<?xml version="1.0" encoding="UTF-8"?><rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:wfw="http://wellformedweb.org/CommentAPI/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
	xmlns:slash="http://purl.org/rss/1.0/modules/slash/"
	>

<channel>
	<title>VPN &#8211; VACIF-EN</title>
	<atom:link href="https://vacif.com/en/tag/vpn/feed/" rel="self" type="application/rss+xml" />
	<link>https://vacif.com/en</link>
	<description>Investing in Value</description>
	<lastBuildDate>Mon, 09 Mar 2026 07:39:32 +0000</lastBuildDate>
	<language>vi</language>
	<sy:updatePeriod>
	hourly	</sy:updatePeriod>
	<sy:updateFrequency>
	1	</sy:updateFrequency>
	<generator>https://wordpress.org/?v=6.9.4</generator>

<image>
	<url>https://vacif.com/en/wp-content/uploads/sites/3/2024/06/cropped-icon-32x32.png</url>
	<title>VPN &#8211; VACIF-EN</title>
	<link>https://vacif.com/en</link>
	<width>32</width>
	<height>32</height>
</image> 
	<item>
		<title>[Latest 2026] Sophos Firewall: Guide to Configuring VPN Site-to-Site Between Fortinet Firewall and Sophos Firewall Firmware V22</title>
		<link>https://vacif.com/en/moi-nhat-2026-sophos-firewall-huong-dan-cau-hinh-vpn-site-to-site-giua-firewall-fortinet-va-sophos-firewall-firmware-v22/</link>
					<comments>https://vacif.com/en/moi-nhat-2026-sophos-firewall-huong-dan-cau-hinh-vpn-site-to-site-giua-firewall-fortinet-va-sophos-firewall-firmware-v22/#respond</comments>
		
		<dc:creator><![CDATA[trang nguyen]]></dc:creator>
		<pubDate>Wed, 04 Mar 2026 05:41:35 +0000</pubDate>
				<category><![CDATA[Blog]]></category>
		<category><![CDATA[export]]></category>
		<category><![CDATA[Firewall]]></category>
		<category><![CDATA[Hướng dẫn]]></category>
		<category><![CDATA[Tài liệu và Hướng dẫn]]></category>
		<category><![CDATA[Fortinet Firewall]]></category>
		<category><![CDATA[Sophos Firewall]]></category>
		<category><![CDATA[Sophos Firewall Firmware V22]]></category>
		<category><![CDATA[VPN]]></category>
		<guid isPermaLink="false">https://vacif.com/?p=29017</guid>

