR Cookie Consent plugin. The cookies is used to store the user consent for the cookies in the category "Necessary".
cookielawinfo-checkbox-others11 monthsThis cookie is set by GDPR Cookie Consent plugin. The cookie is used to store the user consent for the cookies in the category "Other.
cookielawinfo-checkbox-performance11 monthsThis cookie is set by GDPR Cookie Consent plugin. The cookie is used to store the user consent for the cookies in the category "Performance".
viewed_cookie_policy11 monthsThe cookie is set by the GDPR Cookie Consent plugin and is used to store whether or not user has consented to the use of cookies. It does not store any personal data.
Functional
Functional cookies help to perform certain functionalities like sharing the content of the website on social media platforms, collect feedbacks, and other third-party features.
Performance
Performance cookies are used to understand and analyze the key performance indexes of the website which helps in delivering a better user experience for the visitors.
Analytics
Analytical cookies are used to understand how visitors interact with the website. These cookies help provide information on metrics the number of visitors, bounce rate, traffic source, etc.
Advertisement
Advertisement cookies are used to provide visitors with relevant ads and marketing campaigns. These cookies track visitors across websites and collect information to provide customized ads.
Others
Other uncategorized cookies are those that are being analyzed and have not been classified into a category as yet.
SAVE & ACCEPT