					<description><![CDATA[This article guides how to configure IPSec VPN Site-to-Site between two firewall devices: Fortinet Firewall and Sophos Firewall, in order to securely connect LAN networks at two different sites through the Internet. After the configuration is completed, the following LAN networks can connect and access each other: 192.168.20.0/24 – Site B 172.16.16.0/24 – Site A [&#8230;]]]></description>
										<content:encoded><![CDATA[<div class="root-eb-toc-71c36 wp-block-essential-blocks-table-of-contents"><div class="eb-parent-wrapper eb-parent-eb-toc-71c36 "><div class="eb-toc-container eb-toc-71c36  eb-toc-is-not-sticky eb-toc-not-collapsible eb-toc-initially-not-collapsed eb-toc-scrollToTop style-1 list-style-none" data-scroll-top="false" data-scroll-top-icon="fas fa-angle-up" data-collapsible="false" data-sticky-hide-mobile="false" data-sticky="false" data-scroll-target="scroll_to_toc" data-copy-link="false" data-editor-type="" data-hide-desktop="false" data-hide-tab="false" data-hide-mobile="false" data-itemCollapsed="false" data-highlight-scroll="false"><div class="eb-toc-header"><h2 class="eb-toc-title">Table of Contents</h2></div><div class="eb-toc-wrapper " data-headers="[{&quot;level&quot;:2,&quot;content&quot;:&quot;I \u2013 Overview of the article&quot;,&quot;text&quot;:&quot;I \u2013 Overview of the article&quot;,&quot;link&quot;:&quot;i-overview-of-the-article&quot;},{&quot;level&quot;:2,&quot;content&quot;:&quot;II \u2013 Network diagram&quot;,&quot;text&quot;:&quot;II \u2013 Network diagram&quot;,&quot;link&quot;:&quot;ii-network-diagram&quot;},{&quot;level&quot;:2,&quot;content&quot;:&quot;III \u2013 Configuration scenario&quot;,&quot;text&quot;:&quot;III \u2013 Configuration scenario&quot;,&quot;link&quot;:&quot;iii-configuration-scenario&quot;},{&quot;level&quot;:2,&quot;content&quot;:&quot;IV \u2013 Configuration steps&quot;,&quot;text&quot;:&quot;IV \u2013 Configuration steps&quot;,&quot;link&quot;:&quot;iv-configuration-steps&quot;},{&quot;level&quot;:2,&quot;content&quot;:&quot;V \u2013 Detailed guide to configuring VPN site-to-site between Fortinet Firewall and Sophos Firewall Firmware V22&quot;,&quot;text&quot;:&quot;V \u2013 Detailed guide to configuring VPN site-to-site between Fortinet Firewall and Sophos Firewall Firmware V22&quot;,&quot;link&quot;:&quot;v-detailed-guide-to-configuring-vpn-site-to-site-between-fortinet-firewall-and-sophos-firewall-firmware-v22&quot;},{&quot;level&quot;:2,&quot;content&quot;:&quot;1. On the Fortinet device&quot;,&quot;text&quot;:&quot;1. On the Fortinet device&quot;,&quot;link&quot;:&quot;1-on-the-fortinet-device&quot;},{&quot;level&quot;:2,&quot;content&quot;:&quot;1.1 \u2013 Create VPN TunnelsGo to:&quot;,&quot;text&quot;:&quot;1.1 \u2013 Create VPN TunnelsGo to:&quot;,&quot;link&quot;:&quot;11-create-vpn-tunnelsgo-to&quot;},{&quot;level&quot;:1,&quot;content&quot;:&quot;[LATEST 2026] \u2013 GUIDE TO ACTIVATE &amp; RENEW SOPHOS FIREWALL LICENSE&quot;,&quot;text&quot;:&quot;[LATEST 2026] \u2013 GUIDE TO ACTIVATE &amp; RENEW SOPHOS FIREWALL LICENSE&quot;,&quot;link&quot;:&quot;eb-table-content-7&quot;},{&quot;level&quot;:2,&quot;content&quot;:&quot;I - Overview of Activate and Renew Sophos Firewall License&quot;,&quot;text&quot;:&quot;I - Overview of Activate and Renew Sophos Firewall License&quot;,&quot;link&quot;:&quot;i-overview-of-activate-and-renew-sophos-firewall-license&quot;},{&quot;level&quot;:1,&quot;content&quot;:&quot;II - Guide to Activate Sophos Firewall License&quot;,&quot;text&quot;:&quot;II - Guide to Activate Sophos Firewall License&quot;,&quot;link&quot;:&quot;ii-guide-to-activate-sophos-firewall-license&quot;},{&quot;level&quot;:2,&quot;content&quot;:&quot;1. Create a Sophos Central account&quot;,&quot;text&quot;:&quot;1. Create a Sophos Central account&quot;,&quot;link&quot;:&quot;1-create-a-sophos-central-account&quot;},{&quot;level&quot;:2,&quot;content&quot;:&quot;2. Claim the Sophos Firewall device&quot;,&quot;text&quot;:&quot;2. Claim the Sophos Firewall device&quot;,&quot;link&quot;:&quot;2-claim-the-sophos-firewall-device&quot;},{&quot;level&quot;:2,&quot;content&quot;:&quot;3. Apply License to the device&quot;,&quot;text&quot;:&quot;3. Apply License to the device&quot;,&quot;link&quot;:&quot;3-apply-license-to-the-device&quot;},{&quot;level&quot;:2,&quot;content&quot;:&quot;4. Synchronize License to the Firewall&quot;,&quot;text&quot;:&quot;4. Synchronize License to the Firewall&quot;,&quot;link&quot;:&quot;4-synchronize-license-to-the-firewall&quot;},{&quot;level&quot;:1,&quot;content&quot;:&quot;III - Notes when Renewing Sophos Firewall License&quot;,&quot;text&quot;:&quot;III - Notes when Renewing Sophos Firewall License&quot;,&quot;link&quot;:&quot;iii-notes-when-renewing-sophos-firewall-license&quot;},{&quot;level&quot;:2,&quot;content&quot;:&quot;1. License synchronization mechanism when renewing&quot;,&quot;text&quot;:&quot;1. License synchronization mechanism when renewing&quot;,&quot;link&quot;:&quot;1-license-synchronization-mechanism-when-renewing&quot;},{&quot;level&quot;:2,&quot;content&quot;:&quot;2. Case when the License Key is not received&quot;,&quot;text&quot;:&quot;2. Case when the License Key is not received&quot;,&quot;link&quot;:&quot;2-case-when-the-license-key-is-not-received&quot;},{&quot;level&quot;:1,&quot;content&quot;:&quot;[Latest 2026] Sophos Firewall: Guide to Monitoring &amp; Exporting Reports From Sophos Firewall V22&quot;,&quot;text&quot;:&quot;[Latest 2026] Sophos Firewall: Guide to Monitoring &amp; Exporting Reports From Sophos Firewall V22&quot;,&quot;link&quot;:&quot;eb-table-content-17&quot;},{&quot;level&quot;:2,&quot;content&quot;:&quot;Table of Contents&quot;,&quot;text&quot;:&quot;Table of Contents&quot;,&quot;link&quot;:&quot;table-of-contents&quot;},{&quot;level&quot;:2,&quot;content&quot;:&quot;I \u2013 Overview of Monitoring and Exporting Reports From Sophos Firewall V22&quot;,&quot;text&quot;:&quot;I \u2013 Overview of Monitoring and Exporting Reports From Sophos Firewall V22&quot;,&quot;link&quot;:&quot;i-overview-of-monitoring-and-exporting-reports-from-sophos-firewall-v22&quot;},{&quot;level&quot;:2,&quot;content&quot;:&quot;II \u2013 Details on Monitoring and Exporting Reports From Sophos Firewall V22&quot;,&quot;text&quot;:&quot;II \u2013 Details on Monitoring and Exporting Reports From Sophos Firewall V22&quot;,&quot;link&quot;:&quot;ii-details-on-monitoring-and-exporting-reports-from-sophos-firewall-v22&quot;},{&quot;level&quot;:3,&quot;content&quot;:&quot;1. Introduction to Report &amp; Log Features of Sophos Firewall&quot;,&quot;text&quot;:&quot;1. Introduction to Report &amp; Log Features of Sophos Firewall&quot;,&quot;link&quot;:&quot;1-introduction-to-report-log-features-of-sophos-firewall&quot;},{&quot;level&quot;:4,&quot;content&quot;:&quot;1.1 \u2013 Dashboards&quot;,&quot;text&quot;:&quot;1.1 \u2013 Dashboards&quot;,&quot;link&quot;:&quot;11-dashboards&quot;},{&quot;level&quot;:4,&quot;content&quot;:&quot;1.2 \u2013 Application &amp; Webs&quot;,&quot;text&quot;:&quot;1.2 \u2013 Application &amp; Webs&quot;,&quot;link&quot;:&quot;12-application-webs&quot;},{&quot;level&quot;:4,&quot;content&quot;:&quot;1.3 \u2013 Networks &amp; Threat&quot;,&quot;text&quot;:&quot;1.3 \u2013 Networks &amp; Threat&quot;,&quot;link&quot;:&quot;13-networks-threat&quot;},{&quot;level&quot;:4,&quot;content&quot;:&quot;1.4 \u2013 VPN&quot;,&quot;text&quot;:&quot;1.4 \u2013 VPN&quot;,&quot;link&quot;:&quot;14-vpn&quot;},{&quot;level&quot;:4,&quot;content&quot;:&quot;1.5 \u2013 Email&quot;,&quot;text&quot;:&quot;1.5 \u2013 Email&quot;,&quot;link&quot;:&quot;15-email&quot;},{&quot;level&quot;:4,&quot;content&quot;:&quot;1.6 \u2013 Compliance&quot;,&quot;text&quot;:&quot;1.6 \u2013 Compliance&quot;,&quot;link&quot;:&quot;16-compliance&quot;},{&quot;level&quot;:4,&quot;content&quot;:&quot;1.7 \u2013 Custom&quot;,&quot;text&quot;:&quot;1.7 \u2013 Custom&quot;,&quot;link&quot;:&quot;17-custom&quot;},{&quot;level&quot;:4,&quot;content&quot;:&quot;1.8 \u2013 Log Viewer&quot;,&quot;text&quot;:&quot;1.8 \u2013 Log Viewer&quot;,&quot;link&quot;:&quot;18-log-viewer&quot;},{&quot;level&quot;:3,&quot;content&quot;:&quot;2. How to Export Reports on Sophos Firewall&quot;,&quot;text&quot;:&quot;2. How to Export Reports on Sophos Firewall&quot;,&quot;link&quot;:&quot;2-how-to-export-reports-on-sophos-firewall&quot;},{&quot;level&quot;:1,&quot;content&quot;:&quot;[Latest 2026] Sophos Firewall: Guide to Monitoring &amp; Exporting Reports from Sophos Firewall V22&quot;,&quot;text&quot;:&quot;[Latest 2026] Sophos Firewall: Guide to Monitoring &amp; Exporting Reports from Sophos Firewall V22&quot;,&quot;link&quot;:&quot;eb-table-content-31&quot;},{&quot;level&quot;:2,&quot;content&quot;:&quot;Table of Contents&quot;,&quot;text&quot;:&quot;Table of Contents&quot;,&quot;link&quot;:&quot;table-of-contents-2&quot;},{&quot;level&quot;:1,&quot;content&quot;:&quot;I \u2013 Overview of Monitoring and Exporting Reports from Sophos Firewall V22&quot;,&quot;text&quot;:&quot;I \u2013 Overview of Monitoring and Exporting Reports from Sophos Firewall V22&quot;,&quot;link&quot;:&quot;i-overview-of-monitoring-and-exporting-reports-from-sophos-firewall-v22-2&quot;},{&quot;level&quot;:1,&quot;content&quot;:&quot;II \u2013 Details of Monitoring and Exporting Reports from Sophos Firewall V22&quot;,&quot;text&quot;:&quot;II \u2013 Details of Monitoring and Exporting Reports from Sophos Firewall V22&quot;,&quot;link&quot;:&quot;ii-details-of-monitoring-and-exporting-reports-from-sophos-firewall-v22&quot;},{&quot;level&quot;:2,&quot;content&quot;:&quot;1 \u2013 Introduction to the Report &amp; Log features of Sophos Firewall&quot;,&quot;text&quot;:&quot;1 \u2013 Introduction to the Report &amp; Log features of Sophos Firewall&quot;,&quot;link&quot;:&quot;1-introduction-to-the-report-log-features-of-sophos-firewall&quot;},{&quot;level&quot;:3,&quot;content&quot;:&quot;1.1 \u2013 Dashboards&quot;,&quot;text&quot;:&quot;1.1 \u2013 Dashboards&quot;,&quot;link&quot;:&quot;11-dashboards-2&quot;},{&quot;level&quot;:3,&quot;content&quot;:&quot;1.2 \u2013 Applications &amp; Webs&quot;,&quot;text&quot;:&quot;1.2 \u2013 Applications &amp; Webs&quot;,&quot;link&quot;:&quot;12-applications-webs&quot;},{&quot;level&quot;:3,&quot;content&quot;:&quot;1.3 \u2013 Networks &amp; Threat&quot;,&quot;text&quot;:&quot;1.3 \u2013 Networks &amp; Threat&quot;,&quot;link&quot;:&quot;13-networks-threat-2&quot;},{&quot;level&quot;:3,&quot;content&quot;:&quot;1.4 \u2013 VPN&quot;,&quot;text&quot;:&quot;1.4 \u2013 VPN&quot;,&quot;link&quot;:&quot;14-vpn-2&quot;},{&quot;level&quot;:3,&quot;content&quot;:&quot;1.5 \u2013 Email&quot;,&quot;text&quot;:&quot;1.5 \u2013 Email&quot;,&quot;link&quot;:&quot;15-email-2&quot;},{&quot;level&quot;:3,&quot;content&quot;:&quot;1.6 \u2013 Compliance&quot;,&quot;text&quot;:&quot;1.6 \u2013 Compliance&quot;,&quot;link&quot;:&quot;16-compliance-2&quot;},{&quot;level&quot;:3,&quot;content&quot;:&quot;1.7 \u2013 Custom&quot;,&quot;text&quot;:&quot;1.7 \u2013 Custom&quot;,&quot;link&quot;:&quot;17-custom-2&quot;},{&quot;level&quot;:3,&quot;content&quot;:&quot;1.8 \u2013 Log Viewer&quot;,&quot;text&quot;:&quot;1.8 \u2013 Log Viewer&quot;,&quot;link&quot;:&quot;18-log-viewer-2&quot;},{&quot;level&quot;:1,&quot;content&quot;:&quot;2 \u2013 How to Export Reports on Sophos Firewall&quot;,&quot;text&quot;:&quot;2 \u2013 How to Export Reports on Sophos Firewall&quot;,&quot;link&quot;:&quot;2-how-to-export-reports-on-sophos-firewall-2&quot;},{&quot;level&quot;:1,&quot;content&quot;:&quot;[Latest 2026] Sophos Firewall: Guide to Monitoring &amp; Exporting Reports from Sophos Firewall V22&quot;,&quot;text&quot;:&quot;[Latest 2026] Sophos Firewall: Guide to Monitoring &amp; Exporting Reports from Sophos Firewall V22&quot;,&quot;link&quot;:&quot;eb-table-content-45&quot;},{&quot;level&quot;:2,&quot;content&quot;:&quot;Table of Contents&quot;,&quot;text&quot;:&quot;Table of Contents&quot;,&quot;link&quot;:&quot;table-of-contents-3&quot;},{&quot;level&quot;:1,&quot;content&quot;:&quot;I \u2013 Overview of monitoring and exporting reports from Sophos Firewall V22&quot;,&quot;text&quot;:&quot;I \u2013 Overview of monitoring and exporting reports from Sophos Firewall V22&quot;,&quot;link&quot;:&quot;i-overview-of-monitoring-and-exporting-reports-from-sophos-firewall-v22-3&quot;},{&quot;level&quot;:1,&quot;content&quot;:&quot;II \u2013 Details of monitoring and exporting reports from Sophos Firewall V22&quot;,&quot;text&quot;:&quot;II \u2013 Details of monitoring and exporting reports from Sophos Firewall V22&quot;,&quot;link&quot;:&quot;ii-details-of-monitoring-and-exporting-reports-from-sophos-firewall-v22-2&quot;},{&quot;level&quot;:2,&quot;content&quot;:&quot;1 \u2013 Introduction to the Report &amp; Log features of Sophos Firewall&quot;,&quot;text&quot;:&quot;1 \u2013 Introduction to the Report &amp; Log features of Sophos Firewall&quot;,&quot;link&quot;:&quot;1-introduction-to-the-report-log-features-of-sophos-firewall-2&quot;},{&quot;level&quot;:3,&quot;content&quot;:&quot;1.1 \u2013 Dashboards&quot;,&quot;text&quot;:&quot;1.1 \u2013 Dashboards&quot;,&quot;link&quot;:&quot;11-dashboards-3&quot;},{&quot;level&quot;:3,&quot;content&quot;:&quot;1.2 \u2013 Application &amp; Webs&quot;,&quot;text&quot;:&quot;1.2 \u2013 Application &amp; Webs&quot;,&quot;link&quot;:&quot;12-application-webs-2&quot;},{&quot;level&quot;:3,&quot;content&quot;:&quot;1.3 \u2013 Networks &amp; Threat&quot;,&quot;text&quot;:&quot;1.3 \u2013 Networks &amp; Threat&quot;,&quot;link&quot;:&quot;13-networks-threat-3&quot;},{&quot;level&quot;:3,&quot;content&quot;:&quot;1.4 \u2013 VPN&quot;,&quot;text&quot;:&quot;1.4 \u2013 VPN&quot;,&quot;link&quot;:&quot;14-vpn-3&quot;},{&quot;level&quot;:3,&quot;content&quot;:&quot;1.5 \u2013 Email&quot;,&quot;text&quot;:&quot;1.5 \u2013 Email&quot;,&quot;link&quot;:&quot;15-email-3&quot;},{&quot;level&quot;:3,&quot;content&quot;:&quot;1.6 \u2013 Compliance&quot;,&quot;text&quot;:&quot;1.6 \u2013 Compliance&quot;,&quot;link&quot;:&quot;16-compliance-3&quot;},{&quot;level&quot;:3,&quot;content&quot;:&quot;1.7 \u2013 Custom&quot;,&quot;text&quot;:&quot;1.7 \u2013 Custom&quot;,&quot;link&quot;:&quot;17-custom-3&quot;},{&quot;level&quot;:3,&quot;content&quot;:&quot;1.8 \u2013 Log Viewer&quot;,&quot;text&quot;:&quot;1.8 \u2013 Log Viewer&quot;,&quot;link&quot;:&quot;18-log-viewer-3&quot;},{&quot;level&quot;:1,&quot;content&quot;:&quot;2 \u2013 How to export reports on Sophos Firewall&quot;,&quot;text&quot;:&quot;2 \u2013 How to export reports on Sophos Firewall&quot;,&quot;link&quot;:&quot;2-how-to-export-reports-on-sophos-firewall-3&quot;},{&quot;level&quot;:1,&quot;content&quot;:&quot;[Latest 2026] Sophos Firewall: Guide to Configuring VPN Site-to-Site Between Fortinet Firewall and Sophos Firewall Firmware V22&quot;,&quot;text&quot;:&quot;[Latest 2026] Sophos Firewall: Guide to Configuring VPN Site-to-Site Between Fortinet Firewall and Sophos Firewall Firmware V22&quot;,&quot;link&quot;:&quot;eb-table-content-59&quot;},{&quot;level&quot;:1,&quot;content&quot;:&quot;I \u2013 Overview of the article&quot;,&quot;text&quot;:&quot;I \u2013 Overview of the article&quot;,&quot;link&quot;:&quot;i-overview-of-the-article-2&quot;},{&quot;level&quot;:1,&quot;content&quot;:&quot;II \u2013 Network diagram&quot;,&quot;text&quot;:&quot;II \u2013 Network diagram&quot;,&quot;link&quot;:&quot;ii-network-diagram-2&quot;},{&quot;level&quot;:2,&quot;content&quot;:&quot;Explanation of the network diagram&quot;,&quot;text&quot;:&quot;Explanation of the network diagram&quot;,&quot;link&quot;:&quot;explanation-of-the-network-diagram&quot;},{&quot;level&quot;:2,&quot;content&quot;:&quot;Notes about the diagram&quot;,&quot;text&quot;:&quot;Notes about the diagram&quot;,&quot;link&quot;:&quot;notes-about-the-diagram&quot;},{&quot;level&quot;:1,&quot;content&quot;:&quot;III \u2013 Configuration scenario&quot;,&quot;text&quot;:&quot;III \u2013 Configuration scenario&quot;,&quot;link&quot;:&quot;iii-configuration-scenario-2&quot;},{&quot;level&quot;:2,&quot;content&quot;:&quot;Objective&quot;,&quot;text&quot;:&quot;Objective&quot;,&quot;link&quot;:&quot;objective&quot;},{&quot;level&quot;:1,&quot;content&quot;:&quot;IV \u2013 Configuration steps&quot;,&quot;text&quot;:&quot;IV \u2013 Configuration steps&quot;,&quot;link&quot;:&quot;iv-configuration-steps-2&quot;},{&quot;level&quot;:3,&quot;content&quot;:&quot;On the Fortinet device:&quot;,&quot;text&quot;:&quot;On the Fortinet device:&quot;,&quot;link&quot;:&quot;on-the-fortinet-device&quot;},{&quot;level&quot;:3,&quot;content&quot;:&quot;On the Sophos device:&quot;,&quot;text&quot;:&quot;On the Sophos device:&quot;,&quot;link&quot;:&quot;on-the-sophos-device&quot;},{&quot;level&quot;:1,&quot;content&quot;:&quot;V \u2013 Detailed guide to configuring VPN site-to-site between Fortinet Firewall and Sophos Firewall Firmware V22&quot;,&quot;text&quot;:&quot;V \u2013 Detailed guide to configuring VPN site-to-site between Fortinet Firewall and Sophos Firewall Firmware V22&quot;,&quot;link&quot;:&quot;v-detailed-guide-to-configuring-vpn-site-to-site-between-fortinet-firewall-and-sophos-firewall-firmware-v22-2&quot;},{&quot;level&quot;:1,&quot;content&quot;:&quot;1. On the Fortinet device&quot;,&quot;text&quot;:&quot;1. On the Fortinet device&quot;,&quot;link&quot;:&quot;1-on-the-fortinet-device-2&quot;},{&quot;level&quot;:2,&quot;content&quot;:&quot;1.1 \u2013 Create VPN Tunnels&quot;,&quot;text&quot;:&quot;1.1 \u2013 Create VPN Tunnels&quot;,&quot;link&quot;:&quot;11-create-vpn-tunnels&quot;},{&quot;level&quot;:2,&quot;content&quot;:&quot;1.2 \u2013 Create Static Route&quot;,&quot;text&quot;:&quot;1.2 \u2013 Create Static Route&quot;,&quot;link&quot;:&quot;12-create-static-route&quot;},{&quot;level&quot;:2,&quot;content&quot;:&quot;1.3 \u2013 Create Firewall Policy&quot;,&quot;text&quot;:&quot;1.3 \u2013 Create Firewall Policy&quot;,&quot;link&quot;:&quot;13-create-firewall-policy&quot;},{&quot;level&quot;:2,&quot;content&quot;:&quot;2. On the Sophos device&quot;,&quot;text&quot;:&quot;2. On the Sophos device&quot;,&quot;link&quot;:&quot;2-on-the-sophos-device&quot;},{&quot;level&quot;:2,&quot;content&quot;:&quot;2.1 \u2013 Create subnet&quot;,&quot;text&quot;:&quot;2.1 \u2013 Create subnet&quot;,&quot;link&quot;:&quot;21-create-subnet&quot;},{&quot;level&quot;:2,&quot;content&quot;:&quot;2.2 \u2013 Create IPSec Profile&quot;,&quot;text&quot;:&quot;2.2 \u2013 Create IPSec Profile&quot;,&quot;link&quot;:&quot;22-create-ipsec-profile&quot;},{&quot;level&quot;:2,&quot;content&quot;:&quot;2.3 \u2013 Create IPSec Connection&quot;,&quot;text&quot;:&quot;2.3 \u2013 Create IPSec Connection&quot;,&quot;link&quot;:&quot;23-create-ipsec-connection&quot;},{&quot;level&quot;:2,&quot;content&quot;:&quot;2.4 \u2013 Create Sophos Firewall Rule&quot;,&quot;text&quot;:&quot;2.4 \u2013 Create Sophos Firewall Rule&quot;,&quot;link&quot;:&quot;24-create-sophos-firewall-rule&quot;},{&quot;level&quot;:2,&quot;content&quot;:&quot;Verify the result&quot;,&quot;text&quot;:&quot;Verify the result&quot;,&quot;link&quot;:&quot;verify-the-result&quot;},{&quot;level&quot;:2,&quot;content&quot;:&quot;*Notes &amp; deployment considerations&quot;,&quot;text&quot;:&quot;*Notes &amp; deployment considerations&quot;,&quot;link&quot;:&quot;notes-deployment-considerations&quot;}]" data-visible="[true,true,true,true,true,true]" data-delete-headers="[{&quot;label&quot;:&quot;I \u2013 Overview of the article&quot;,&quot;value&quot;:&quot;i-overview-of-the-article&quot;,&quot;isDelete&quot;:false},{&quot;label&quot;:&quot;II \u2013 Network diagram&quot;,&quot;value&quot;:&quot;ii-network-diagram&quot;,&quot;isDelete&quot;:false},{&quot;label&quot;:&quot;III \u2013 Configuration scenario&quot;,&quot;value&quot;:&quot;iii-configuration-scenario&quot;,&quot;isDelete&quot;:false},{&quot;label&quot;:&quot;IV \u2013 Configuration steps&quot;,&quot;value&quot;:&quot;iv-configuration-steps&quot;,&quot;isDelete&quot;:false},{&quot;label&quot;:&quot;V \u2013 Detailed guide to configuring VPN site-to-site between Fortinet Firewall and Sophos Firewall Firmware V22&quot;,&quot;value&quot;:&quot;v-detailed-guide-to-configuring-vpn-site-to-site-between-fortinet-firewall-and-sophos-firewall-firmware-v22&quot;,&quot;isDelete&quot;:false},{&quot;label&quot;:&quot;1. On the Fortinet device&quot;,&quot;value&quot;:&quot;1-on-the-fortinet-device&quot;,&quot;isDelete&quot;:false},{&quot;label&quot;:&quot;1.1 \u2013 Create VPN TunnelsGo to:&quot;,&quot;value&quot;:&quot;11-create-vpn-tunnelsgo-to&quot;,&quot;isDelete&quot;:false},{&quot;label&quot;:&quot;[LATEST 2026] \u2013 GUIDE TO ACTIVATE &amp; RENEW SOPHOS FIREWALL LICENSE&quot;,&quot;value&quot;:&quot;[latest-2026]-guide-to-activate-renew-sophos-firewall-license&quot;,&quot;isDelete&quot;:false},{&quot;label&quot;:&quot;I - Overview of Activate and Renew Sophos Firewall License&quot;,&quot;value&quot;:&quot;i-overview-of-activate-and-renew-sophos-firewall-license&quot;,&quot;isDelete&quot;:false},{&quot;label&quot;:&quot;II - Guide to Activate Sophos Firewall License&quot;,&quot;value&quot;:&quot;ii-guide-to-activate-sophos-firewall-license&quot;,&quot;isDelete&quot;:false},{&quot;label&quot;:&quot;1. Create a Sophos Central account&quot;,&quot;value&quot;:&quot;1-create-a-sophos-central-account&quot;,&quot;isDelete&quot;:false},{&quot;label&quot;:&quot;2. Claim the Sophos Firewall device&quot;,&quot;value&quot;:&quot;2-claim-the-sophos-firewall-device&quot;,&quot;isDelete&quot;:false},{&quot;label&quot;:&quot;3. Apply License to the device&quot;,&quot;value&quot;:&quot;3-apply-license-to-the-device&quot;,&quot;isDelete&quot;:false},{&quot;label&quot;:&quot;4. Synchronize License to the Firewall&quot;,&quot;value&quot;:&quot;4-synchronize-license-to-the-firewall&quot;,&quot;isDelete&quot;:false},{&quot;label&quot;:&quot;III - Notes when Renewing Sophos Firewall License&quot;,&quot;value&quot;:&quot;iii-notes-when-renewing-sophos-firewall-license&quot;,&quot;isDelete&quot;:false},{&quot;label&quot;:&quot;1. License synchronization mechanism when renewing&quot;,&quot;value&quot;:&quot;1-license-synchronization-mechanism-when-renewing&quot;,&quot;isDelete&quot;:false},{&quot;label&quot;:&quot;2. Case when the License Key is not received&quot;,&quot;value&quot;:&quot;2-case-when-the-license-key-is-not-received&quot;,&quot;isDelete&quot;:false},{&quot;label&quot;:&quot;[Latest 2026] Sophos Firewall: Guide to Monitoring &amp; Exporting Reports From Sophos Firewall V22&quot;,&quot;value&quot;:&quot;[latest-2026]-sophos-firewall-guide-to-monitoring-exporting-reports-from-sophos-firewall-v22&quot;,&quot;isDelete&quot;:false},{&quot;label&quot;:&quot;Table of Contents&quot;,&quot;value&quot;:&quot;table-of-contents&quot;,&quot;isDelete&quot;:false},{&quot;label&quot;:&quot;I \u2013 Overview of Monitoring and Exporting Reports From Sophos Firewall V22&quot;,&quot;value&quot;:&quot;i-overview-of-monitoring-and-exporting-reports-from-sophos-firewall-v22&quot;,&quot;isDelete&quot;:false},{&quot;label&quot;:&quot;II \u2013 Details on Monitoring and Exporting Reports From Sophos Firewall V22&quot;,&quot;value&quot;:&quot;ii-details-on-monitoring-and-exporting-reports-from-sophos-firewall-v22&quot;,&quot;isDelete&quot;:false},{&quot;label&quot;:&quot;1. Introduction to Report &amp; Log Features of Sophos Firewall&quot;,&quot;value&quot;:&quot;1-introduction-to-report-log-features-of-sophos-firewall&quot;,&quot;isDelete&quot;:false},{&quot;label&quot;:&quot;1.1 \u2013 Dashboards&quot;,&quot;value&quot;:&quot;11-dashboards&quot;,&quot;isDelete&quot;:false},{&quot;label&quot;:&quot;1.2 \u2013 Application &amp; Webs&quot;,&quot;value&quot;:&quot;12-application-webs&quot;,&quot;isDelete&quot;:false},{&quot;label&quot;:&quot;1.3 \u2013 Networks &amp; Threat&quot;,&quot;value&quot;:&quot;13-networks-threat&quot;,&quot;isDelete&quot;:false},{&quot;label&quot;:&quot;1.4 \u2013 VPN&quot;,&quot;value&quot;:&quot;14-vpn&quot;,&quot;isDelete&quot;:false},{&quot;label&quot;:&quot;1.5 \u2013 Email&quot;,&quot;value&quot;:&quot;15-email&quot;,&quot;isDelete&quot;:false},{&quot;label&quot;:&quot;1.6 \u2013 Compliance&quot;,&quot;value&quot;:&quot;16-compliance&quot;,&quot;isDelete&quot;:false},{&quot;label&quot;:&quot;1.7 \u2013 Custom&quot;,&quot;value&quot;:&quot;17-custom&quot;,&quot;isDelete&quot;:false},{&quot;label&quot;:&quot;1.8 \u2013 Log Viewer&quot;,&quot;value&quot;:&quot;18-log-viewer&quot;,&quot;isDelete&quot;:false},{&quot;label&quot;:&quot;2. How to Export Reports on Sophos Firewall&quot;,&quot;value&quot;:&quot;2-how-to-export-reports-on-sophos-firewall&quot;,&quot;isDelete&quot;:false},{&quot;label&quot;:&quot;[Latest 2026] Sophos Firewall: Guide to Monitoring &amp; Exporting Reports from Sophos Firewall V22&quot;,&quot;value&quot;:&quot;[latest-2026]-sophos-firewall-guide-to-monitoring-exporting-reports-from-sophos-firewall-v22&quot;,&quot;isDelete&quot;:false},{&quot;label&quot;:&quot;Table of Contents&quot;,&quot;value&quot;:&quot;table-of-contents&quot;,&quot;isDelete&quot;:false},{&quot;label&quot;:&quot;I \u2013 Overview of Monitoring and Exporting Reports from Sophos Firewall V22&quot;,&quot;value&quot;:&quot;i-overview-of-monitoring-and-exporting-reports-from-sophos-firewall-v22&quot;,&quot;isDelete&quot;:false},{&quot;label&quot;:&quot;II \u2013 Details of Monitoring and Exporting Reports from Sophos Firewall V22&quot;,&quot;value&quot;:&quot;ii-details-of-monitoring-and-exporting-reports-from-sophos-firewall-v22&quot;,&quot;isDelete&quot;:false},{&quot;label&quot;:&quot;1 \u2013 Introduction to the Report &amp; Log features of Sophos Firewall&quot;,&quot;value&quot;:&quot;1-introduction-to-the-report-log-features-of-sophos-firewall&quot;,&quot;isDelete&quot;:false},{&quot;label&quot;:&quot;1.1 \u2013 Dashboards&quot;,&quot;value&quot;:&quot;11-dashboards&quot;,&quot;isDelete&quot;:false},{&quot;label&quot;:&quot;1.2 \u2013 Applications &amp; Webs&quot;,&quot;value&quot;:&quot;12-applications-webs&quot;,&quot;isDelete&quot;:false},{&quot;label&quot;:&quot;1.3 \u2013 Networks &amp; Threat&quot;,&quot;value&quot;:&quot;13-networks-threat&quot;,&quot;isDelete&quot;:false},{&quot;label&quot;:&quot;1.4 \u2013 VPN&quot;,&quot;value&quot;:&quot;14-vpn&quot;,&quot;isDelete&quot;:false},{&quot;label&quot;:&quot;1.5 \u2013 Email&quot;,&quot;value&quot;:&quot;15-email&quot;,&quot;isDelete&quot;:false},{&quot;label&quot;:&quot;1.6 \u2013 Compliance&quot;,&quot;value&quot;:&quot;16-compliance&quot;,&quot;isDelete&quot;:false},{&quot;label&quot;:&quot;1.7 \u2013 Custom&quot;,&quot;value&quot;:&quot;17-custom&quot;,&quot;isDelete&quot;:false},{&quot;label&quot;:&quot;1.8 \u2013 Log Viewer&quot;,&quot;value&quot;:&quot;18-log-viewer&quot;,&quot;isDelete&quot;:false},{&quot;label&quot;:&quot;2 \u2013 How to Export Reports on Sophos Firewall&quot;,&quot;value&quot;:&quot;2-how-to-export-reports-on-sophos-firewall&quot;,&quot;isDelete&quot;:false},{&quot;label&quot;:&quot;[Latest 2026] Sophos Firewall: Guide to Monitoring &amp; Exporting Reports from Sophos Firewall V22&quot;,&quot;value&quot;:&quot;[latest-2026]-sophos-firewall-guide-to-monitoring-exporting-reports-from-sophos-firewall-v22&quot;,&quot;isDelete&quot;:false},{&quot;label&quot;:&quot;Table of Contents&quot;,&quot;value&quot;:&quot;table-of-contents&quot;,&quot;isDelete&quot;:false},{&quot;label&quot;:&quot;I \u2013 Overview of monitoring and exporting reports from Sophos Firewall V22&quot;,&quot;value&quot;:&quot;i-overview-of-monitoring-and-exporting-reports-from-sophos-firewall-v22&quot;,&quot;isDelete&quot;:false},{&quot;label&quot;:&quot;II \u2013 Details of monitoring and exporting reports from Sophos Firewall V22&quot;,&quot;value&quot;:&quot;ii-details-of-monitoring-and-exporting-reports-from-sophos-firewall-v22&quot;,&quot;isDelete&quot;:false},{&quot;label&quot;:&quot;1 \u2013 Introduction to the Report &amp; Log features of Sophos Firewall&quot;,&quot;value&quot;:&quot;1-introduction-to-the-report-log-features-of-sophos-firewall&quot;,&quot;isDelete&quot;:false},{&quot;label&quot;:&quot;1.1 \u2013 Dashboards&quot;,&quot;value&quot;:&quot;11-dashboards&quot;,&quot;isDelete&quot;:false},{&quot;label&quot;:&quot;1.2 \u2013 Application &amp; Webs&quot;,&quot;value&quot;:&quot;12-application-webs&quot;,&quot;isDelete&quot;:false},{&quot;label&quot;:&quot;1.3 \u2013 Networks &amp; Threat&quot;,&quot;value&quot;:&quot;13-networks-threat&quot;,&quot;isDelete&quot;:false},{&quot;label&quot;:&quot;1.4 \u2013 VPN&quot;,&quot;value&quot;:&quot;14-vpn&quot;,&quot;isDelete&quot;:false},{&quot;label&quot;:&quot;1.5 \u2013 Email&quot;,&quot;value&quot;:&quot;15-email&quot;,&quot;isDelete&quot;:false},{&quot;label&quot;:&quot;1.6 \u2013 Compliance&quot;,&quot;value&quot;:&quot;16-compliance&quot;,&quot;isDelete&quot;:false},{&quot;label&quot;:&quot;1.7 \u2013 Custom&quot;,&quot;value&quot;:&quot;17-custom&quot;,&quot;isDelete&quot;:false},{&quot;label&quot;:&quot;1.8 \u2013 Log Viewer&quot;,&quot;value&quot;:&quot;18-log-viewer&quot;,&quot;isDelete&quot;:false},{&quot;label&quot;:&quot;2 \u2013 How to export reports on Sophos Firewall&quot;,&quot;value&quot;:&quot;2-how-to-export-reports-on-sophos-firewall&quot;,&quot;isDelete&quot;:false},{&quot;label&quot;:&quot;[Latest 2026] Sophos Firewall: Guide to Configuring VPN Site-to-Site Between Fortinet Firewall and Sophos Firewall Firmware V22&quot;,&quot;value&quot;:&quot;[latest-2026]-sophos-firewall-guide-to-configuring-vpn-site-to-site-between-fortinet-firewall-and-sophos-firewall-firmware-v22&quot;,&quot;isDelete&quot;:false},{&quot;label&quot;:&quot;I \u2013 Overview of the article&quot;,&quot;value&quot;:&quot;i-overview-of-the-article&quot;,&quot;isDelete&quot;:false},{&quot;label&quot;:&quot;II \u2013 Network diagram&quot;,&quot;value&quot;:&quot;ii-network-diagram&quot;,&quot;isDelete&quot;:false},{&quot;label&quot;:&quot;Explanation of the network diagram&quot;,&quot;value&quot;:&quot;explanation-of-the-network-diagram&quot;,&quot;isDelete&quot;:false},{&quot;label&quot;:&quot;Notes about the diagram&quot;,&quot;value&quot;:&quot;notes-about-the-diagram&quot;,&quot;isDelete&quot;:false},{&quot;label&quot;:&quot;III \u2013 Configuration scenario&quot;,&quot;value&quot;:&quot;iii-configuration-scenario&quot;,&quot;isDelete&quot;:false},{&quot;label&quot;:&quot;Objective&quot;,&quot;value&quot;:&quot;objective&quot;,&quot;isDelete&quot;:false},{&quot;label&quot;:&quot;IV \u2013 Configuration steps&quot;,&quot;value&quot;:&quot;iv-configuration-steps&quot;,&quot;isDelete&quot;:false},{&quot;label&quot;:&quot;On the Fortinet device:&quot;,&quot;value&quot;:&quot;on-the-fortinet-device&quot;,&quot;isDelete&quot;:false},{&quot;label&quot;:&quot;On the Sophos device:&quot;,&quot;value&quot;:&quot;on-the-sophos-device&quot;,&quot;isDelete&quot;:false},{&quot;label&quot;:&quot;V \u2013 Detailed guide to configuring VPN site-to-site between Fortinet Firewall and Sophos Firewall Firmware V22&quot;,&quot;value&quot;:&quot;v-detailed-guide-to-configuring-vpn-site-to-site-between-fortinet-firewall-and-sophos-firewall-firmware-v22&quot;,&quot;isDelete&quot;:false},{&quot;label&quot;:&quot;1. On the Fortinet device&quot;,&quot;value&quot;:&quot;1-on-the-fortinet-device&quot;,&quot;isDelete&quot;:false},{&quot;label&quot;:&quot;1.1 \u2013 Create VPN Tunnels&quot;,&quot;value&quot;:&quot;11-create-vpn-tunnels&quot;,&quot;isDelete&quot;:false},{&quot;label&quot;:&quot;1.2 \u2013 Create Static Route&quot;,&quot;value&quot;:&quot;12-create-static-route&quot;,&quot;isDelete&quot;:false},{&quot;label&quot;:&quot;1.3 \u2013 Create Firewall Policy&quot;,&quot;value&quot;:&quot;13-create-firewall-policy&quot;,&quot;isDelete&quot;:false},{&quot;label&quot;:&quot;2. On the Sophos device&quot;,&quot;value&quot;:&quot;2-on-the-sophos-device&quot;,&quot;isDelete&quot;:false},{&quot;label&quot;:&quot;2.1 \u2013 Create subnet&quot;,&quot;value&quot;:&quot;21-create-subnet&quot;,&quot;isDelete&quot;:false},{&quot;label&quot;:&quot;2.2 \u2013 Create IPSec Profile&quot;,&quot;value&quot;:&quot;22-create-ipsec-profile&quot;,&quot;isDelete&quot;:false},{&quot;label&quot;:&quot;2.3 \u2013 Create IPSec Connection&quot;,&quot;value&quot;:&quot;23-create-ipsec-connection&quot;,&quot;isDelete&quot;:false},{&quot;label&quot;:&quot;2.4 \u2013 Create Sophos Firewall Rule&quot;,&quot;value&quot;:&quot;24-create-sophos-firewall-rule&quot;,&quot;isDelete&quot;:false},{&quot;label&quot;:&quot;Verify the result&quot;,&quot;value&quot;:&quot;verify-the-result&quot;,&quot;isDelete&quot;:false},{&quot;label&quot;:&quot;*Notes &amp; deployment considerations&quot;,&quot;value&quot;:&quot;notes-deployment-considerations&quot;,&quot;isDelete&quot;:false}]" data-smooth="true" data-top-offset=""><div class="eb-toc__list-wrap"><ul class='eb-toc__list'><li><a href="#i-overview-of-the-article">I – Overview of the article</a><li><a href="#ii-network-diagram">II – Network diagram</a><li><a href="#iii-configuration-scenario">III – Configuration scenario</a><li><a href="#iv-configuration-steps">IV – Configuration steps</a><li><a href="#v-detailed-guide-to-configuring-vpn-site-to-site-between-fortinet-firewall-and-sophos-firewall-firmware-v22">V – Detailed guide to configuring VPN site-to-site between Fortinet Firewall and Sophos Firewall Firmware V22</a><li><a href="#1-on-the-fortinet-device">1. On the Fortinet device</a><li><a href="#11-create-vpn-tunnelsgo-to">1.1 – Create VPN TunnelsGo to:</a><li><a href="#eb-table-content-7">[LATEST 2026] – GUIDE TO ACTIVATE &amp; RENEW SOPHOS FIREWALL LICENSE</a><ul class='eb-toc__list'><li><a href="#i-overview-of-activate-and-renew-sophos-firewall-license">I &#8211; Overview of Activate and Renew Sophos Firewall License</a></li></ul><li><a href="#ii-guide-to-activate-sophos-firewall-license">II &#8211; Guide to Activate Sophos Firewall License</a><ul class='eb-toc__list'><li><a href="#1-create-a-sophos-central-account">1. Create a Sophos Central account</a><li><a href="#2-claim-the-sophos-firewall-device">2. Claim the Sophos Firewall device</a><li><a href="#3-apply-license-to-the-device">3. Apply License to the device</a><li><a href="#4-synchronize-license-to-the-firewall">4. Synchronize License to the Firewall</a></li></ul><li><a href="#iii-notes-when-renewing-sophos-firewall-license">III &#8211; Notes when Renewing Sophos Firewall License</a><ul class='eb-toc__list'><li><a href="#1-license-synchronization-mechanism-when-renewing">1. License synchronization mechanism when renewing</a><li><a href="#2-case-when-the-license-key-is-not-received">2. Case when the License Key is not received</a></li></ul><li><a href="#eb-table-content-17">[Latest 2026] Sophos Firewall: Guide to Monitoring &amp; Exporting Reports From Sophos Firewall V22</a><ul class='eb-toc__list'><li><a href="#table-of-contents">Table of Contents</a><li><a href="#i-overview-of-monitoring-and-exporting-reports-from-sophos-firewall-v22">I – Overview of Monitoring and Exporting Reports From Sophos Firewall V22</a><li><a href="#ii-details-on-monitoring-and-exporting-reports-from-sophos-firewall-v22">II – Details on Monitoring and Exporting Reports From Sophos Firewall V22</a><ul class='eb-toc__list'><li><a href="#1-introduction-to-report-log-features-of-sophos-firewall">1. Introduction to Report &amp; Log Features of Sophos Firewall</a><ul class='eb-toc__list'><li><a href="#11-dashboards">1.1 – Dashboards</a><li><a href="#12-application-webs">1.2 – Application &amp; Webs</a><li><a href="#13-networks-threat">1.3 – Networks &amp; Threat</a><li><a href="#14-vpn">1.4 – VPN</a><li><a href="#15-email">1.5 – Email</a><li><a href="#16-compliance">1.6 – Compliance</a><li><a href="#17-custom">1.7 – Custom</a><li><a href="#18-log-viewer">1.8 – Log Viewer</a></li></ul><li><a href="#2-how-to-export-reports-on-sophos-firewall">2. How to Export Reports on Sophos Firewall</a></li></ul></li></ul><li><a href="#eb-table-content-31">[Latest 2026] Sophos Firewall: Guide to Monitoring &amp; Exporting Reports from Sophos Firewall V22</a><ul class='eb-toc__list'><li><a href="#table-of-contents-2">Table of Contents</a></li></ul><li><a href="#i-overview-of-monitoring-and-exporting-reports-from-sophos-firewall-v22-2">I – Overview of Monitoring and Exporting Reports from Sophos Firewall V22</a><li><a href="#ii-details-of-monitoring-and-exporting-reports-from-sophos-firewall-v22">II – Details of Monitoring and Exporting Reports from Sophos Firewall V22</a><ul class='eb-toc__list'><li><a href="#1-introduction-to-the-report-log-features-of-sophos-firewall">1 – Introduction to the Report &amp; Log features of Sophos Firewall</a><ul class='eb-toc__list'><li><a href="#11-dashboards-2">1.1 – Dashboards</a><li><a href="#12-applications-webs">1.2 – Applications &amp; Webs</a><li><a href="#13-networks-threat-2">1.3 – Networks &amp; Threat</a><li><a href="#14-vpn-2">1.4 – VPN</a><li><a href="#15-email-2">1.5 – Email</a><li><a href="#16-compliance-2">1.6 – Compliance</a><li><a href="#17-custom-2">1.7 – Custom</a><li><a href="#18-log-viewer-2">1.8 – Log Viewer</a></li></ul></li></ul><li><a href="#2-how-to-export-reports-on-sophos-firewall-2">2 – How to Export Reports on Sophos Firewall</a><li><a href="#eb-table-content-45">[Latest 2026] Sophos Firewall: Guide to Monitoring &amp; Exporting Reports from Sophos Firewall V22</a><ul class='eb-toc__list'><li><a href="#table-of-contents-3">Table of Contents</a></li></ul><li><a href="#i-overview-of-monitoring-and-exporting-reports-from-sophos-firewall-v22-3">I – Overview of monitoring and exporting reports from Sophos Firewall V22</a><li><a href="#ii-details-of-monitoring-and-exporting-reports-from-sophos-firewall-v22-2">II – Details of monitoring and exporting reports from Sophos Firewall V22</a><ul class='eb-toc__list'><li><a href="#1-introduction-to-the-report-log-features-of-sophos-firewall-2">1 – Introduction to the Report &amp; Log features of Sophos Firewall</a><ul class='eb-toc__list'><li><a href="#11-dashboards-3">1.1 – Dashboards</a><li><a href="#12-application-webs-2">1.2 – Application &amp; Webs</a><li><a href="#13-networks-threat-3">1.3 – Networks &amp; Threat</a><li><a href="#14-vpn-3">1.4 – VPN</a><li><a href="#15-email-3">1.5 – Email</a><li><a href="#16-compliance-3">1.6 – Compliance</a><li><a href="#17-custom-3">1.7 – Custom</a><li><a href="#18-log-viewer-3">1.8 – Log Viewer</a></li></ul></li></ul><li><a href="#2-how-to-export-reports-on-sophos-firewall-3">2 – How to export reports on Sophos Firewall</a><li><a href="#eb-table-content-59">[Latest 2026] Sophos Firewall: Guide to Configuring VPN Site-to-Site Between Fortinet Firewall and Sophos Firewall Firmware V22</a><li><a href="#i-overview-of-the-article-2">I – Overview of the article</a><li><a href="#ii-network-diagram-2">II – Network diagram</a><ul class='eb-toc__list'><li><a href="#explanation-of-the-network-diagram">Explanation of the network diagram</a><li><a href="#notes-about-the-diagram">Notes about the diagram</a></li></ul><li><a href="#iii-configuration-scenario-2">III – Configuration scenario</a><ul class='eb-toc__list'><li><a href="#objective">Objective</a></li></ul><li><a href="#iv-configuration-steps-2">IV – Configuration steps</a><ul class='eb-toc__list'><li><a href="#on-the-fortinet-device">On the Fortinet device:</a><li><a href="#on-the-sophos-device">On the Sophos device:</a></li></ul><li><a href="#v-detailed-guide-to-configuring-vpn-site-to-site-between-fortinet-firewall-and-sophos-firewall-firmware-v22-2">V – Detailed guide to configuring VPN site-to-site between Fortinet Firewall and Sophos Firewall Firmware V22</a><li><a href="#1-on-the-fortinet-device-2">1. On the Fortinet device</a><ul class='eb-toc__list'><li><a href="#11-create-vpn-tunnels">1.1 – Create VPN Tunnels</a><li><a href="#12-create-static-route">1.2 – Create Static Route</a><li><a href="#13-create-firewall-policy">1.3 – Create Firewall Policy</a><li><a href="#2-on-the-sophos-device">2. On the Sophos device</a><li><a href="#21-create-subnet">2.1 – Create subnet</a><li><a href="#22-create-ipsec-profile">2.2 – Create IPSec Profile</a><li><a href="#23-create-ipsec-connection">2.3 – Create IPSec Connection</a><li><a href="#24-create-sophos-firewall-rule">2.4 – Create Sophos Firewall Rule</a><li><a href="#verify-the-result">Verify the result</a><li><a href="#notes-deployment-considerations">*Notes &amp; deployment considerations</a></li></ul></ul></div></div></div></div></div>


<div class="wp-block-essential-blocks-advanced-heading  root-eb-advance-heading-oiy73"><div class="eb-parent-wrapper eb-parent-eb-advance-heading-oiy73 "><div class="eb-advance-heading-wrapper eb-advance-heading-oiy73 button-1 undefined" data-id="eb-advance-heading-oiy73"><h2 class="eb-ah-title"><span class="first-title">I – Overview of the article</span></h2></div></div></div>



<p>This article guides how to configure <strong>IPSec VPN Site-to-Site</strong> between two firewall devices: <strong>Fortinet Firewall and Sophos Firewall</strong>, in order to securely connect LAN networks at two different sites through the Internet.</p>



<p>After the configuration is completed, the following LAN networks can connect and access each other:</p>



<p>192.168.20.0/24 – Site B</p>



<p>172.16.16.0/24 – Site A</p>



<p>10.10.10.0/24 – Site B</p>



<div class="wp-block-essential-blocks-advanced-heading  root-eb-advance-heading-5y1xh"><div class="eb-parent-wrapper eb-parent-eb-advance-heading-5y1xh "><div class="eb-advance-heading-wrapper eb-advance-heading-5y1xh button-1 undefined" data-id="eb-advance-heading-5y1xh"><h2 class="eb-ah-title"><span class="first-title">II – Network diagram</span></h2></div></div></div>



<figure class="wp-block-image size-full"><img fetchpriority="high" decoding="async" width="864" height="366" src="https://vacif.com/en/wp-content/uploads/sites/3/2026/03/image-8.png" alt="" class="wp-image-29019" srcset="https://vacif.com/en/wp-content/uploads/sites/3/2026/03/image-8.png 864w, https://vacif.com/en/wp-content/uploads/sites/3/2026/03/image-8-300x127.png 300w, https://vacif.com/en/wp-content/uploads/sites/3/2026/03/image-8-768x325.png 768w" sizes="(max-width: 864px) 100vw, 864px" /></figure>



<div class="wp-block-essential-blocks-text  root-eb-text-mm8bi"><div class="eb-parent-wrapper eb-parent-eb-text-mm8bi "><div class="eb-text-wrapper eb-text-mm8bi" data-id="eb-text-mm8bi"><p class="eb-text">Explanation of the network diagram:</p></div></div></div>



<p><strong><img src="https://s.w.org/images/core/emoji/17.0.2/72x72/1f539.png" alt="🔹" class="wp-smiley" style="height: 1em; max-height: 1em;" /> Site A – Fortinet Firewall</strong></p>



<ul class="wp-block-list">
<li>The Internet line is connected to the <strong>WAN port</strong> of the Fortinet device.</li>



<li><strong>WAN IP:</strong> 192.168.1.2</li>



<li><strong>Internal LAN network:</strong> 172.16.16.0/24</li>



<li>The LAN is configured on the <strong>LAN interface of Fortinet</strong>.</li>
</ul>



<p><strong><img src="https://s.w.org/images/core/emoji/17.0.2/72x72/1f539.png" alt="🔹" class="wp-smiley" style="height: 1em; max-height: 1em;" /> <strong>Site B – Sophos Firewall</strong></strong></p>



<ul class="wp-block-list">
<li>The Internet line is connected to <strong>interface a (WAN)</strong> of the Sophos Firewall.</li>



<li><strong>WAN IP:</strong> 192.168.1.3</li>



<li>The internal LAN network consists of <strong>two subnets:</strong> 10.10.10.0/24,192.168.20.0/24</li>
</ul>



<div class="wp-block-essential-blocks-text  root-eb-text-w4aye"><div class="eb-parent-wrapper eb-parent-eb-text-w4aye "><div class="eb-text-wrapper eb-text-w4aye" data-id="eb-text-w4aye"><p class="eb-text">Notes about the diagram</p></div></div></div>



<ul class="wp-block-list">
<li>The VPN connection uses <strong>IPSec Site-to-Site</strong>.</li>



<li>Authentication uses a <strong>Pre-shared Key</strong>.</li>



<li><strong>IKEv2</strong> is used.</li>
</ul>



<div class="wp-block-essential-blocks-advanced-heading  root-eb-advance-heading-8qbrk"><div class="eb-parent-wrapper eb-parent-eb-advance-heading-8qbrk "><div class="eb-advance-heading-wrapper eb-advance-heading-8qbrk button-1 undefined" data-id="eb-advance-heading-8qbrk"><h2 class="eb-ah-title"><span class="first-title">III – Configuration scenario</span></h2></div></div></div>



<div class="wp-block-essential-blocks-text  root-eb-text-jmoxo"><div class="eb-parent-wrapper eb-parent-eb-text-jmoxo "><div class="eb-text-wrapper eb-text-jmoxo" data-id="eb-text-jmoxo"><p class="eb-text">We will perform the configuration of <strong>IPSec VPN Site-to-Site</strong> between:</p></div></div></div>



<ul class="wp-block-list">
<li><strong>Fortinet (192.168.1.2)</strong></li>



<li><strong>Sophos (192.168.1.3)</strong></li>
</ul>



<div class="wp-block-essential-blocks-text  root-eb-text-oylnm"><div class="eb-parent-wrapper eb-parent-eb-text-oylnm "><div class="eb-text-wrapper eb-text-oylnm" data-id="eb-text-oylnm"><p class="eb-text">Objective:</p></div></div></div>



<p>LAN network <strong>172.16.16.0/24 (Fortinet)</strong> ⬄ LAN networks <strong>10.10.10.0/24 and 192.168.20.0/24 (Sophos)</strong> can connect and communicate with each other directly.</p>



<div class="wp-block-essential-blocks-advanced-heading  root-eb-advance-heading-mfr58"><div class="eb-parent-wrapper eb-parent-eb-advance-heading-mfr58 "><div class="eb-advance-heading-wrapper eb-advance-heading-mfr58 button-1 undefined" data-id="eb-advance-heading-mfr58"><h2 class="eb-ah-title"><span class="first-title">IV – Configuration steps</span></h2></div></div></div>



<div class="wp-block-essential-blocks-text  root-eb-text-queb7"><div class="eb-parent-wrapper eb-parent-eb-text-queb7 "><div class="eb-text-wrapper eb-text-queb7" data-id="eb-text-queb7"><p class="eb-text">On the Fortinet device:</p></div></div></div>



<ul class="wp-block-list">
<li>Create <strong>VPN Tunnels</strong></li>



<li>Create <strong>Static Route</strong></li>



<li>Create <strong>Firewall Policy</strong></li>
</ul>



<div class="wp-block-essential-blocks-text  root-eb-text-vlwq4"><div class="eb-parent-wrapper eb-parent-eb-text-vlwq4 "><div class="eb-text-wrapper eb-text-vlwq4" data-id="eb-text-vlwq4"><p class="eb-text">On the Sophos device:</p></div></div></div>



<ul class="wp-block-list">
<li>Create <strong>subnet</strong></li>



<li>Create <strong>IPSec Profile</strong></li>



<li>Create <strong>IPSec Connection</strong></li>



<li>Create <strong>Firewall Rule</strong></li>
</ul>



<div class="wp-block-essential-blocks-advanced-heading  root-eb-advance-heading-76g77"><div class="eb-parent-wrapper eb-parent-eb-advance-heading-76g77 "><div class="eb-advance-heading-wrapper eb-advance-heading-76g77 button-1 undefined" data-id="eb-advance-heading-76g77"><h2 class="eb-ah-title"><span class="first-title">V – Detailed guide to configuring VPN site-to-site between Fortinet Firewall and Sophos Firewall Firmware V22</span></h2></div></div></div>



<div class="wp-block-essential-blocks-advanced-heading  root-eb-advance-heading-hbhxd"><div class="eb-parent-wrapper eb-parent-eb-advance-heading-hbhxd "><div class="eb-advance-heading-wrapper eb-advance-heading-hbhxd button-1 undefined" data-id="eb-advance-heading-hbhxd"><h2 class="eb-ah-title"><span class="first-title">1. On the Fortinet device</span></h2></div></div></div>



<div class="wp-block-essential-blocks-advanced-heading  root-eb-advance-heading-wc297"><div class="eb-parent-wrapper eb-parent-eb-advance-heading-wc297 "><div class="eb-advance-heading-wrapper eb-advance-heading-wc297 button-1 undefined" data-id="eb-advance-heading-wc297"><h2 class="eb-ah-title"><span class="first-title">1.1 – Create VPN Tunnels<br>Go to:</span></h2></div></div></div>



<p>translate this post to english exactly: I &#8211; Tổng quan về Activate và Renew License Sophos Firewall Bài viết hướng dẫn cách activate và renew license Sophos Firewall thông qua Sophos Central. Sophos Central là nền tảng quản lý tập trung cho phép quản lý thiết bị, license và đồng bộ trạng thái license từ cloud về firewall. II &#8211; Hướng dẫn Activate License Sophos Firewall 1. Tạo tài khoản Sophos Central Nếu chưa có tài khoản Sophos Central, tham khảo: https://thegioifirewall.com/sophos-central-huong-dan-tao-tai-khoan-sophos-central-trial/ Đăng nhập Sophos Central bằng tài khoản Super Admin. 2. Claim thiết bị Sophos Firewall &#8211; Vào Account → Licensing Firewall licenses &#8211; Chọn&nbsp;Firewall&nbsp;licenses&nbsp; &#8211;&nbsp;Chọn&nbsp;Claim&nbsp;firewall&nbsp; &#8211;&nbsp;Nhập&nbsp;Serial Number&nbsp;thiết&nbsp;bị&nbsp; Sau khi&nbsp;claim&nbsp;thành công, thiết bị sẽ hiển thị trong danh sách quản lý. 3. Apply License cho thiết bị &#8211; Chọn thiết bị → Apply subscriptions &#8211; Nhập License Key &#8211; Preview subscription → Apply license 4. Đồng bộ License về Firewall &#8211; Vào Sophos Firewall → Administrator → Device access &#8211; Nhấn Synchronize III &#8211; Lưu ý khi Renew License Sophos Firewall Đối với các lần gia hạn (renew) license trong tương lai, cần lưu ý &#8211; License Number: chỉ dùng để tracking và support, không dùng để activate. &#8211; License Key: bắt buộc để kích hoạt hoặc renew license. 1. Cơ chế đồng bộ license khi renew: Trong hầu hết các trường hợp, nếu Sophos Firewall đã được liên kết đúng Sophos Central account, license sau khi renew sẽ tự động đồng bộ xuống thiết bị mà không cần thao tác thủ công. Tuy nhiên, nếu license không tự đồng bộ và vẫn hiển thị trạng thái Expired, bạn có thể thực hiện các bước sau: Kiểm tra license trong Sophos Central hoặc Sophos Partner Portal để xác định License Key tương ứng Thực hiện apply License Key thủ công cho thiết bị Firewall (theo hướng dẫn ở Mục II.3) 2. Trường hợp không nhận được License Key: Nếu email gia hạn không chứa License Key, khuyến nghị: Kiểm tra lại thông tin license trong Sophos Portal Hoặc liên hệ Sophos Support / Partner để xác nhận chính xác License Key trước khi apply</p>



<p><strong>I &#8211; Overview of Activate and Renew License Sophos Firewall</strong></p>



<p>This article guides how to activate and renew a Sophos Firewall license through Sophos Central.<br>Sophos Central is a centralized management platform that allows management of devices, licenses, and synchronization of license status from the cloud to the firewall.</p>



<hr class="wp-block-separator has-alpha-channel-opacity"/>



<p><strong>II &#8211; Guide to Activate Sophos Firewall License</strong></p>



<p><strong>1. Create a Sophos Central account</strong></p>



<p>If you do not have a Sophos Central account yet, refer to:<br><a href="https://thegioifirewall.com/sophos-central-huong-dan-tao-tai-khoan-sophos-central-trial/">https://thegioifirewall.com/sophos-central-huong-dan-tao-tai-khoan-sophos-central-trial/</a></p>



<p>Log in to Sophos Central using a Super Admin account.</p>



<p><strong>2. Claim the Sophos Firewall device</strong></p>



<ul class="wp-block-list">
<li>Go to&nbsp;<strong>Account → Licensing Firewall licenses</strong></li>



<li>Select&nbsp;<strong>Firewall licenses</strong></li>



<li>Select&nbsp;<strong>Claim firewall</strong></li>



<li>Enter the device&nbsp;<strong>Serial Number</strong></li>
</ul>



<p>After a successful claim, the device will appear in the management list.</p>



<p><strong>3. Apply License to the device</strong></p>



<ul class="wp-block-list">
<li>Select the device →&nbsp;<strong>Apply subscriptions</strong></li>



<li>Enter the&nbsp;<strong>License Key</strong></li>



<li><strong>Preview subscription → Apply license</strong></li>
</ul>



<p><strong>4. Synchronize License to the Firewall</strong></p>



<ul class="wp-block-list">
<li>Go to&nbsp;<strong>Sophos Firewall → Administrator → Device access</strong></li>



<li>Click&nbsp;<strong>Synchronize</strong></li>
</ul>



<hr class="wp-block-separator has-alpha-channel-opacity"/>



<p><strong>III &#8211; Notes when Renewing Sophos Firewall License</strong></p>



<p>For future license renewals, please note:</p>



<ul class="wp-block-list">
<li><strong>License Number:</strong>&nbsp;only used for tracking and support, not used for activation.</li>



<li><strong>License Key:</strong>&nbsp;required to activate or renew the license.</li>
</ul>



<p><strong>1. License synchronization mechanism when renewing</strong></p>



<p>In most cases, if the Sophos Firewall has been properly linked to the Sophos Central account, the license after renewal will automatically synchronize to the device without requiring manual action.</p>



<p>However, if the license does not automatically synchronize and still shows&nbsp;<strong>Expired</strong>&nbsp;status, you can perform the following steps:</p>



<p>Check the license in&nbsp;<strong>Sophos Central</strong>&nbsp;or&nbsp;<strong>Sophos Partner Portal</strong>&nbsp;to determine the corresponding&nbsp;<strong>License Key</strong></p>



<p>Manually apply the&nbsp;<strong>License Key</strong>&nbsp;to the Firewall device (according to the instructions in&nbsp;<strong>Section II.3</strong>)</p>



<p><strong>2. Case when the License Key is not received</strong></p>



<p>If the renewal email does not contain the&nbsp;<strong>License Key</strong>, it is recommended to:</p>



<p>Check the license information again in the&nbsp;<strong>Sophos Portal</strong></p>



<p>Or contact&nbsp;<strong>Sophos Support / Partner</strong>&nbsp;to confirm the correct&nbsp;<strong>License Key</strong>&nbsp;before applying it.</p>



<p>translate this post to english exactly:https://vacif.com/moi-nhat-2026-huong-dan-activate-renew-license-sophos-firewall/</p>



<p>Here is the&nbsp;<strong>exact English translation</strong>&nbsp;of the post from:<br><a href="https://vacif.com/moi-nhat-2026-huong-dan-activate-renew-license-sophos-firewall/?utm_source=chatgpt.com">[MỚI NHẤT 2026] – HƯỚNG DẪN ACTIVATE &amp; RENEW LICENSE SOPHOS FIREWALL</a></p>



<hr class="wp-block-separator has-alpha-channel-opacity"/>



<h1 class="wp-block-heading">[LATEST 2026] – GUIDE TO ACTIVATE &amp; RENEW SOPHOS FIREWALL LICENSE</h1>



<h2 class="wp-block-heading">I &#8211; Overview of Activate and Renew Sophos Firewall License</h2>



<p>This article guides how to activate and renew the Sophos Firewall license through Sophos Central.</p>



<p>Sophos Central is a centralized management platform that allows managing devices, licenses, and synchronizing license status from the cloud to the firewall.&nbsp;</p>



<hr class="wp-block-separator has-alpha-channel-opacity"/>



<h1 class="wp-block-heading">II &#8211; Guide to Activate Sophos Firewall License</h1>



<h2 class="wp-block-heading">1. Create a Sophos Central account</h2>



<p>If you do not yet have a Sophos Central account, refer to:<br><a href="https://thegioifirewall.com/sophos-central-huong-dan-tao-tai-khoan-sophos-central-trial/">https://thegioifirewall.com/sophos-central-huong-dan-tao-tai-khoan-sophos-central-trial/</a></p>



<p>Log in to Sophos Central using a&nbsp;<strong>Super Admin</strong>&nbsp;account.</p>



<hr class="wp-block-separator has-alpha-channel-opacity"/>



<h2 class="wp-block-heading">2. Claim the Sophos Firewall device</h2>



<ul class="wp-block-list">
<li>Go to&nbsp;<strong>Account → Licensing → Firewall licenses</strong></li>



<li>Select&nbsp;<strong>Firewall licenses</strong></li>



<li>Select&nbsp;<strong>Claim firewall</strong></li>



<li>Enter the device&nbsp;<strong>Serial Number</strong></li>
</ul>



<p>After claiming successfully, the device will appear in the management list.</p>



<hr class="wp-block-separator has-alpha-channel-opacity"/>



<h2 class="wp-block-heading">3. Apply License to the device</h2>



<ul class="wp-block-list">
<li>Select the device →&nbsp;<strong>Apply subscriptions</strong></li>



<li>Enter the&nbsp;<strong>License Key</strong></li>



<li><strong>Preview subscription → Apply license</strong></li>
</ul>



<hr class="wp-block-separator has-alpha-channel-opacity"/>



<h2 class="wp-block-heading">4. Synchronize License to the Firewall</h2>



<ul class="wp-block-list">
<li>Go to&nbsp;<strong>Sophos Firewall → Administrator → Device access</strong></li>



<li>Click&nbsp;<strong>Synchronize</strong></li>
</ul>



<hr class="wp-block-separator has-alpha-channel-opacity"/>



<h1 class="wp-block-heading">III &#8211; Notes when Renewing Sophos Firewall License</h1>



<p>For future license renewals, please note:</p>



<ul class="wp-block-list">
<li><strong>License Number:</strong>&nbsp;only used for tracking and support, not used for activation.</li>



<li><strong>License Key:</strong>&nbsp;required to activate or renew the license.</li>
</ul>



<hr class="wp-block-separator has-alpha-channel-opacity"/>



<h2 class="wp-block-heading">1. License synchronization mechanism when renewing</h2>



<p>In most cases, if the Sophos Firewall has been correctly linked to the Sophos Central account, the license after renewal will automatically synchronize to the device without requiring manual operations.</p>



<p>However, if the license does not automatically synchronize and still shows the&nbsp;<strong>Expired</strong>&nbsp;status, you can perform the following steps:</p>



<ul class="wp-block-list">
<li>Check the license in&nbsp;<strong>Sophos Central</strong>&nbsp;or&nbsp;<strong>Sophos Partner Portal</strong>&nbsp;to determine the corresponding&nbsp;<strong>License Key</strong></li>



<li>Manually apply the&nbsp;<strong>License Key</strong>&nbsp;to the Firewall device (according to the instructions in&nbsp;<strong>Section II.3</strong>)&nbsp;</li>
</ul>



<hr class="wp-block-separator has-alpha-channel-opacity"/>



<h2 class="wp-block-heading">2. Case when the License Key is not received</h2>



<p>If the renewal email does not contain the&nbsp;<strong>License Key</strong>, it is recommended to:</p>



<ul class="wp-block-list">
<li>Check the license information again in the&nbsp;<strong>Sophos Portal</strong></li>



<li>Or contact&nbsp;<strong>Sophos Support / Partner</strong>&nbsp;to confirm the correct&nbsp;<strong>License Key</strong>&nbsp;before applying it.&nbsp;</li>
</ul>



<hr class="wp-block-separator has-alpha-channel-opacity"/>



<p>If you want, I can also help you&nbsp;<strong>rewrite this translation to sound more natural for a blog post in English</strong>&nbsp;(keeping the meaning but making it read like native technical documentation).</p>



<p>translate this post to english exactly: https://vacif.com/en/moi-nhat-2026-sophos-firewall-huong-dan-theo-doi-xuat-report-tu-sophos-firewall-v22/</p>



<p>Here is the&nbsp;<strong>exact English translation</strong>&nbsp;of the post from:<br><a href="https://vacif.com/moi-nhat-2026-sophos-firewall-huong-dan-theo-doi-xuat-report-tu-sophos-firewall-v22/?utm_source=chatgpt.com">https://vacif.com/moi-nhat-2026-sophos-firewall-huong-dan-theo-doi-xuat-report-tu-sophos-firewall-v22/</a>&nbsp;(translated literally line‑by‑line where appropriate):</p>



<hr class="wp-block-separator has-alpha-channel-opacity"/>



<h1 class="wp-block-heading"><strong>[Latest 2026] Sophos Firewall: Guide to Monitoring &amp; Exporting Reports From Sophos Firewall V22</strong></h1>



<h2 class="wp-block-heading"><strong>Table of Contents</strong></h2>



<ul class="wp-block-list">
<li>I – Overview of monitoring and exporting reports from Sophos Firewall V22</li>



<li>II – Details on monitoring and exporting reports from Sophos Firewall V22
<ul class="wp-block-list">
<li>
<ol class="wp-block-list">
<li>Introduction to Report &amp; Log features of Sophos Firewall</li>
</ol>
</li>



<li>1.1 – Dashboards</li>



<li>1.2 – Application &amp; Webs</li>



<li>1.3 – Networks &amp; Threat</li>



<li>1.4 – VPN</li>



<li>1.5 – Email</li>



<li>1.6 – Compliance</li>



<li>1.7 – Custom</li>



<li>1.8 – Log Viewer
<ol start="2" class="wp-block-list">
<li>How to export a Report on Sophos Firewall</li>
</ol>
</li>
</ul>
</li>
</ul>



<hr class="wp-block-separator has-alpha-channel-opacity"/>



<h2 class="wp-block-heading"><strong>I – Overview of Monitoring and Exporting Reports From Sophos Firewall V22</strong></h2>



<p>This article aims to:</p>



<ul class="wp-block-list">
<li>Guide how to view and filter logs on Sophos Firewall.</li>



<li>Guide reading and exporting reports for operation and reporting.</li>



<li>Help administrators quickly detect issues and security threats.</li>
</ul>



<p>Through this, help the system be monitored effectively and operate more securely.&nbsp;</p>



<hr class="wp-block-separator has-alpha-channel-opacity"/>



<h2 class="wp-block-heading"><strong>II – Details on Monitoring and Exporting Reports From Sophos Firewall V22</strong></h2>



<h3 class="wp-block-heading"><strong>1. Introduction to Report &amp; Log Features of Sophos Firewall</strong></h3>



<h4 class="wp-block-heading"><strong>1.1 – Dashboards</strong></h4>



<p>View information about network traffic passing through the firewall and security threats. The main dashboard types include:</p>



<ul class="wp-block-list">
<li><strong>Traffic dashboard:</strong>&nbsp;classification by network traffic</li>



<li><strong>Security dashboard:</strong>&nbsp;blocked activities and threats: malware, IPS, spam, attack sources</li>



<li><strong>Executive report:</strong>&nbsp;summary information for managers: highlighted traffic &amp; threats</li>



<li><strong>User threat quotient (UTQ):</strong>&nbsp;ranks users based on security risk score&nbsp;</li>
</ul>



<h4 class="wp-block-heading"><strong>1.2 – Application &amp; Webs</strong></h4>



<p>View information about application and Internet usage on your network.</p>



<p>Types of monitoring in this section include:</p>



<ul class="wp-block-list">
<li>User app risks &amp; usage</li>



<li>Cloud applications usage</li>



<li>Blocked user apps</li>



<li>Synchronized applications</li>



<li>Web risks &amp; usage</li>



<li>Blocked web attempts</li>



<li>Search engine statistics</li>



<li>Web content details</li>



<li>Web server usage</li>



<li>Web server protection&nbsp;</li>
</ul>



<h4 class="wp-block-heading"><strong>1.3 – Networks &amp; Threat</strong></h4>



<p>View information about network usage and related threats, including:</p>



<ul class="wp-block-list">
<li>Intrusion attacks</li>



<li>Active threat response (Threat events detected by MDR and Sophos X‑Ops)</li>



<li>Wireless usage</li>



<li>Security Heartbeat status</li>



<li>Zero‑day protection details&nbsp;</li>
</ul>



<h4 class="wp-block-heading"><strong>1.4 – VPN</strong></h4>



<p>View information about remote users connecting to your network through IPsec VPN, SSL VPN, and Clientless Access.&nbsp;</p>



<h4 class="wp-block-heading"><strong>1.5 – Email</strong></h4>



<p>View information about email traffic and protection against viruses/spam in the system.&nbsp;</p>



<h4 class="wp-block-heading"><strong>1.6 – Compliance</strong></h4>



<p>View information about compliance reports for standards such as HIPAA, GLBA, SOX, FISMA, PCI, NERC CIP v3, CIPA, and Event levels.&nbsp;</p>



<h4 class="wp-block-heading"><strong>1.7 – Custom</strong></h4>



<p>Create reports based on specified criteria, including:</p>



<ul class="wp-block-list">
<li>Web Report: search web activity or virus logs</li>



<li>Mail Report: search email, spam and virus activity</li>



<li>FTP Report: search FTP activity</li>



<li>User Report: statistics on high‑risk application usage and website access</li>



<li>Web Server Report: search web server activity (time, user, URI) and protection events&nbsp;</li>
</ul>



<h4 class="wp-block-heading"><strong>1.8 – Log Viewer</strong></h4>



<p>The Log Viewer displays event logs and updates automatically in real‑time. Administrators can select specific log types to monitor (such as Admin, Firewall, IPS, Malware, VPN, Web filter, etc.).&nbsp;</p>



<hr class="wp-block-separator has-alpha-channel-opacity"/>



<h3 class="wp-block-heading"><strong>2. How to Export Reports on Sophos Firewall</strong></h3>



<p>During system administration, administrators need comprehensive report files reflecting system usage and key threats. Therefore, in this guide the&nbsp;<strong>Executive Report</strong>&nbsp;is selected to perform report exporting.</p>



<p>To export a scheduled report:</p>



<ul class="wp-block-list">
<li>Select&nbsp;<strong>Show Reports Settings</strong></li>



<li>Choose&nbsp;<strong>Report Scheduling</strong>, then click&nbsp;<strong>Add</strong></li>



<li>Enter the following information:
<ul class="wp-block-list">
<li><strong>Name:</strong>&nbsp;Name of the report schedule</li>



<li><strong>Description:</strong>&nbsp;(optional)</li>



<li><strong>To email address:</strong>&nbsp;email address that receives the report (can enter multiple emails)</li>



<li><strong>Report type:</strong>&nbsp;Choose type (e.g., Report group)</li>



<li><strong>Report group:</strong>&nbsp;Choose suitable report group (e.g., Executive Report)</li>



<li><strong>Email frequency:</strong>&nbsp;Choose Daily or Weekly and the time to send the report via email</li>
</ul>
</li>



<li>After entering complete information, click&nbsp;<strong>Save</strong></li>
</ul>



<p>When the schedule runs as configured, Sophos will email the report file to the specified email address according to the schedule.&nbsp;</p>



<hr class="wp-block-separator has-alpha-channel-opacity"/>



<p>If you want this translation formatted more naturally for an English technical article or documentation, feel free to ask!</p>



<p>translate this entire post to english exactly: https://vacif.com/en/moi-nhat-2026-sophos-firewall-huong-dan-theo-doi-xuat-report-tu-sophos-firewall-v22/</p>



<p>Below is the&nbsp;<strong>direct English translation of the article</strong>&nbsp;from<br>VACIF:<br><strong>“[Mới nhất 2026] Sophos Firewall: Hướng Dẫn Theo Dõi &amp; Xuất Report Từ Sophos Firewall V22”</strong>.<br>The structure and wording are kept&nbsp;<strong>as close as possible to the original text</strong>.&nbsp;</p>



<hr class="wp-block-separator has-alpha-channel-opacity"/>



<h1 class="wp-block-heading">[Latest 2026] Sophos Firewall: Guide to Monitoring &amp; Exporting Reports from Sophos Firewall V22</h1>



<h2 class="wp-block-heading">Table of Contents</h2>



<ul class="wp-block-list">
<li>I – Overview of monitoring and exporting reports from Sophos Firewall V22</li>



<li>II – Details of monitoring and exporting reports from Sophos Firewall V22</li>
</ul>



<hr class="wp-block-separator has-alpha-channel-opacity"/>



<h1 class="wp-block-heading">I – Overview of Monitoring and Exporting Reports from Sophos Firewall V22</h1>



<p>This article aims to:</p>



<ul class="wp-block-list">
<li>Guide how to&nbsp;<strong>view and filter logs on Sophos Firewall</strong>.</li>



<li>Guide how to&nbsp;<strong>read and export reports for operation and reporting purposes</strong>.</li>



<li>Help administrators&nbsp;<strong>quickly detect incidents and security threats</strong>.</li>
</ul>



<p>Through this, the system can be&nbsp;<strong>monitored effectively and operated more securely</strong>.&nbsp;</p>



<hr class="wp-block-separator has-alpha-channel-opacity"/>



<h1 class="wp-block-heading">II – Details of Monitoring and Exporting Reports from Sophos Firewall V22</h1>



<h2 class="wp-block-heading">1 – Introduction to the Report &amp; Log features of Sophos Firewall</h2>



<h3 class="wp-block-heading">1.1 – Dashboards</h3>



<p>The dashboard allows administrators to&nbsp;<strong>quickly monitor network traffic and security threats</strong>&nbsp;occurring on the system.</p>



<p>Some common dashboards include:</p>



<ul class="wp-block-list">
<li><strong>Traffic dashboard</strong>&nbsp;– classifies traffic passing through the firewall.</li>



<li><strong>Security dashboard</strong>&nbsp;– statistics on blocked activities and threats such as malware, IPS attacks, spam, and attack sources.</li>



<li><strong>Executive report</strong>&nbsp;– summary reports for management including highlighted traffic and threats.</li>



<li><strong>User Threat Quotient (UTQ)</strong>&nbsp;– evaluates user risk scores based on their activities on the network.</li>
</ul>



<hr class="wp-block-separator has-alpha-channel-opacity"/>



<h3 class="wp-block-heading">1.2 – Applications &amp; Webs</h3>



<p>This section provides information about&nbsp;<strong>application usage and web access activities</strong>&nbsp;within the network.</p>



<p>Monitoring items include:</p>



<ul class="wp-block-list">
<li>User app risks &amp; usage</li>



<li>Cloud app risks &amp; usage</li>



<li>Blocked user apps</li>



<li>Synchronized apps</li>



<li>Web risks &amp; usage</li>



<li>Blocked web attempts</li>



<li>Search engine statistics</li>



<li>Web content details</li>



<li>Web server usage</li>



<li>Web server protection</li>
</ul>



<hr class="wp-block-separator has-alpha-channel-opacity"/>



<h3 class="wp-block-heading">1.3 – Networks &amp; Threat</h3>



<p>Displays information related to&nbsp;<strong>network usage and security threats</strong>, including:</p>



<ul class="wp-block-list">
<li>Intrusion attacks</li>



<li>Active Threat Response (threat events detected by MDR and Sophos X-Ops)</li>



<li>Wireless usage</li>



<li>Security Heartbeat status</li>



<li>Zero-day protection details</li>
</ul>



<hr class="wp-block-separator has-alpha-channel-opacity"/>



<h3 class="wp-block-heading">1.4 – VPN</h3>



<p>Displays information about&nbsp;<strong>remote users connecting to the network through VPN</strong>, including:</p>



<ul class="wp-block-list">
<li>IPsec VPN</li>



<li>SSL VPN</li>



<li>Clientless Access</li>
</ul>



<hr class="wp-block-separator has-alpha-channel-opacity"/>



<h3 class="wp-block-heading">1.5 – Email</h3>



<p>Provides information about&nbsp;<strong>email traffic and spam/virus protection</strong>&nbsp;within the system.</p>



<hr class="wp-block-separator has-alpha-channel-opacity"/>



<h3 class="wp-block-heading">1.6 – Compliance</h3>



<p>Displays compliance reports related to standards such as:</p>



<ul class="wp-block-list">
<li>HIPAA</li>



<li>GLBA</li>



<li>SOX</li>



<li>FISMA</li>



<li>PCI</li>



<li>NERC CIP v3</li>



<li>CIPA</li>



<li>Event levels</li>
</ul>



<hr class="wp-block-separator has-alpha-channel-opacity"/>



<h3 class="wp-block-heading">1.7 – Custom</h3>



<p>Administrators can&nbsp;<strong>create custom reports</strong>&nbsp;based on specific criteria, including:</p>



<ul class="wp-block-list">
<li><strong>Web Report</strong>&nbsp;– search web activity or virus logs</li>



<li><strong>Mail Report</strong>&nbsp;– search email activity, spam, and viruses</li>



<li><strong>FTP Report</strong>&nbsp;– search FTP activity</li>



<li><strong>User Report</strong>&nbsp;– statistics of high-risk application usage and website access</li>



<li><strong>Web Server Report</strong>&nbsp;– search web server activity (time, user, URI) and protection events</li>
</ul>



<hr class="wp-block-separator has-alpha-channel-opacity"/>



<h3 class="wp-block-heading">1.8 – Log Viewer</h3>



<p>The&nbsp;<strong>Log Viewer</strong>&nbsp;displays system event logs and automatically updates in&nbsp;<strong>real time</strong>.</p>



<p>Administrators can select specific log types to monitor, such as:</p>



<ul class="wp-block-list">
<li>Admin</li>



<li>Firewall</li>



<li>IPS</li>



<li>Malware</li>



<li>VPN</li>



<li>Web filter</li>



<li>And other log categories.</li>
</ul>



<hr class="wp-block-separator has-alpha-channel-opacity"/>



<h1 class="wp-block-heading">2 – How to Export Reports on Sophos Firewall</h1>



<p>During system administration, administrators often need&nbsp;<strong>report files summarizing system usage and security threats</strong>.</p>



<p>Therefore, in this guide the&nbsp;<strong>Executive Report</strong>&nbsp;is used as an example to export reports.</p>



<p>To export a scheduled report:</p>



<ol class="wp-block-list">
<li>Select&nbsp;<strong>Show Report Settings</strong>.</li>



<li>Choose&nbsp;<strong>Report Scheduling</strong>, then click&nbsp;<strong>Add</strong>.</li>



<li>Enter the following information:</li>
</ol>



<ul class="wp-block-list">
<li><strong>Name</strong>&nbsp;– name of the report schedule</li>



<li><strong>Description</strong>&nbsp;– optional description</li>



<li><strong>To email address</strong>&nbsp;– email address receiving the report (multiple emails can be entered)</li>



<li><strong>Report type</strong>&nbsp;– select the report type (for example: Report group)</li>



<li><strong>Report group</strong>&nbsp;– choose the appropriate report group (for example: Executive Report)</li>



<li><strong>Email frequency</strong>&nbsp;– choose Daily or Weekly and the time to send the report via email</li>
</ul>



<ol start="4" class="wp-block-list">
<li>After completing the information, click&nbsp;<strong>Save</strong>.</li>
</ol>



<p>Once the schedule runs according to the configuration,&nbsp;<strong>Sophos will automatically send the report file to the configured email address</strong>.&nbsp;</p>



<hr class="wp-block-separator has-alpha-channel-opacity"/>



<p>If you want, I can also help you:</p>



<ul class="wp-block-list">
<li><strong>Rewrite this into natural English technical documentation</strong>, or</li>



<li><strong>Convert it into a polished blog article for international readers.</strong></li>
</ul>



<p>translate this to english accurately:Application risk meter là cách thức mà Firewall sẽ tính điểm dựa trên mức độ rủi ro và số lần truy cập (hits) của từng ứng dụng. Chỉ số rủi ro ứng dụng được xác định dựa trên điểm trung bình của toàn bộ lưu lượng ứng dụng</p>



<p><strong>Translation (accurate):</strong></p>



<p><strong>Application Risk Meter</strong>&nbsp;is the method by which the Firewall calculates a score based on the&nbsp;<strong>risk level</strong>&nbsp;and the&nbsp;<strong>number of accesses (hits)</strong>&nbsp;of each application.<br>The&nbsp;<strong>application risk index</strong>&nbsp;is determined based on the&nbsp;<strong>average score of all application traffic</strong>.</p>



<p>translate this article sentence by sentence accurately without leaving out details, follow their structure and style: https://vacif.com/moi-nhat-2026-sophos-firewall-huong-dan-theo-doi-xuat-report-tu-sophos-firewall-v22/</p>



<p>Below is the&nbsp;<strong>accurate sentence-by-sentence English translation following the original structure and style</strong>&nbsp;of the article<br>from VACIF:<br>VACIF&nbsp;–&nbsp;<em>“[Mới nhất 2026] Sophos Firewall: Hướng Dẫn Theo Dõi &amp; Xuất Report Từ Sophos Firewall V22”</em>.&nbsp;</p>



<hr class="wp-block-separator has-alpha-channel-opacity"/>



<h1 class="wp-block-heading">[Latest 2026] Sophos Firewall: Guide to Monitoring &amp; Exporting Reports from Sophos Firewall V22</h1>



<h2 class="wp-block-heading">Table of Contents</h2>



<ul class="wp-block-list">
<li>I – Overview of monitoring and exporting reports from Sophos Firewall V22</li>



<li>II – Details of monitoring and exporting reports from Sophos Firewall V22</li>
</ul>



<hr class="wp-block-separator has-alpha-channel-opacity"/>



<h1 class="wp-block-heading">I – Overview of monitoring and exporting reports from Sophos Firewall V22</h1>



<p>This article aims to:</p>



<ul class="wp-block-list">
<li>Guide how to&nbsp;<strong>view and filter logs on Sophos Firewall</strong>.</li>



<li>Guide how to&nbsp;<strong>read and export reports for operational and reporting purposes</strong>.</li>



<li>Help administrators&nbsp;<strong>quickly detect incidents and security threats</strong>.</li>
</ul>



<p>Through that, the system can be&nbsp;<strong>monitored effectively and operate more securely</strong>.&nbsp;</p>



<hr class="wp-block-separator has-alpha-channel-opacity"/>



<h1 class="wp-block-heading">II – Details of monitoring and exporting reports from Sophos Firewall V22</h1>



<h2 class="wp-block-heading">1 – Introduction to the Report &amp; Log features of Sophos Firewall</h2>



<h3 class="wp-block-heading">1.1 – Dashboards</h3>



<p>Dashboards allow administrators to&nbsp;<strong>view information about network traffic passing through the firewall and security threats</strong>.</p>



<p>Some main dashboard types include:</p>



<ul class="wp-block-list">
<li><strong>Traffic dashboard:</strong>&nbsp;classifies traffic based on network traffic.</li>



<li><strong>Security dashboard:</strong>&nbsp;statistics of blocked activities and threats such as malware, IPS attacks, spam, and attack sources.</li>



<li><strong>Executive report:</strong>&nbsp;summary information for management, including highlighted traffic and threats.</li>



<li><strong>User Threat Quotient (UTQ):</strong>&nbsp;ranks users based on their security risk score.</li>
</ul>



<hr class="wp-block-separator has-alpha-channel-opacity"/>



<h3 class="wp-block-heading">1.2 – Application &amp; Webs</h3>



<p>Displays information about&nbsp;<strong>application usage and Internet activity within the network</strong>.</p>



<p>Monitoring items in this section include:</p>



<ul class="wp-block-list">
<li>User app risks &amp; usage</li>



<li>Cloud app risks &amp; usage</li>



<li>Blocked user apps</li>



<li>Synchronized apps</li>



<li>Web risks &amp; usage</li>



<li>Blocked web attempts</li>



<li>Search engine statistics</li>



<li>Web content details</li>



<li>Web server usage</li>



<li>Web server protection</li>
</ul>



<hr class="wp-block-separator has-alpha-channel-opacity"/>



<h3 class="wp-block-heading">1.3 – Networks &amp; Threat</h3>



<p>Displays information about&nbsp;<strong>network usage and related threats</strong>, including:</p>



<ul class="wp-block-list">
<li>Intrusion attacks</li>



<li>Active threat response (threat events detected by MDR and Sophos X-Ops)</li>



<li>Wireless usage</li>



<li>Security Heartbeat status</li>



<li>Zero-day protection details</li>
</ul>



<hr class="wp-block-separator has-alpha-channel-opacity"/>



<h3 class="wp-block-heading">1.4 – VPN</h3>



<p>Displays information about&nbsp;<strong>remote users connecting to the network via VPN</strong>, including:</p>



<ul class="wp-block-list">
<li>IPsec VPN</li>



<li>SSL VPN</li>



<li>Clientless access</li>
</ul>



<hr class="wp-block-separator has-alpha-channel-opacity"/>



<h3 class="wp-block-heading">1.5 – Email</h3>



<p>Displays information about&nbsp;<strong>email traffic and virus/spam protection in the system</strong>.</p>



<hr class="wp-block-separator has-alpha-channel-opacity"/>



<h3 class="wp-block-heading">1.6 – Compliance</h3>



<p>Displays compliance reports related to standards such as:</p>



<ul class="wp-block-list">
<li>HIPAA</li>



<li>GLBA</li>



<li>SOX</li>



<li>FISMA</li>



<li>PCI</li>



<li>NERC CIP v3</li>



<li>CIPA</li>



<li>Event levels</li>
</ul>



<hr class="wp-block-separator has-alpha-channel-opacity"/>



<h3 class="wp-block-heading">1.7 – Custom</h3>



<p>Allows administrators to&nbsp;<strong>create reports based on specific criteria</strong>, including:</p>



<ul class="wp-block-list">
<li><strong>Web Report:</strong>&nbsp;search web activity or virus logs</li>



<li><strong>Mail Report:</strong>&nbsp;search email, spam, and virus activity</li>



<li><strong>FTP Report:</strong>&nbsp;search FTP activity</li>



<li><strong>User Report:</strong>&nbsp;statistics of high-risk application usage and website access</li>



<li><strong>Web Server Report:</strong>&nbsp;search web server activity (time, user, URI) and protection events</li>
</ul>



<hr class="wp-block-separator has-alpha-channel-opacity"/>



<h3 class="wp-block-heading">1.8 – Log Viewer</h3>



<p>The&nbsp;<strong>Log Viewer</strong>&nbsp;displays system event logs and automatically updates in&nbsp;<strong>real time</strong>.</p>



<p>Administrators can choose specific log types to monitor, such as:</p>



<ul class="wp-block-list">
<li>Admin</li>



<li>Firewall</li>



<li>IPS</li>



<li>Malware</li>



<li>VPN</li>



<li>Web filter</li>



<li>and other log types.</li>
</ul>



<hr class="wp-block-separator has-alpha-channel-opacity"/>



<h1 class="wp-block-heading">2 – How to export reports on Sophos Firewall</h1>



<p>During system administration, administrators often need&nbsp;<strong>report files summarizing system usage and important threats</strong>.</p>



<p>Therefore, in this guide the&nbsp;<strong>Executive Report</strong>&nbsp;is selected to perform report exporting.</p>



<p>To export a scheduled report:</p>



<ol class="wp-block-list">
<li>Select&nbsp;<strong>Show Report Settings</strong>.</li>



<li>Choose&nbsp;<strong>Report Scheduling</strong>, then click&nbsp;<strong>Add</strong>.</li>



<li>Enter the following information:</li>
</ol>



<ul class="wp-block-list">
<li><strong>Name:</strong>&nbsp;name of the report schedule</li>



<li><strong>Description:</strong>&nbsp;optional description</li>



<li><strong>To email address:</strong>&nbsp;email address receiving the report (multiple emails can be entered)</li>



<li><strong>Report type:</strong>&nbsp;select the type (for example: Report group)</li>



<li><strong>Report group:</strong>&nbsp;choose the appropriate report group (for example: Executive Report)</li>



<li><strong>Email frequency:</strong>&nbsp;choose&nbsp;<strong>Daily</strong>&nbsp;or&nbsp;<strong>Weekly</strong>&nbsp;and the time to send the report via email</li>
</ul>



<ol start="4" class="wp-block-list">
<li>After completing the information, click&nbsp;<strong>Save</strong>.</li>
</ol>



<p>When the schedule runs according to the configuration,&nbsp;<strong>Sophos will automatically send the report file to the specified email address according to the schedule</strong>.&nbsp;</p>



<hr class="wp-block-separator has-alpha-channel-opacity"/>



<p>If you want, I can also&nbsp;<strong>make a cleaner “technical documentation style” English version</strong>&nbsp;(the one above is intentionally&nbsp;<strong>very literal to match the original Vietnamese structure</strong>).</p>



<p>translate this to english accurately Các nhóm Setting có thể theo dõi trong phần này, bao gồm: User app risks &amp; usage: Thống kê việc sử dụng các ứng dụng và mức độ rủi ro tương ứng. Cloud applications usage: Thống kê việc sử dụng các ứng dụng đám mây Blocked user apps: Các lần truy cập ứng dụng bị chặn. Synchronized applications: Các ứng dụng được phân loại và đồng bộ từ endpoint lên firewall. Web risks &amp; usage: Hoạt động truy cập web trong mạng và các rủi ro liên quan. Blocked web attempts: Các lần truy cập web bị chặn Search engine: Thống kê hành vi tìm kiếm của người dùn Web content: Các kết quả khớp của bộ lọc nội dung và các thông tin liên quan. Web server usage: Lưu lượng Application, Web, Internet và FTP. Web server protection: Trạng thái bảo mật của các Web Server, bao gồm các cuộc tấn công và nguồn tấn công. User data transfer: User traffic FTP usage: FTP activity FTP protection: Malicious FTP activity</p>



<p>The&nbsp;<strong>setting groups that can be monitored in this section include:</strong></p>



<ul class="wp-block-list">
<li><strong>User app risks &amp; usage:</strong>&nbsp;Statistics on the usage of applications and their corresponding risk levels.</li>



<li><strong>Cloud applications usage:</strong>&nbsp;Statistics on the usage of cloud applications.</li>



<li><strong>Blocked user apps:</strong>&nbsp;Instances where application access was blocked.</li>



<li><strong>Synchronized applications:</strong>&nbsp;Applications that are classified and synchronized from endpoints to the firewall.</li>



<li><strong>Web risks &amp; usage:</strong>&nbsp;Web access activity within the network and related risks.</li>



<li><strong>Blocked web attempts:</strong>&nbsp;Instances where web access attempts were blocked.</li>



<li><strong>Search engine:</strong>&nbsp;Statistics of users’ search behavior.</li>



<li><strong>Web content:</strong>&nbsp;Matches from the content filtering system and related information.</li>



<li><strong>Web server usage:</strong>&nbsp;Traffic of Applications, Web, Internet, and FTP.</li>



<li><strong>Web server protection:</strong>&nbsp;Security status of Web Servers, including attacks and attack sources.</li>



<li><strong>User data transfer:</strong>&nbsp;User traffic.</li>



<li><strong>FTP usage:</strong>&nbsp;FTP activity.</li>



<li><strong>FTP protection:</strong>&nbsp;Malicious FTP activity.</li>
</ul>



<p>translate this to english accurately: Các nhóm Setting có thể theo dõi trong phần này, bao gồm: Intrusion attacks: Các lượt tấn công Active threat response: Threat events và các máy bị xâm nhập được phát hiện bởi MDR (Managed Detection and Response) và Sophos X-Ops Wireless: Access point và SSID được sử dụng Security Heartbeat: Tình trạng sức khỏe của máy trạm trong mạng dựa trên kết nối giữa máy trạm và Firewall. Zero-day protection: Bảo vệ nâng cao trước các cuộc tấn công mới.</p>



<p>The&nbsp;<strong>setting groups that can be monitored in this section include:</strong></p>



<ul class="wp-block-list">
<li><strong>Intrusion attacks:</strong>&nbsp;Attack attempts.</li>



<li><strong>Active threat response:</strong>&nbsp;Threat events and compromised machines detected by&nbsp;<strong>MDR (Managed Detection and Response)</strong>&nbsp;and&nbsp;<strong>Sophos X-Ops</strong>.</li>



<li><strong>Wireless:</strong>&nbsp;Access points and SSIDs being used.</li>



<li><strong>Security Heartbeat:</strong>&nbsp;The health status of endpoints within the network based on the connection between the endpoint and the Firewall.</li>



<li><strong>Zero-day protection:</strong>&nbsp;Advanced protection against new attacks.</li>
</ul>



<p>translate this to english accurately: Xem thông tin về remote user (người dùng kết nối từ xa) vào hệ thống mạng của bạn thông qua IPSEC VPN, SSL VPN và Clientless access Các nhóm Setting có thể theo dõi trong phần này, bao gồm: VPN: Lưu lượng phát sinh từ remote users qua IPsec, L2TP hoặc PPTP SSL VPN: Lưu lượng phát sinh từ remote users thông qua SSL VPN Client. Clientless Access: Lưu lượng phát sinh từ remote users thông qua trình duyệt web. 1.5 – Email</p>



<p>View information about&nbsp;<strong>remote users</strong>&nbsp;(users connecting remotely) to your network system through&nbsp;<strong>IPsec VPN, SSL VPN, and Clientless Access</strong>.</p>



<p>The&nbsp;<strong>setting groups that can be monitored in this section include:</strong></p>



<ul class="wp-block-list">
<li><strong>VPN:</strong>&nbsp;Traffic generated by remote users through&nbsp;<strong>IPsec, L2TP, or PPTP</strong>.</li>



<li><strong>SSL VPN:</strong>&nbsp;Traffic generated by remote users through the&nbsp;<strong>SSL VPN Client</strong>.</li>



<li><strong>Clientless Access:</strong>&nbsp;Traffic generated by remote users through a&nbsp;<strong>web browser</strong>.</li>
</ul>



<p><strong>1.5 – Email</strong></p>



<p>translate this to english accurately: Xem thông tin về email traffic (lưu lượng email) trong hệ thống mạng Các nhóm Setting có thể theo dõi trong phần này, bao gồm: Email Usage: Email traffic trong hệ thống mạng của mình Email Protection: Email Traffic bị Virus và Spam trong hệ thống mạng của mình</p>



<p>View information about&nbsp;<strong>email traffic</strong>&nbsp;in the network system.</p>



<p>The&nbsp;<strong>setting groups that can be monitored in this section include:</strong></p>



<ul class="wp-block-list">
<li><strong>Email Usage:</strong>&nbsp;Email traffic within the network system.</li>



<li><strong>Email Protection:</strong>&nbsp;Email traffic in the network system that contains&nbsp;<strong>viruses and spam</strong>.</li>
</ul>



<p>translate this to english accurately: 1.6 – Compliance Xem thông tin về việc tuân thủ các quy định/quy chuẩn: Các nhóm Quy chuẩn có thể theo dõi trong phần này, bao gồm: HIPAA: Security Report tuân thủ chuẩn HIPAA GLBA: Security Report tuân thủ chuẩn GLBA SOX: Security Report tuân thủ chuẩn SOX FISMA: Security Report tuân thủ chuẩn FISMA PCI: Security Report tuân thủ chuẩn PCI NERC CIP v3: Security Report tuân thủ chuẩn NERC CIP v3 CIPA: Security Report tuân thủ chuẩn CIPA Events: Network Event và các mức độ nghiêm trọng tương ứng</p>



<p><strong>1.6 – Compliance</strong><br>View information about&nbsp;<strong>compliance with regulations/standards</strong>.</p>



<p>The&nbsp;<strong>standard groups that can be monitored in this section include:</strong></p>



<ul class="wp-block-list">
<li><strong>HIPAA:</strong>&nbsp;Security Report compliant with the&nbsp;<strong>HIPAA</strong>&nbsp;standard.</li>



<li><strong>GLBA:</strong>&nbsp;Security Report compliant with the&nbsp;<strong>GLBA</strong>&nbsp;standard.</li>



<li><strong>SOX:</strong>&nbsp;Security Report compliant with the&nbsp;<strong>SOX</strong>&nbsp;standard.</li>



<li><strong>FISMA:</strong>&nbsp;Security Report compliant with the&nbsp;<strong>FISMA</strong>&nbsp;standard.</li>



<li><strong>PCI:</strong>&nbsp;Security Report compliant with the&nbsp;<strong>PCI</strong>&nbsp;standard.</li>



<li><strong>NERC CIP v3:</strong>&nbsp;Security Report compliant with the&nbsp;<strong>NERC CIP v3</strong>&nbsp;standard.</li>



<li><strong>CIPA:</strong>&nbsp;Security Report compliant with the&nbsp;<strong>CIPA</strong>&nbsp;standard.</li>



<li><strong>Events:</strong>&nbsp;Network events and their corresponding severity levels.</li>
</ul>



<p>translate this to english accurately: Các loại Report có thể tạo trong phần này, bao gồm: Web Report: Tìm kiếm hoạt động duyệt web hoặc virus. Có thể lọc theo user, domain và các tiêu chí khác Mail Report: Tìm kiếm lưu lượng Email, Spam và Virus. Có thể lọc theo protocol, user và các tiêu chí khác. FTP Report: Tìm kiếm hoạt động FTP và Virus. Có thể lọc theo kiểu truyền, user, file hoặc source IP User Report: Thống kê mức độ sử dụng: ứng dụng rủi ro cao, website không hiệu quả, virus phát hiện. Có thể lọc theo username, source host. Web Server Report: Tìm kiếm hoạt động Web Server (time, user, URI) và cả các sự kiện bảo vệ Web Server.</p>



<p>The&nbsp;<strong>types of reports that can be created in this section include:</strong></p>



<ul class="wp-block-list">
<li><strong>Web Report:</strong>&nbsp;Search for web browsing activity or viruses. Can be filtered by&nbsp;<strong>user, domain, and other criteria</strong>.</li>



<li><strong>Mail Report:</strong>&nbsp;Search for&nbsp;<strong>Email traffic, Spam, and Viruses</strong>. Can be filtered by&nbsp;<strong>protocol, user, and other criteria</strong>.</li>



<li><strong>FTP Report:</strong>&nbsp;Search for&nbsp;<strong>FTP activity and viruses</strong>. Can be filtered by&nbsp;<strong>transfer type, user, file, or source IP</strong>.</li>



<li><strong>User Report:</strong>&nbsp;Statistics on usage levels such as&nbsp;<strong>high-risk applications, ineffective websites, and detected viruses</strong>. Can be filtered by&nbsp;<strong>username and source host</strong>.</li>



<li><strong>Web Server Report:</strong>&nbsp;Search for&nbsp;<strong>Web Server activity (time, user, URI)</strong>&nbsp;as well as&nbsp;<strong>Web Server protection events</strong>.</li>
</ul>



<p>translate this to english accurately: Để truy cập, ở góc phải phía trên Sophos Firewall, nhấn Log viewer Để truy cập, ở góc phải phía trên Sophos Firewall, nhấn Log viewer</p>



<p>To access it, click&nbsp;<strong>Log Viewer</strong>&nbsp;in the&nbsp;<strong>top-right corner of the Sophos Firewall interface</strong>.</p>



<p>To access it, click&nbsp;<strong>Log Viewer</strong>&nbsp;in the&nbsp;<strong>top-right corner of the Sophos Firewall interface</strong>.</p>



<p>Cửa sổ Log Viewer mới sẽ xuất hiện, và quản trị viên có thể xem log Realtime ở đây</p>



<p>A new&nbsp;<strong>Log Viewer</strong>&nbsp;window will appear, and administrators can view&nbsp;<strong>logs in real time</strong>&nbsp;here.</p>



<p>translate this article fully sentence by sentence accurately without leaving out or changing details, following exact structure and style:, images is replace with [images] text,</p>



<p>Sure — please&nbsp;<strong>paste the article text here</strong>.</p>



<p>I cannot reliably access and extract the&nbsp;<strong>entire page content structure and images</strong>&nbsp;from the link alone in a way that guarantees:</p>



<ul class="wp-block-list">
<li><strong>sentence-by-sentence translation</strong></li>



<li><strong>no missing details</strong></li>



<li><strong>exact structure</strong></li>



<li><strong>accurate placement of&nbsp;<code>[images]</code></strong></li>
</ul>



<p>Once you paste the article text, I will translate it with these rules:</p>



<ol class="wp-block-list">
<li><strong>Keep the exact headings and numbering</strong>&nbsp;(I, II, 1.1, 1.2, etc.).</li>



<li><strong>Translate sentence-by-sentence accurately</strong>&nbsp;without changing meaning.</li>



<li><strong>Do not remove or summarize any details</strong>.</li>



<li><strong>Replace every image with&nbsp;<code>[images]</code>&nbsp;exactly where it appears</strong>.</li>



<li><strong>Keep bullet lists and formatting identical to the original</strong>.</li>
</ol>



<p>You can paste the article&nbsp;<strong>in multiple messages if it is long</strong>, and I will translate it section by section.</p>



<figure class="wp-block-embed is-type-wp-embed is-provider-vacif-en wp-block-embed-vacif-en"><div class="wp-block-embed__wrapper">
<div class="oceanwp-oembed-wrap clr"><blockquote class="wp-embedded-content" data-secret="0zUbzBitT7"><a href="https://vacif.com/en/moi-nhat-2026-sophos-firewall-huong-dan-cau-hinh-vpn-site-to-site-giua-firewall-fortinet-va-sophos-firewall-firmware-v22/">[Latest 2026] Sophos Firewall: Guide to Configuring VPN Site-to-Site Between Fortinet Firewall and Sophos Firewall Firmware V22Unchecked[Latest 2026] Sophos Firewall: Guide to Configuring VPN Site-to-Site Between Fortinet Firewall and Sophos Firewall Firmware V22</a></blockquote><iframe class="wp-embedded-content" sandbox="allow-scripts" security="restricted"  title="&#8220;[Latest 2026] Sophos Firewall: Guide to Configuring VPN Site-to-Site Between Fortinet Firewall and Sophos Firewall Firmware V22Unchecked[Latest 2026] Sophos Firewall: Guide to Configuring VPN Site-to-Site Between Fortinet Firewall and Sophos Firewall Firmware V22&#8221; &#8212; VACIF-EN" src="https://vacif.com/en/moi-nhat-2026-sophos-firewall-huong-dan-cau-hinh-vpn-site-to-site-giua-firewall-fortinet-va-sophos-firewall-firmware-v22/embed/#?secret=T8rXjp0shK#?secret=0zUbzBitT7" data-secret="0zUbzBitT7" width="600" height="338" frameborder="0" marginwidth="0" marginheight="0" scrolling="no"></iframe></div>
</div></figure>



<p>Below is the&nbsp;<strong>full sentence-by-sentence English translation</strong>, preserving the&nbsp;<strong>original structure, headings, lists, tables, and order</strong>.<br>Every image from the article is replaced with&nbsp;<strong><code>[images]</code></strong>&nbsp;exactly where it appears.<br>Source:&nbsp;</p>



<hr class="wp-block-separator has-alpha-channel-opacity"/>



<h1 class="wp-block-heading">[Latest 2026] Sophos Firewall: Guide to Configuring VPN Site-to-Site Between Fortinet Firewall and Sophos Firewall Firmware V22</h1>



<hr class="wp-block-separator has-alpha-channel-opacity"/>



<h1 class="wp-block-heading">I – Overview of the article</h1>



<p>This article guides how to configure&nbsp;<strong>IPSec VPN Site-to-Site</strong>&nbsp;between two firewall devices:&nbsp;<strong>Fortinet Firewall and Sophos Firewall</strong>, in order to securely connect LAN networks at two different sites through the Internet.&nbsp;</p>



<p>After the configuration is completed, the following LAN networks can connect and access each other:</p>



<ul class="wp-block-list">
<li><strong>172.16.16.0/24 – Site A</strong></li>



<li><strong>10.10.10.0/24 – Site B</strong></li>



<li><strong>192.168.20.0/24 – Site B</strong></li>
</ul>



<hr class="wp-block-separator has-alpha-channel-opacity"/>



<h1 class="wp-block-heading">II – Network diagram</h1>



<p>[images]</p>



<hr class="wp-block-separator has-alpha-channel-opacity"/>



<h2 class="wp-block-heading">Explanation of the network diagram</h2>



<p><img src="https://s.w.org/images/core/emoji/17.0.2/72x72/1f539.png" alt="🔹" class="wp-smiley" style="height: 1em; max-height: 1em;" />&nbsp;<strong>Site A – Fortinet Firewall</strong></p>



<ul class="wp-block-list">
<li>The Internet line is connected to the&nbsp;<strong>WAN port</strong>&nbsp;of the Fortinet device.</li>



<li><strong>WAN IP:</strong>&nbsp;192.168.1.2</li>



<li><strong>Internal LAN network:</strong>&nbsp;172.16.16.0/24</li>



<li>The LAN is configured on the&nbsp;<strong>LAN interface of Fortinet</strong>.</li>
</ul>



<p><img src="https://s.w.org/images/core/emoji/17.0.2/72x72/1f539.png" alt="🔹" class="wp-smiley" style="height: 1em; max-height: 1em;" />&nbsp;<strong>Site B – Sophos Firewall</strong></p>



<ul class="wp-block-list">
<li>The Internet line is connected to&nbsp;<strong>interface a (WAN)</strong>&nbsp;of the Sophos Firewall.</li>



<li><strong>WAN IP:</strong>&nbsp;192.168.1.3</li>



<li>The internal LAN network consists of&nbsp;<strong>two subnets:</strong>
<ul class="wp-block-list">
<li>10.10.10.0/24</li>



<li>192.168.20.0/24</li>
</ul>
</li>
</ul>



<hr class="wp-block-separator has-alpha-channel-opacity"/>



<h2 class="wp-block-heading">Notes about the diagram</h2>



<ul class="wp-block-list">
<li>The VPN connection uses&nbsp;<strong>IPSec Site-to-Site</strong>.</li>



<li>Authentication uses a&nbsp;<strong>Pre-shared Key</strong>.</li>



<li><strong>IKEv2</strong>&nbsp;is used.</li>
</ul>



<hr class="wp-block-separator has-alpha-channel-opacity"/>



<h1 class="wp-block-heading">III – Configuration scenario</h1>



<p>We will perform the configuration of&nbsp;<strong>IPSec VPN Site-to-Site</strong>&nbsp;between:</p>



<ul class="wp-block-list">
<li><strong>Fortinet (192.168.1.2)</strong></li>



<li><strong>Sophos (192.168.1.3)</strong></li>
</ul>



<hr class="wp-block-separator has-alpha-channel-opacity"/>



<h2 class="wp-block-heading">Objective</h2>



<p>LAN network&nbsp;<strong>172.16.16.0/24 (Fortinet)</strong>&nbsp;⬄ LAN networks&nbsp;<strong>10.10.10.0/24 and 192.168.20.0/24 (Sophos)</strong>&nbsp;can connect and communicate with each other directly.</p>



<hr class="wp-block-separator has-alpha-channel-opacity"/>



<h1 class="wp-block-heading">IV – Configuration steps</h1>



<h3 class="wp-block-heading">On the Fortinet device:</h3>



<ul class="wp-block-list">
<li>Create&nbsp;<strong>VPN Tunnels</strong></li>



<li>Create&nbsp;<strong>Static Route</strong></li>



<li>Create&nbsp;<strong>Firewall Policy</strong></li>
</ul>



<h3 class="wp-block-heading">On the Sophos device:</h3>



<ul class="wp-block-list">
<li>Create&nbsp;<strong>subnet</strong></li>



<li>Create&nbsp;<strong>IPSec Profile</strong></li>



<li>Create&nbsp;<strong>IPSec Connection</strong></li>



<li>Create&nbsp;<strong>Firewall Rule</strong></li>
</ul>



<hr class="wp-block-separator has-alpha-channel-opacity"/>



<h1 class="wp-block-heading">V – Detailed guide to configuring VPN site-to-site between Fortinet Firewall and Sophos Firewall Firmware V22</h1>



<hr class="wp-block-separator has-alpha-channel-opacity"/>



<h1 class="wp-block-heading">1. On the Fortinet device</h1>



<hr class="wp-block-separator has-alpha-channel-opacity"/>



<h2 class="wp-block-heading">1.1 – Create VPN Tunnels</h2>



<p>Go to:</p>



<p><strong>VPN → IPsec Tunnels → Create New → Custom</strong></p>



<div class="wp-block-essential-blocks-text  root-eb-text-i1ir1"><div class="eb-parent-wrapper eb-parent-eb-text-i1ir1 "><div class="eb-text-wrapper eb-text-i1ir1" data-id="eb-text-i1ir1"><p class="eb-text">VPN Create Wizard table</p></div></div></div>



<p>Name: <strong>S2S-LAB</strong></p>



<p>Template Type: <strong>Custom</strong></p>



<figure class="wp-block-image size-full"><img decoding="async" width="864" height="395" src="https://vacif.com/en/wp-content/uploads/sites/3/2026/03/image-16.jpg" alt="" class="wp-image-29020" srcset="https://vacif.com/en/wp-content/uploads/sites/3/2026/03/image-16.jpg 864w, https://vacif.com/en/wp-content/uploads/sites/3/2026/03/image-16-300x137.jpg 300w, https://vacif.com/en/wp-content/uploads/sites/3/2026/03/image-16-768x351.jpg 768w" sizes="(max-width: 864px) 100vw, 864px" /></figure>



<p>Use <strong>Custom</strong> to manually configure <strong>Phase 1 / Phase 2</strong>.</p>



<div class="wp-block-essential-blocks-text  root-eb-text-xvm9r"><div class="eb-parent-wrapper eb-parent-eb-text-xvm9r "><div class="eb-text-wrapper eb-text-xvm9r" data-id="eb-text-xvm9r"><p class="eb-text">Network table</p></div></div></div>



<figure class="wp-block-image size-full"><img loading="lazy" decoding="async" width="746" height="709" src="https://vacif.com/en/wp-content/uploads/sites/3/2026/03/image-17.jpg" alt="" class="wp-image-29021" srcset="https://vacif.com/en/wp-content/uploads/sites/3/2026/03/image-17.jpg 746w, https://vacif.com/en/wp-content/uploads/sites/3/2026/03/image-17-300x285.jpg 300w" sizes="auto, (max-width: 746px) 100vw, 746px" /></figure>



<figure class="wp-block-table is-style-regular"><table class="has-background has-fixed-layout" style="background-color:#f0f0f0"><thead><tr><th><strong>Parameter</strong></th><th><strong>Value</strong></th></tr></thead><tbody><tr><td>IP Version</td><td>IPv4</td></tr><tr><td>Remote Gateway</td><td>Static IP Address</td></tr><tr><td>IP Address</td><td>192.168.1.3 (WAN Sophos)</td></tr><tr><td>Interface</td><td>WAN</td></tr><tr><td>Local Gateway</td><td>Disabled</td></tr><tr><td>Mode Config</td><td>Unchecked</td></tr><tr><td>NAT Traversal</td><td>Disable</td></tr><tr><td>Dead Peer Detection</td><td>Disable</td></tr></tbody></table></figure>



<div class="wp-block-essential-blocks-text  root-eb-text-h7m6p"><div class="eb-parent-wrapper eb-parent-eb-text-h7m6p "><div class="eb-text-wrapper eb-text-h7m6p" data-id="eb-text-h7m6p"><p class="eb-text">Disable <strong>NAT-T</strong> because there is no NAT between the two WAN networks.<br>Disable <strong>DPD</strong> to avoid tunnel resets in the lab.</p></div></div></div>



<div class="wp-block-essential-blocks-text  root-eb-text-8oxg9"><div class="eb-parent-wrapper eb-parent-eb-text-8oxg9 "><div class="eb-text-wrapper eb-text-8oxg9" data-id="eb-text-8oxg9"><p class="eb-text">Authentication table</p></div></div></div>



<figure class="wp-block-image size-full"><img decoding="async" src="https://vacif.com/en/wp-content/uploads/2026/03/image-18.jpg" alt="" class="wp-image-29022"/></figure>



<figure class="wp-block-table"><table class="has-background has-fixed-layout" style="background-color:#f0f0f0"><thead><tr><th><strong>Parameter</strong></th><th><strong>Value</strong></th></tr></thead><tbody><tr><td>Method</td><td>Pre-shared Key</td></tr><tr><td>Pre-shared Key</td><td>(example) FortiSophos@123</td></tr><tr><td>IKE Version</td><td>2</td></tr></tbody></table></figure>



<div class="wp-block-essential-blocks-text  root-eb-text-2qql7"><div class="eb-parent-wrapper eb-parent-eb-text-2qql7 "><div class="eb-text-wrapper eb-text-2qql7" data-id="eb-text-2qql7"><p class="eb-text">The <strong>PSK must be exactly the same on the Sophos side</strong>.</p></div></div></div>



<div class="wp-block-essential-blocks-text  root-eb-text-11jdu"><div class="eb-parent-wrapper eb-parent-eb-text-11jdu "><div class="eb-text-wrapper eb-text-11jdu" data-id="eb-text-11jdu"><p class="eb-text">Phase 1 Proposal</p></div></div></div>



<figure class="wp-block-image size-full"><img decoding="async" src="https://vacif.com/en/wp-content/uploads/2026/03/image-19.jpg" alt="" class="wp-image-29023"/></figure>



<figure class="wp-block-table"><table class="has-background has-fixed-layout" style="background-color:#f0f0f0"><thead><tr><th><strong>Parameter</strong></th><th><strong>Value</strong></th></tr></thead><tbody><tr><td>Encryption</td><td>AES256</td></tr><tr><td>Authentication</td><td>SHA256</td></tr><tr><td>Diffie-Hellman Group</td><td>14</td></tr><tr><td>Key Lifetime</td><td>28800</td></tr></tbody></table></figure>



<div class="wp-block-essential-blocks-text  root-eb-text-6r9aw"><div class="eb-parent-wrapper eb-parent-eb-text-6r9aw "><div class="eb-text-wrapper eb-text-6r9aw" data-id="eb-text-6r9aw"><p class="eb-text">Phase 2 Selectors</p></div></div></div>



<figure class="wp-block-image size-full"><img decoding="async" src="https://vacif.com/en/wp-content/uploads/2026/03/image-28.jpg" alt="" class="wp-image-29032"/></figure>



<p><strong>Selector 1</strong></p>



<ul class="wp-block-list">
<li>Local Address: 172.16.16.0/24</li>



<li>Remote Address: 10.10.10.0/24</li>
</ul>



<p><strong>Selector 2</strong></p>



<ul class="wp-block-list">
<li>Local Address: 172.16.16.0/24</li>



<li>Remote Address: 192.168.20.0/24</li>
</ul>



<figure class="wp-block-table"><table class="has-background has-fixed-layout" style="background-color:#f0f0f0"><thead><tr><th><strong>Parameter</strong></th><th><strong>Value</strong></th></tr></thead><tbody><tr><td>Encryption</td><td>AES256</td></tr><tr><td>Authentication</td><td>SHA256</td></tr><tr><td>Diffie-Hellman Group</td><td>14</td></tr><tr><td>Key Lifetime</td><td>43200</td></tr></tbody></table></figure>



<div class="wp-block-essential-blocks-text  root-eb-text-4mf91"><div class="eb-parent-wrapper eb-parent-eb-text-4mf91 "><div class="eb-text-wrapper eb-text-4mf91" data-id="eb-text-4mf91"><p class="eb-text">Each <strong>Sophos subnet requires one Phase 2</strong>.<br>If combined → the <strong>tunnel may be UP but no traffic will pass</strong>.</p></div></div></div>



<p>Click <strong>OK</strong> to create the <strong>VPN Tunnel</strong>.</p>



<div class="wp-block-essential-blocks-advanced-heading  root-eb-advance-heading-ljz9a"><div class="eb-parent-wrapper eb-parent-eb-advance-heading-ljz9a "><div class="eb-advance-heading-wrapper eb-advance-heading-ljz9a button-1 undefined" data-id="eb-advance-heading-ljz9a"><h2 class="eb-ah-title"><span class="first-title">1.2 – Create Static Route</span></h2></div></div></div>



<p>Go to: Network → Static Routes → Create New</p>



<figure class="wp-block-image size-full"><img decoding="async" src="https://vacif.com/en/wp-content/uploads/2026/03/image-22.jpg" alt="" class="wp-image-29027"/></figure>



<div class="wp-block-essential-blocks-text  root-eb-text-i0llt"><div class="eb-parent-wrapper eb-parent-eb-text-i0llt "><div class="eb-text-wrapper eb-text-i0llt" data-id="eb-text-i0llt"><p class="eb-text">Route 1</p></div></div></div>



<figure class="wp-block-table"><table class="has-background has-fixed-layout" style="background-color:#f0f0f0"><thead><tr><th><strong>Parameter </strong></th><th><strong>Value</strong></th></tr></thead><tbody><tr><td>Destination</td><td>10.10.10.0/24</td></tr><tr><td>Interface</td><td>S2S-LAB</td></tr><tr><td>Gateway</td><td>0.0.0.0</td></tr><tr><td>Status</td><td>Enable</td></tr></tbody></table></figure>



<div class="wp-block-essential-blocks-text  root-eb-text-t16sq"><div class="eb-parent-wrapper eb-parent-eb-text-t16sq "><div class="eb-text-wrapper eb-text-t16sq" data-id="eb-text-t16sq"><p class="eb-text">Route 2</p></div></div></div>



<figure class="wp-block-image size-full"><img loading="lazy" decoding="async" width="864" height="395" src="https://vacif.com/en/wp-content/uploads/sites/3/2026/03/image-23.jpg" alt="" class="wp-image-29026" srcset="https://vacif.com/en/wp-content/uploads/sites/3/2026/03/image-23.jpg 864w, https://vacif.com/en/wp-content/uploads/sites/3/2026/03/image-23-300x137.jpg 300w, https://vacif.com/en/wp-content/uploads/sites/3/2026/03/image-23-768x351.jpg 768w" sizes="auto, (max-width: 864px) 100vw, 864px" /></figure>



<figure class="wp-block-table"><table class="has-background has-fixed-layout" style="background-color:#f0f0f0"><thead><tr><th><strong>Parameter</strong></th><th><strong>Value</strong></th></tr></thead><tbody><tr><td>Destination</td><td>192.168.20.0/24</td></tr><tr><td>Interface</td><td>S2S-LAB</td></tr><tr><td>Gateway</td><td>0.0.0.0</td></tr><tr><td>Status</td><td>Enable</td></tr></tbody></table></figure>



<div class="wp-block-essential-blocks-text  root-eb-text-175x1"><div class="eb-parent-wrapper eb-parent-eb-text-175x1 "><div class="eb-text-wrapper eb-text-175x1" data-id="eb-text-175x1"><p class="eb-text">If the <strong>static route is missing → ping will never enter the VPN</strong>.</p></div></div></div>



<div class="wp-block-essential-blocks-advanced-heading  root-eb-advance-heading-siaef"><div class="eb-parent-wrapper eb-parent-eb-advance-heading-siaef "><div class="eb-advance-heading-wrapper eb-advance-heading-siaef button-1 undefined" data-id="eb-advance-heading-siaef"><h2 class="eb-ah-title"><span class="first-title">1.3 – Create Firewall Policy</span></h2></div></div></div>



<div class="wp-block-essential-blocks-text  root-eb-text-k0mcg"><div class="eb-parent-wrapper eb-parent-eb-text-k0mcg "><div class="eb-text-wrapper eb-text-k0mcg" data-id="eb-text-k0mcg"><p class="eb-text">Policy 1 – LAN → VPN</p></div></div></div>



<figure class="wp-block-image size-full"><img decoding="async" src="https://vacif.com/en/wp-content/uploads/2026/03/image-26.jpg" alt="" class="wp-image-29030"/></figure>



<figure class="wp-block-table"><table class="has-background has-fixed-layout" style="background-color:#f0f0f0"><thead><tr><th><strong>Parameter</strong></th><th><strong>Value</strong></th></tr></thead><tbody><tr><td>Incoming Interface</td><td>LAN</td></tr><tr><td>Outgoing Interface</td><td>S2S-LAB</td></tr><tr><td>Source</td><td>172.16.16.0/24</td></tr><tr><td>Destination</td><td>10.10.10.0/24, 192.168.20.0/24</td></tr><tr><td>Service</td><td>ALL</td></tr><tr><td>Action</td><td>ACCEPT</td></tr><tr><td>NAT</td><td>Disable</td></tr></tbody></table></figure>



<div class="wp-block-essential-blocks-text  root-eb-text-04oaf"><div class="eb-parent-wrapper eb-parent-eb-text-04oaf "><div class="eb-text-wrapper eb-text-04oaf" data-id="eb-text-04oaf"><p class="eb-text">Policy 2 – VPN → LAN</p></div></div></div>



<figure class="wp-block-image size-full"><img loading="lazy" decoding="async" width="864" height="395" src="https://vacif.com/en/wp-content/uploads/sites/3/2026/03/image-27.jpg" alt="" class="wp-image-29031" srcset="https://vacif.com/en/wp-content/uploads/sites/3/2026/03/image-27.jpg 864w, https://vacif.com/en/wp-content/uploads/sites/3/2026/03/image-27-300x137.jpg 300w, https://vacif.com/en/wp-content/uploads/sites/3/2026/03/image-27-768x351.jpg 768w" sizes="auto, (max-width: 864px) 100vw, 864px" /></figure>



<figure class="wp-block-table"><table class="has-background has-fixed-layout" style="background-color:#f0f0f0"><thead><tr><th><strong>Parameter</strong></th><th><strong>Value</strong></th></tr></thead><tbody><tr><td>Incoming Interface</td><td>S2S-LAB</td></tr><tr><td>Outgoing Interface</td><td>LAN</td></tr><tr><td>Source</td><td>10.10.10.0/24, 192.168.20.0/24</td></tr><tr><td>Destination</td><td>172.16.16.0/24</td></tr><tr><td>Service</td><td>ALL</td></tr><tr><td>Action</td><td>ACCEPT</td></tr></tbody></table></figure>



<div class="wp-block-essential-blocks-text  root-eb-text-i77g3"><div class="eb-parent-wrapper eb-parent-eb-text-i77g3 "><div class="eb-text-wrapper eb-text-i77g3" data-id="eb-text-i77g3"><p class="eb-text">The <strong>VPN policy must be placed above the Internet policy</strong>.</p></div></div></div>



<div class="wp-block-essential-blocks-advanced-heading  root-eb-advance-heading-qh3q2"><div class="eb-parent-wrapper eb-parent-eb-advance-heading-qh3q2 "><div class="eb-advance-heading-wrapper eb-advance-heading-qh3q2 button-1 undefined" data-id="eb-advance-heading-qh3q2"><h2 class="eb-ah-title"><span class="first-title">2. On the Sophos device</span></h2></div></div></div>



<div class="wp-block-essential-blocks-advanced-heading  root-eb-advance-heading-a7f6u"><div class="eb-parent-wrapper eb-parent-eb-advance-heading-a7f6u "><div class="eb-advance-heading-wrapper eb-advance-heading-a7f6u button-1 undefined" data-id="eb-advance-heading-a7f6u"><h2 class="eb-ah-title"><span class="first-title">2.1 – Create subnet</span></h2></div></div></div>



<p>Go to: Hosts and Services → Add</p>



<figure class="wp-block-table"><table class="has-background has-fixed-layout" style="background-color:#f0f0f0"><thead><tr><th><strong>Name</strong></th><th><strong>Type</strong></th><th><strong>Parameters</strong></th></tr></thead><tbody><tr><td>LAN_SOPHOS_10</td><td>Network</td><td>IP: 10.10.10.0 / Subnet: 255.255.255.0</td></tr><tr><td>LAN_SOPHOS_20</td><td>Network</td><td>IP: 192.168.20.0 / Subnet: 255.255.255.0</td></tr><tr><td>LAN_FORTI</td><td>Network</td><td>IP: 172.16.16.0 / Subnet: 255.255.255.0</td></tr></tbody></table></figure>



<div class="wp-block-essential-blocks-advanced-heading  root-eb-advance-heading-bkx0m"><div class="eb-parent-wrapper eb-parent-eb-advance-heading-bkx0m "><div class="eb-advance-heading-wrapper eb-advance-heading-bkx0m button-1 undefined" data-id="eb-advance-heading-bkx0m"><h2 class="eb-ah-title"><span class="first-title">2.2 – Create IPSec Profile</span></h2></div></div></div>



<p>Go to: SYSTEM &gt; Profiles → IPsec Profiles → Add</p>



<figure class="wp-block-image size-full"><img decoding="async" src="https://vacif.com/en/wp-content/uploads/2026/03/image-20.jpg" alt="" class="wp-image-29024"/></figure>



<figure class="wp-block-table"><table class="has-background has-fixed-layout" style="background-color:#f0f0f0"><thead><tr><th><strong>Parameters</strong></th><th><strong>Value</strong></th></tr></thead><tbody><tr><td>Name</td><td>Fortinet-Vacif</td></tr><tr><td>IKE Version</td><td>IKEv2</td></tr><tr><td>Encryption</td><td>AES256</td></tr><tr><td>Authentication</td><td>SHA256</td></tr><tr><td>DH Group</td><td>14</td></tr></tbody></table></figure>



<div class="wp-block-essential-blocks-advanced-heading  root-eb-advance-heading-x0jn2"><div class="eb-parent-wrapper eb-parent-eb-advance-heading-x0jn2 "><div class="eb-advance-heading-wrapper eb-advance-heading-x0jn2 button-1 undefined" data-id="eb-advance-heading-x0jn2"><h2 class="eb-ah-title"><span class="first-title">2.3 – Create IPSec Connection</span></h2></div></div></div>



<p>Go to: CONFIGURE → Site-to-site VPN → &nbsp;IPsec → Add</p>



<div class="wp-block-essential-blocks-text  root-eb-text-b8zwg"><div class="eb-parent-wrapper eb-parent-eb-text-b8zwg "><div class="eb-text-wrapper eb-text-b8zwg" data-id="eb-text-b8zwg"><p class="eb-text">General Settings</p></div></div></div>



<figure class="wp-block-image size-full"><img decoding="async" src="https://vacif.com/en/wp-content/uploads/2026/03/image-21.jpg" alt="" class="wp-image-29025"/></figure>



<figure class="wp-block-table"><table class="has-background has-fixed-layout" style="background-color:#f0f0f0"><thead><tr><th><strong>Parameter</strong></th><th><strong>Value</strong></th></tr></thead><tbody><tr><td>Name</td><td>VPN_SOPHOS_VACIF</td></tr><tr><td>Connection Type</td><td>Policy-based</td></tr><tr><td>Gateway Type</td><td>Initiate the connection</td></tr><tr><td>Create firewall rule</td><td>Không chọn (tạo thủ công)</td></tr></tbody></table></figure>



<div class="wp-block-essential-blocks-text  root-eb-text-86g8b"><div class="eb-parent-wrapper eb-parent-eb-text-86g8b "><div class="eb-text-wrapper eb-text-86g8b" data-id="eb-text-86g8b"><p class="eb-text">Authentication</p></div></div></div>



<figure class="wp-block-table"><table class="has-background has-fixed-layout" style="background-color:#f0f0f0"><thead><tr><th><strong>Parameter</strong></th><th><strong>Value</strong></th></tr></thead><tbody><tr><td>Profile</td><td>Fortinet Vacif ( tạo ở bước trên )</td></tr><tr><td>Authentication Type&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;</td><td>Pre-shared Key</td></tr><tr><td>Pre-shared Key</td><td>FortiSophos@123</td></tr></tbody></table></figure>



<div class="wp-block-essential-blocks-text  root-eb-text-6opfg"><div class="eb-parent-wrapper eb-parent-eb-text-6opfg "><div class="eb-text-wrapper eb-text-6opfg" data-id="eb-text-6opfg"><p class="eb-text">Gateway Settings</p></div></div></div>



<figure class="wp-block-image size-full"><img loading="lazy" decoding="async" width="863" height="397" src="https://vacif.com/en/wp-content/uploads/sites/3/2026/03/image-29.jpg" alt="" class="wp-image-29033" srcset="https://vacif.com/en/wp-content/uploads/sites/3/2026/03/image-29.jpg 863w, https://vacif.com/en/wp-content/uploads/sites/3/2026/03/image-29-300x138.jpg 300w, https://vacif.com/en/wp-content/uploads/sites/3/2026/03/image-29-768x353.jpg 768w" sizes="auto, (max-width: 863px) 100vw, 863px" /></figure>



<ul class="wp-block-list">
<li>Listening interface: Port 2 – 192.168.1.3</li>



<li>Gateway address: 192.168.1.2 (WAN Fortinet)</li>



<li>Local Subnet: 10.10.10.0/24 , 192.168.20.0/24</li>



<li>Remote Subnet: 172.16.16.0/24</li>
</ul>



<div class="wp-block-essential-blocks-advanced-heading  root-eb-advance-heading-2dz5o"><div class="eb-parent-wrapper eb-parent-eb-advance-heading-2dz5o "><div class="eb-advance-heading-wrapper eb-advance-heading-2dz5o button-1 undefined" data-id="eb-advance-heading-2dz5o"><h2 class="eb-ah-title"><span class="first-title">2.4 – Create Sophos Firewall Rule</span></h2></div></div></div>



<div class="wp-block-essential-blocks-text  root-eb-text-069m1"><div class="eb-parent-wrapper eb-parent-eb-text-069m1 "><div class="eb-text-wrapper eb-text-069m1" data-id="eb-text-069m1"><p class="eb-text">LAN → VPN</p></div></div></div>



<figure class="wp-block-image size-full"><img loading="lazy" decoding="async" width="863" height="426" src="https://vacif.com/en/wp-content/uploads/sites/3/2026/03/image-25.jpg" alt="" class="wp-image-29028" srcset="https://vacif.com/en/wp-content/uploads/sites/3/2026/03/image-25.jpg 863w, https://vacif.com/en/wp-content/uploads/sites/3/2026/03/image-25-300x148.jpg 300w, https://vacif.com/en/wp-content/uploads/sites/3/2026/03/image-25-768x379.jpg 768w" sizes="auto, (max-width: 863px) 100vw, 863px" /></figure>



<figure class="wp-block-table"><table class="has-background has-fixed-layout" style="background-color:#f0f0f0"><thead><tr><th><strong>Parameter</strong></th><th><strong>Value</strong></th></tr></thead><tbody><tr><td>Source Zone</td><td>LAN</td></tr><tr><td>Destination Zone</td><td>VPN</td></tr><tr><td>Source Network</td><td>10.10.10.0/24, 192.168.20.0/24</td></tr><tr><td>Destination Network</td><td>172.16.16.0/24</td></tr><tr><td>Action</td><td>Allow</td></tr></tbody></table></figure>



<div class="wp-block-essential-blocks-text  root-eb-text-0pm0n"><div class="eb-parent-wrapper eb-parent-eb-text-0pm0n "><div class="eb-text-wrapper eb-text-0pm0n" data-id="eb-text-0pm0n"><p class="eb-text">VPN → LAN</p></div></div></div>



<figure class="wp-block-image size-full"><img decoding="async" src="https://vacif.com/en/wp-content/uploads/2026/03/image-24.jpg" alt="" class="wp-image-29029"/></figure>



<figure class="wp-block-table"><table class="has-background has-fixed-layout" style="background-color:#f0f0f0"><thead><tr><th><strong>Parameter</strong></th><th><strong>Value</strong></th></tr></thead><tbody><tr><td>Source Zone</td><td>VPN</td></tr><tr><td>Destination Zone</td><td>LAN</td></tr><tr><td>Source Network</td><td>172.16.16.0/24</td></tr><tr><td>Destination Network</td><td>10.10.10.0/24, 192.168.20.0/24</td></tr><tr><td>Action</td><td>Allow</td></tr></tbody></table></figure>



<div class="wp-block-essential-blocks-advanced-heading  root-eb-advance-heading-qeg05"><div class="eb-parent-wrapper eb-parent-eb-advance-heading-qeg05 "><div class="eb-advance-heading-wrapper eb-advance-heading-qeg05 button-1 undefined" data-id="eb-advance-heading-qeg05"><h2 class="eb-ah-title"><span class="first-title">Verify the result</span></h2></div></div></div>



<p><strong>Sophos:</strong> VPN → IPsec Connections → Status: <img src="https://s.w.org/images/core/emoji/17.0.2/72x72/1f7e2.png" alt="🟢" class="wp-smiley" style="height: 1em; max-height: 1em;" /> Connected</p>



<figure class="wp-block-image size-full"><img loading="lazy" decoding="async" width="863" height="397" src="https://vacif.com/en/wp-content/uploads/sites/3/2026/03/image-30.jpg" alt="" class="wp-image-29034" srcset="https://vacif.com/en/wp-content/uploads/sites/3/2026/03/image-30.jpg 863w, https://vacif.com/en/wp-content/uploads/sites/3/2026/03/image-30-300x138.jpg 300w, https://vacif.com/en/wp-content/uploads/sites/3/2026/03/image-30-768x353.jpg 768w" sizes="auto, (max-width: 863px) 100vw, 863px" /></figure>



<p><strong>Fortinet:</strong> Monitor → IPsec Monitor → Tunnel: <strong>UP </strong>(Incoming / Outgoing Data present)</p>



<figure class="wp-block-image size-full"><img loading="lazy" decoding="async" width="863" height="397" src="https://vacif.com/en/wp-content/uploads/sites/3/2026/03/image-31.jpg" alt="" class="wp-image-29035" srcset="https://vacif.com/en/wp-content/uploads/sites/3/2026/03/image-31.jpg 863w, https://vacif.com/en/wp-content/uploads/sites/3/2026/03/image-31-300x138.jpg 300w, https://vacif.com/en/wp-content/uploads/sites/3/2026/03/image-31-768x353.jpg 768w" sizes="auto, (max-width: 863px) 100vw, 863px" /></figure>



<p><strong>Test:</strong></p>



<ul class="wp-block-list">
<li>172.16.16.x → 10.10.10.x</li>



<li>172.16.16.x → 192.168.20.x</li>
</ul>



<figure class="wp-block-image size-full"><img decoding="async" src="https://vacif.com/en/wp-content/uploads/2026/03/image-32.jpg" alt="" class="wp-image-29036"/></figure>



<div class="wp-block-essential-blocks-advanced-heading  root-eb-advance-heading-iq8fr"><div class="eb-parent-wrapper eb-parent-eb-advance-heading-iq8fr "><div class="eb-advance-heading-wrapper eb-advance-heading-iq8fr button-1 undefined" data-id="eb-advance-heading-iq8fr"><h2 class="eb-ah-title"><span class="first-title">*Notes &amp; deployment considerations</span></h2></div></div></div>



<ul class="wp-block-list">
<li>Ensure <strong>system time is synchronized (NTP)</strong> to avoid IKEv2 errors caused by time mismatch.</li>



<li><strong>PSK, encryption algorithms, and DH groups must match on both sides</strong> — mismatches will cause <strong>Phase 1/2 failures</strong>.</li>



<li><strong>Disable NAT on policies entering the VPN</strong>; enabling NAT will alter the source and packets will not match the selector.</li>



<li>Each <strong>Local/Remote subnet pair requires one selector (Phase 2)</strong>. Do not combine multiple subnets if the device does not support it.</li>



<li>If the <strong>tunnel is UP but ping does not work</strong>, check: <strong>Static Route, policy order, and the ARP/Route table on both sides</strong>.</li>
</ul>
]]></content:encoded>
					
					<wfw:commentRss>https://vacif.com/en/moi-nhat-2026-sophos-firewall-huong-dan-cau-hinh-vpn-site-to-site-giua-firewall-fortinet-va-sophos-firewall-firmware-v22/feed/</wfw:commentRss>
			<slash:comments>0</slash:comments>
		
		
			</item>
		<item>
		<title>HƯỚNG DẪN CẤU HÌNH VPN L2TP TRÊN THIẾT BỊ TƯỜNG LỬA SOPHOS XGS</title>
		<link>https://vacif.com/en/huong-dan-cau-hinh-vpn-l2tp-tren-thiet-bi-tuong-lua-sophos-xgs/</link>
					<comments>https://vacif.com/en/huong-dan-cau-hinh-vpn-l2tp-tren-thiet-bi-tuong-lua-sophos-xgs/#respond</comments>
		
		<dc:creator><![CDATA[Win]]></dc:creator>
		<pubDate>Thu, 26 Dec 2024 08:00:53 +0000</pubDate>
				<category><![CDATA[Hướng dẫn/Tài liệu]]></category>
		<category><![CDATA[L2TP VPN]]></category>
		<category><![CDATA[VPN]]></category>
		<guid isPermaLink="false">https://thegioifirewall.com/?p=21185</guid>

					<description><![CDATA[1.Tổng quan Bài viết này sẽ hướng dẫn cấu hình tính năng L2TP VPN trên thiết bị tường lửa Sophos XGS để truy cập từ xa vào mạng nội bộ. Giao thức Layer Two Tunneling Protocol (L2TP) cho phép bạn cung cấp kết nối đến mạng của mình thông qua các đường hầm riêng trên [&#8230;]]]></description>
										<content:encoded><![CDATA[
<p><strong>1.Tổng quan</strong></p>



<p>Bài viết này sẽ hướng dẫn cấu hình tính năng L2TP VPN trên thiết bị tường lửa Sophos XGS để truy cập từ xa vào mạng nội bộ. Giao thức Layer Two Tunneling Protocol (L2TP) cho phép bạn cung cấp kết nối đến mạng của mình thông qua các đường hầm riêng trên Internet.</p>



<p><strong>2.Chi tiết cấu hình</strong></p>



<p>Đầu tiên ta sẽ tạo group VPN, bằng cách đi đến mục <strong>Authentication &gt; Groups</strong>, chọn Add để tạo 1 group mới.</p>



<figure class="wp-block-image size-large"><img decoding="async" src="https://vacif.com/en/wp-content/uploads/sites/3/2024/12/cau-hinh-vpn-l2tp-tren-thiet-bi-tuong-lua-sophos-xgs.png" alt="" class="wp-image-21211"/></figure>



<p><strong>Group name*</strong>: tiến hành đặt tên</p>



<p><strong>Group type*</strong>: chọn <strong>Normal</strong></p>



<p><strong>Surfing quota*</strong>: chọn <strong>Unlimited Internet Access</strong></p>



<p><strong>Access time*</strong>: chọn <strong>Allowed all the time</strong></p>



<figure class="wp-block-image"><img decoding="async" src="https://vacif.com/en/wp-content/uploads/sites/3/2024/12/cau-hinh-vpn-l2tp-tren-thiet-bi-tuong-lua-sophos-xgs-1.png" alt=""/></figure>



<p>Các thông khác vẫn giữ nguyên mặc định.</p>



<p>Sau đó ấn <strong>Save</strong> để lưu lại.</p>



<figure class="wp-block-image"><img decoding="async" src="https://vacif.com/en/wp-content/uploads/sites/3/2024/12/cau-hinh-vpn-l2tp-tren-thiet-bi-tuong-lua-sophos-xgs-2.png" alt=""/></figure>



<p>Sau khi tạo group vpn xong, ta sẽ tiến hành tạo user vpn để thêm vào group. Bằng cách chọn <strong>Authentication &gt; Users</strong>, chọn <strong>Add</strong> để tạo user mới.</p>



<figure class="wp-block-image"><img decoding="async" src="https://vacif.com/en/wp-content/uploads/sites/3/2024/12/cau-hinh-vpn-l2tp-tren-thiet-bi-tuong-lua-sophos-xgs-3.png" alt=""/></figure>



<p><strong>Username*</strong>: tiến hành đặt username để đăng nhập</p>



<p><strong>Name*</strong>: đặt tên</p>



<p><strong>User type*</strong>: chọn User</p>



<p><strong>Password*</strong>: Đặt mật khẩu cho tài khoản user</p>



<p><strong>Email*</strong>: nhập email của bạn</p>



<p><strong>Group*</strong>: Chọn group đã tạo trước đó</p>



<figure class="wp-block-image"><img decoding="async" src="https://vacif.com/en/wp-content/uploads/sites/3/2024/12/cau-hinh-vpn-l2tp-tren-thiet-bi-tuong-lua-sophos-xgs-4.png" alt=""/></figure>



<p>Các thông số khác giữ nguyên mặc định, sau đó nhấn <strong>Save.</strong></p>



<figure class="wp-block-image"><img decoding="async" src="https://vacif.com/en/wp-content/uploads/sites/3/2024/12/cau-hinh-vpn-l2tp-tren-thiet-bi-tuong-lua-sophos-xgs-5.png" alt=""/></figure>



<p>Bây giờ ta sẽ vào <strong>Remote access VPN</strong> &gt; <strong>L2TP</strong> &gt; sau đó chọn <strong>L2TP global settings.</strong></p>



<figure class="wp-block-image"><img decoding="async" src="https://vacif.com/en/wp-content/uploads/sites/3/2024/12/cau-hinh-vpn-l2tp-tren-thiet-bi-tuong-lua-sophos-xgs-6.png" alt=""/></figure>



<p>Tích chọn <strong>Enable L2TP</strong></p>



<p><strong>Assign IP from*</strong>:&nbsp; điền range DHCP sẽ cấp khi user thực hiện VPN&nbsp;</p>



<p><strong>Primary DNS server*</strong>:&nbsp; điền thông tin DNS chính</p>



<p><strong>Secondary DNS server</strong>: điền thông tin DNS phụ</p>



<p>Sau đó ấn <strong>Add member</strong> để tiến hành add group VPN hoặc user VPN</p>



<figure class="wp-block-image"><img decoding="async" src="https://vacif.com/en/wp-content/uploads/sites/3/2024/12/cau-hinh-vpn-l2tp-tren-thiet-bi-tuong-lua-sophos-xgs-7.png" alt=""/></figure>



<p>Chọn group VPN đã tạo trước đó, sau đó ấn <strong>Add.</strong></p>



<figure class="wp-block-image"><img decoding="async" src="https://vacif.com/en/wp-content/uploads/sites/3/2024/12/cau-hinh-vpn-l2tp-tren-thiet-bi-tuong-lua-sophos-xgs-8.png" alt=""/></figure>



<p>Ấn <strong>Ok.</strong></p>



<figure class="wp-block-image"><img decoding="async" src="https://vacif.com/en/wp-content/uploads/sites/3/2024/12/cau-hinh-vpn-l2tp-tren-thiet-bi-tuong-lua-sophos-xgs-9.png" alt=""/></figure>



<p>Ấn <strong>Close</strong> để thoát.</p>



<figure class="wp-block-image"><img decoding="async" src="https://vacif.com/en/wp-content/uploads/sites/3/2024/12/cau-hinh-vpn-l2tp-tren-thiet-bi-tuong-lua-sophos-xgs-10.png" alt=""/></figure>



<p>Sau đó ấn <strong>Apply.</strong></p>



<figure class="wp-block-image"><img decoding="async" src="https://vacif.com/en/wp-content/uploads/sites/3/2024/12/cau-hinh-vpn-l2tp-tren-thiet-bi-tuong-lua-sophos-xgs-11.png" alt=""/></figure>



<p>Vẫn ở mục <strong>Remote access VPN</strong>, tab <strong>L2TP</strong>, ấn <strong>Add.</strong></p>



<figure class="wp-block-image"><img decoding="async" src="https://vacif.com/en/wp-content/uploads/sites/3/2024/12/cau-hinh-vpn-l2tp-tren-thiet-bi-tuong-lua-sophos-xgs-12.png" alt=""/></figure>



<p><strong>Name*</strong>: đặt tên</p>



<p><strong>Profile*</strong>: chọn <strong>DefaultL2TP</strong></p>



<p><strong>Gateway type*</strong>: chọn <strong>Respond only </strong>(giữ kết nối luôn sẵn sàng để phản hồi mọi yêu cầu tới)</p>



<p><strong>Authentication type*</strong>: chọn <strong>Preshared key </strong>(xác thực điểm cuối bằng cách sử dụng khóa bí mật mà cả 2 điểm cuối đều biết)</p>



<p><strong>Preshared key*</strong>: điền mật khẩu&nbsp;</p>



<figure class="wp-block-image"><img decoding="async" src="https://vacif.com/en/wp-content/uploads/sites/3/2024/12/cau-hinh-vpn-l2tp-tren-thiet-bi-tuong-lua-sophos-xgs-13.png" alt=""/></figure>



<p><strong>Local WAN port*</strong>: chọn port WAN đóng vai trò tunnel</p>



<p><strong>Remote host*</strong>: địa chỉ IP hoặc hostname của endpoint từ xa. Để chỉ định bất kỳ địa chỉ IP nào, bạn có thể nhập địa chỉ ký tự đại diện (*).</p>



<p><strong>Allow NAT traversal</strong>: bật NAT traversal nếu có thiết bị NAT giữa các endpoint của bạn</p>



<p><strong>Remote subnet*</strong>: để <strong>Any</strong> (mạng từ xa mà bạn muốn cấp quyền truy cập)</p>



<figure class="wp-block-image"><img decoding="async" src="https://vacif.com/en/wp-content/uploads/sites/3/2024/12/cau-hinh-vpn-l2tp-tren-thiet-bi-tuong-lua-sophos-xgs-14.png" alt=""/></figure>



<p>Các thông số giữ nguyên mặc định, sau đó ấn <strong>Save.</strong></p>



<figure class="wp-block-image"><img decoding="async" src="https://vacif.com/en/wp-content/uploads/sites/3/2024/12/cau-hinh-vpn-l2tp-tren-thiet-bi-tuong-lua-sophos-xgs-15.png" alt=""/></figure>



<p>Nhấp vào biểu tượng màu đỏ bên dưới cột <strong>Active</strong> để bắt đầu kết nối. Sau khi kết nối, nó sẽ hiển thị màu xanh lá cây.</p>



<figure class="wp-block-image"><img decoding="async" src="https://vacif.com/en/wp-content/uploads/sites/3/2024/12/cau-hinh-vpn-l2tp-tren-thiet-bi-tuong-lua-sophos-xgs-16.png" alt=""/></figure>



<p>Tiếp theo ta sẽ thiết lập độ ưu tiên route, thứ tự ưu tiên mặc định là <strong>Static routes, SD-WAN policy routes, VPN routes</strong>. Để thiết lập kết nối L2TP, <strong>VPN routes</strong> phải đến trước, tiếp theo là <strong>Static routes</strong> và <strong>SD-WAN policy routes</strong> theo bất kỳ thứ tự nào.</p>



<p>Đầu tiên cần đăng nhập vào CLI của tường lửa. Ở giao diện web admin truy cập vào dấu mũi tên như hình chọn <strong>Console.</strong></p>



<figure class="wp-block-image"><img decoding="async" src="https://vacif.com/en/wp-content/uploads/sites/3/2024/12/cau-hinh-vpn-l2tp-tren-thiet-bi-tuong-lua-sophos-xgs-17.png" alt=""/></figure>



<p>Tiến hành nhập password tường lửa.</p>



<figure class="wp-block-image"><img decoding="async" src="https://vacif.com/en/wp-content/uploads/sites/3/2024/12/cau-hinh-vpn-l2tp-tren-thiet-bi-tuong-lua-sophos-xgs-18.png" alt=""/></figure>



<p>Chọn mục số 4.</p>



<figure class="wp-block-image"><img decoding="async" src="https://vacif.com/en/wp-content/uploads/sites/3/2024/12/cau-hinh-vpn-l2tp-tren-thiet-bi-tuong-lua-sophos-xgs-19.png" alt=""/></figure>



<p>Ở đây mình ta thiết lập độ ưu tiên rồi. Nếu chưa hãy dùng lệnh sau:&nbsp;</p>



<p><strong>system route_precedence set vpn static sdwan_policyroute&nbsp;</strong></p>



<p>Sau đó dùng lệnh này để kiểm tra lại:</p>



<p><strong>system route_precedence show</strong></p>



<figure class="wp-block-image"><img decoding="async" src="https://vacif.com/en/wp-content/uploads/sites/3/2024/12/cau-hinh-vpn-l2tp-tren-thiet-bi-tuong-lua-sophos-xgs-20.png" alt=""/></figure>



<p>Tiếp theo ta sẽ tạo Firewall rule để cho phép kết nối từ VPN vào mạng nội bộ. Ngoài ra ta cũng có thể viết thêm rule để cho phép theo chiều ngược lại.</p>



<p>Đi tới <strong>Rules and policies</strong> &gt; <strong>Firewall rules</strong>, chọn <strong>Add firewall rule</strong> rồi chọn tiếp <strong>New firewall rule</strong>.</p>



<figure class="wp-block-image"><img decoding="async" src="https://vacif.com/en/wp-content/uploads/sites/3/2024/12/cau-hinh-vpn-l2tp-tren-thiet-bi-tuong-lua-sophos-xgs-21.png" alt=""/></figure>



<p><strong>Rule name*</strong>: đặt tên</p>



<p><strong>Action</strong>: chọn <strong>Accept</strong></p>



<p>Tích chọn <strong>Log firewall traffic</strong></p>



<p><strong>Rule possition</strong>: chọn <strong>Top</strong></p>



<p><strong>Rule group</strong>: chọn <strong>None</strong></p>



<p><strong>Source zones*: </strong>chọn zone<strong> VPN</strong></p>



<p><strong>Source network and devices*: </strong>chọn<strong> Any </strong>(có thể giới hạn lại thành subnet mình muốn)</p>



<p><strong>During scheduled time: </strong>chọn<strong> All the time</strong></p>



<p><strong>Destination zone*: </strong>chọn zone<strong> LAN</strong></p>



<p><strong>Destination network*: </strong>chọn<strong> Any </strong>(có thể giới hạn lại thành subnet mình muốn)</p>



<p><strong>Services: </strong>chọn<strong> Any</strong></p>



<p>Sau đó ấn <strong>Save</strong> để lưu</p>



<figure class="wp-block-image"><img decoding="async" src="https://vacif.com/en/wp-content/uploads/sites/3/2024/12/cau-hinh-vpn-l2tp-tren-thiet-bi-tuong-lua-sophos-xgs-22.png" alt=""/></figure>



<figure class="wp-block-image"><img decoding="async" src="https://vacif.com/en/wp-content/uploads/sites/3/2024/12/cau-hinh-vpn-l2tp-tren-thiet-bi-tuong-lua-sophos-xgs-23.png" alt=""/></figure>



<p><strong>Lưu ý:</strong> Nếu bạn muốn lớp mạng người dùng VPN có thể truy cập Internet thông qua thiết bị Firewall thì tạo 1 Firewall rule với Source zones* là VPN và Destination zone* là WAN.&nbsp;</p>



<p>Vào <strong>Administration &gt; Device access</strong>, tích chọn <strong>IPsec</strong> ở Zone <strong>WAN.</strong></p>



<figure class="wp-block-image"><img decoding="async" src="https://vacif.com/en/wp-content/uploads/sites/3/2024/12/cau-hinh-vpn-l2tp-tren-thiet-bi-tuong-lua-sophos-xgs-24.png" alt=""/></figure>
]]></content:encoded>
					
					<wfw:commentRss>https://vacif.com/en/huong-dan-cau-hinh-vpn-l2tp-tren-thiet-bi-tuong-lua-sophos-xgs/feed/</wfw:commentRss>
			<slash:comments>0</slash:comments>
		
		
			</item>
		<item>
		<title>Hướng dẫn cấu hình tự động kết nối VPN sau khi khởi động máy tính.</title>
		<link>https://vacif.com/en/huong-dan-cau-hinh-tu-dong-ket-noi-vpn-sau-khi-khoi-dong-may-tinh/</link>
					<comments>https://vacif.com/en/huong-dan-cau-hinh-tu-dong-ket-noi-vpn-sau-khi-khoi-dong-may-tinh/#respond</comments>
		
		<dc:creator><![CDATA[Đạt Trịnh]]></dc:creator>
		<pubDate>Mon, 23 Dec 2024 10:27:00 +0000</pubDate>
				<category><![CDATA[Hướng dẫn/Tài liệu]]></category>
		<category><![CDATA[VPN]]></category>
		<guid isPermaLink="false">https://thegioifirewall.com/?p=21173</guid>

					<description><![CDATA[Trong bài viết này mình sẽ hướng dẫn cấu hình tự động kết nối VPN sau khi khởi động máy tính. Bước 1. Tạo file provisioning. Mở soạn văn bản với nội dung dưới đây: [ &#160;&#160;&#160;&#160;{ &#160;&#160;&#160;&#160;&#160;&#160;&#160;&#160;&#8220;display_name&#8221;: &#8220;Sophos_auto_connect&#8221;,&#160; &#160;&#160;&#160;&#160;&#160;&#160;&#160;&#160;&#8220;gateway&#8221;: &#8220;[IP WAN cấu hình SSL VPN]&#8221;, &#160;&#160;&#160;&#160;&#160;&#160;&#160;&#160;&#8220;vpn_portal_port&#8221;: [port VPN Portal], &#160;&#160;&#160;&#160;&#160;&#160;&#160;&#160;&#8220;otp&#8221;: false, &#160;&#160;&#160;&#160;&#160;&#160;&#160;&#160;&#8220;auto_connect_host&#8221;: &#8220;[IP nội [&#8230;]]]></description>
										<content:encoded><![CDATA[
<ol class="wp-block-list">
<li><strong>Tổng quan.</strong></li>
</ol>



<p>Trong bài viết này mình sẽ hướng dẫn cấu hình tự động kết nối VPN sau khi khởi động máy tính.</p>



<ol start="2" class="wp-block-list">
<li><strong>Yêu cầu:</strong></li>
</ol>



<ul class="wp-block-list">
<li>Cấu hình SSL VPN.</li>



<li>Cài đặt VPN Client.</li>
</ul>



<ol start="3" class="wp-block-list">
<li><strong>Các bước thực hiện.</strong></li>
</ol>



<p><strong>Bước 1. Tạo file provisioning.</strong></p>



<p>Mở soạn văn bản với nội dung dưới đây:</p>



<p>[</p>



<p>&nbsp;&nbsp;&nbsp;&nbsp;{</p>



<p>&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&#8220;display_name&#8221;: &#8220;Sophos_auto_connect&#8221;,&nbsp;</p>



<p>&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&#8220;gateway&#8221;: &#8220;[IP WAN cấu hình SSL VPN]&#8221;,</p>



<p>&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&#8220;vpn_portal_port&#8221;: [port VPN Portal],</p>



<p>&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&#8220;otp&#8221;: false,</p>



<p>&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&#8220;auto_connect_host&#8221;: &#8220;[IP nội bộ đang chạy]&#8221;,</p>



<p>&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&#8220;can_save_credentials&#8221;: true, #user có thể save username/password</p>



<p>&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&#8220;check_remote_availability&#8221;: false,</p>



<p>&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&#8220;run_logon_script&#8221;: false</p>



<p>&nbsp;&nbsp;&nbsp;&nbsp;}</p>



<p>]</p>



<p>Sau đó Lưu file với đuôi .pro</p>



<figure class="wp-block-image size-full"><img decoding="async" src="https://vacif.com/en/wp-content/uploads/sites/3/2024/12/cau-hinh-tu-dong-ket-noi-vpn-sau-khi-khoi-dong-may-tinh.png" alt="" class="wp-image-21180"/></figure>



<p><strong>Bước 2: Import file vào sophos connect client.</strong></p>



<p>Mở Sophos connect client -&gt; Nhấn vào dấu 3 chấm và chọn <strong>Import connection</strong>.</p>



<figure class="wp-block-image"><img decoding="async" src="https://vacif.com/en/wp-content/uploads/sites/3/2024/12/cau-hinh-tu-dong-ket-noi-vpn-sau-khi-khoi-dong-may-tinh-1.png" alt=""/></figure>



<p>Chọn <strong>Connect.</strong></p>



<figure class="wp-block-image"><img decoding="async" src="https://vacif.com/en/wp-content/uploads/sites/3/2024/12/cau-hinh-tu-dong-ket-noi-vpn-sau-khi-khoi-dong-may-tinh-2.png" alt=""/></figure>



<p>Nhập username/password của người dùng và chọn <strong>Save user name and password -&gt;</strong> Nhấn<strong> sign in.</strong></p>



<figure class="wp-block-image"><img decoding="async" src="https://vacif.com/en/wp-content/uploads/sites/3/2024/12/cau-hinh-tu-dong-ket-noi-vpn-sau-khi-khoi-dong-may-tinh-3.png" alt=""/></figure>



<figure class="wp-block-image"><img decoding="async" src="https://vacif.com/en/wp-content/uploads/sites/3/2024/12/cau-hinh-tu-dong-ket-noi-vpn-sau-khi-khoi-dong-may-tinh-4.png" alt=""/></figure>



<figure class="wp-block-image"><img decoding="async" src="https://vacif.com/en/wp-content/uploads/sites/3/2024/12/cau-hinh-tu-dong-ket-noi-vpn-sau-khi-khoi-dong-may-tinh-5.png" alt=""/></figure>
]]></content:encoded>
					
					<wfw:commentRss>https://vacif.com/en/huong-dan-cau-hinh-tu-dong-ket-noi-vpn-sau-khi-khoi-dong-may-tinh/feed/</wfw:commentRss>
			<slash:comments>0</slash:comments>
		
		
			</item>
		<item>
		<title>Sophos Firewall v21: Cải tiến VPN và định tuyến</title>
		<link>https://vacif.com/en/sophos-firewall-v21-cai-tien-vpn-va-dinh-tuyen/</link>
					<comments>https://vacif.com/en/sophos-firewall-v21-cai-tien-vpn-va-dinh-tuyen/#respond</comments>
		
		<dc:creator><![CDATA[Nick Doan]]></dc:creator>
		<pubDate>Tue, 08 Oct 2024 03:21:35 +0000</pubDate>
				<category><![CDATA[Hướng dẫn/Tài liệu]]></category>
		<category><![CDATA[Sophos]]></category>
		<category><![CDATA[VPN]]></category>
		<guid isPermaLink="false">https://thegioifirewall.com/?p=20607</guid>

					<description><![CDATA[Cách tận dụng tối đa các tính năng mới trong Sophos Firewall v21. Được viết bởi Chris McCormack Ngày 23 tháng 9 năm 2024 Sophos Firewall v21 mang đến những cải tiến mới thú vị cho chức năng VPN, xác thực và định tuyến. Cải tiến VPN Cải tiến VPN Site to Site Cải tiến [&#8230;]]]></description>
										<content:encoded><![CDATA[
<figure class="wp-block-image size-large"><img loading="lazy" decoding="async" width="1024" height="573" src="https://uploads.thegioifirewall.com/2024/10/sophos-firewall-v21-cai-tien-vpn-va-dinh-tuyen-1024x573.png" alt="" class="wp-image-20609" srcset="https://vacif.com/en/wp-content/uploads/sites/3/2024/10/sophos-firewall-v21-cai-tien-vpn-va-dinh-tuyen-1024x573.png 1024w, https://vacif.com/en/wp-content/uploads/sites/3/2024/10/sophos-firewall-v21-cai-tien-vpn-va-dinh-tuyen-600x336.png 600w, https://vacif.com/en/wp-content/uploads/sites/3/2024/10/sophos-firewall-v21-cai-tien-vpn-va-dinh-tuyen-300x168.png 300w, https://vacif.com/en/wp-content/uploads/sites/3/2024/10/sophos-firewall-v21-cai-tien-vpn-va-dinh-tuyen-768x430.png 768w, https://vacif.com/en/wp-content/uploads/sites/3/2024/10/sophos-firewall-v21-cai-tien-vpn-va-dinh-tuyen.png 1273w" sizes="auto, (max-width: 1024px) 100vw, 1024px" /></figure>



<p><strong><br></strong>Cách tận dụng tối đa các tính năng mới trong Sophos Firewall v21.</p>



<p>Được viết bởi Chris McCormack</p>



<p><strong>Ngày 23 tháng 9 năm 2024</strong></p>



<p>Sophos Firewall v21 mang đến những cải tiến mới thú vị cho chức năng VPN, xác thực và định tuyến.</p>



<p><strong>Cải tiến VPN</strong></p>



<ul class="wp-block-list">
<li>Tùy chọn kích hoạt và hủy kích hoạt hàng loạt hiện khả dụng cho các kết nối (xem ảnh chụp màn hình bên dưới)</li>



<li>Tính năng lọc nâng cao trên trang quản lý VPN hiện hợp nhất thông tin trên nhiều trang</li>



<li>Tìm kiếm dựa trên giá trị và văn bản miễn phí hiện được hỗ trợ trong cấu hình VPN cho mạng, mạng con, người dùng truy cập từ xa và VPN site-to-site</li>



<li>Đã thêm chế độ xem giao diện XFRM cụ thể vào trang Giao diện để dễ dàng lọc các giao diện RBVPN</li>
</ul>



<figure class="wp-block-image size-large"><img loading="lazy" decoding="async" width="1024" height="369" src="https://uploads.thegioifirewall.com/2024/10/sophos-firewall-v21-cai-tien-vpn-va-dinh-tuyen-1-1024x369.png" alt="" class="wp-image-20610" srcset="https://vacif.com/en/wp-content/uploads/sites/3/2024/10/sophos-firewall-v21-cai-tien-vpn-va-dinh-tuyen-1-1024x369.png 1024w, https://vacif.com/en/wp-content/uploads/sites/3/2024/10/sophos-firewall-v21-cai-tien-vpn-va-dinh-tuyen-1-600x216.png 600w, https://vacif.com/en/wp-content/uploads/sites/3/2024/10/sophos-firewall-v21-cai-tien-vpn-va-dinh-tuyen-1-300x108.png 300w, https://vacif.com/en/wp-content/uploads/sites/3/2024/10/sophos-firewall-v21-cai-tien-vpn-va-dinh-tuyen-1-768x277.png 768w, https://vacif.com/en/wp-content/uploads/sites/3/2024/10/sophos-firewall-v21-cai-tien-vpn-va-dinh-tuyen-1.png 1428w" sizes="auto, (max-width: 1024px) 100vw, 1024px" /></figure>



<p><strong>Cải tiến VPN Site to Site</strong></p>



<ul class="wp-block-list">
<li>Các cổng từ xa dựa trên FQDN đã được tối ưu hóa để cải thiện khả năng mở rộng cho các triển khai phân tán</li>



<li>Chuyển tiếp DHCP qua giao diện XFRM hiện được hỗ trợ cho lưu lượng đến máy chủ DHCP được triển khai phía sau tường lửa từ xa (xem hình minh họa bên dưới)</li>



<li>Việc triển khai RBVPN có thể tăng thời gian hoạt động của giao diện XFRM lên tới 20 lần, giảm thiểu đáng kể sự gián đoạn trong quá trình chuyển đổi đường hầm, chuyển đổi dự phòng HA hoặc khởi động lại</li>
</ul>



<figure class="wp-block-image size-large"><img loading="lazy" decoding="async" width="1024" height="514" src="https://uploads.thegioifirewall.com/2024/10/sophos-firewall-v21-cai-tien-vpn-va-dinh-tuyen-2-1024x514.png" alt="" class="wp-image-20611" srcset="https://vacif.com/en/wp-content/uploads/sites/3/2024/10/sophos-firewall-v21-cai-tien-vpn-va-dinh-tuyen-2-1024x514.png 1024w, https://vacif.com/en/wp-content/uploads/sites/3/2024/10/sophos-firewall-v21-cai-tien-vpn-va-dinh-tuyen-2-600x301.png 600w, https://vacif.com/en/wp-content/uploads/sites/3/2024/10/sophos-firewall-v21-cai-tien-vpn-va-dinh-tuyen-2-300x151.png 300w, https://vacif.com/en/wp-content/uploads/sites/3/2024/10/sophos-firewall-v21-cai-tien-vpn-va-dinh-tuyen-2-768x386.png 768w, https://vacif.com/en/wp-content/uploads/sites/3/2024/10/sophos-firewall-v21-cai-tien-vpn-va-dinh-tuyen-2.png 1428w" sizes="auto, (max-width: 1024px) 100vw, 1024px" /></figure>



<p><strong>Cải tiến xác thực</strong></p>



<ul class="wp-block-list">
<li>Tích hợp Google Workspace thông qua máy khách LDAP và khả năng tương thích SSO của Google Chromebook với các loại máy chủ LDAP cho phép chức năng SSO cho môi trường Google LDAP dành cho Chromebook</li>



<li>Hiệu suất xử lý đăng nhập hàng loạt được cải thiện tới 4 lần đối với Radius SSO, STAS và Synchronized User ID để có thể xử lý hàng nghìn yêu cầu đăng nhập đồng thời ngay cả trong nhiều môi trường SSO (kết hợp STAS, Radius SSO và Synchronized User ID)</li>



<li>Ngoài ra, hỗ trợ đã được thêm vào cho trải nghiệm AD SSO minh bạch khi HSTS được thực thi, cho phép bắt tay Kerberos và NTLM qua HTTP hoặc HTTPS</li>
</ul>



<p><strong>Quản lý tuyến đường tĩnh và động</strong></p>



<ul class="wp-block-list">
<li>Người dùng có thể sao chép các tuyến tĩnh, bật hoặc tắt chúng và thêm mô tả thông qua tùy chọn Quản lý mới cho mỗi tuyến tĩnh trong bảng (xem ảnh chụp màn hình bên dưới)</li>



<li>Hiện tại có tùy chọn tuyến đường blackhole và hỗ trợ đa đường dẫn chi phí bằng nhau (ECMP) để cân bằng tải</li>



<li>Định tuyến động có tùy chọn mới để phân phối lại các tuyến BGP vào OSPFv3</li>



<li>Định tuyến động hiện không có tác động nào trong các tình huống chuyển đổi dự phòng HA</li>
</ul>



<figure class="wp-block-image size-large"><img loading="lazy" decoding="async" width="1024" height="513" src="https://uploads.thegioifirewall.com/2024/10/sophos-firewall-v21-cai-tien-vpn-va-dinh-tuyen-3-1024x513.png" alt="" class="wp-image-20612" srcset="https://vacif.com/en/wp-content/uploads/sites/3/2024/10/sophos-firewall-v21-cai-tien-vpn-va-dinh-tuyen-3-1024x513.png 1024w, https://vacif.com/en/wp-content/uploads/sites/3/2024/10/sophos-firewall-v21-cai-tien-vpn-va-dinh-tuyen-3-600x300.png 600w, https://vacif.com/en/wp-content/uploads/sites/3/2024/10/sophos-firewall-v21-cai-tien-vpn-va-dinh-tuyen-3-300x150.png 300w, https://vacif.com/en/wp-content/uploads/sites/3/2024/10/sophos-firewall-v21-cai-tien-vpn-va-dinh-tuyen-3-768x385.png 768w, https://vacif.com/en/wp-content/uploads/sites/3/2024/10/sophos-firewall-v21-cai-tien-vpn-va-dinh-tuyen-3.png 1430w" sizes="auto, (max-width: 1024px) 100vw, 1024px" /></figure>



<p>Hãy xem video demo ngắn này để biết cách thức hoạt động và cách thiết lập</p>



<figure class="wp-block-embed"><div class="wp-block-embed__wrapper">
https://techvids.sophos.com/watch/nxdUCAMmcdWMWDmTksYa41
</div></figure>



<p>Bắt đầu tận dụng khả năng mới tuyệt vời này trong Sophos Firewall v21 bằng cách tham gia chương trình truy cập sớm (<a href="https://events.sophos.com/events/9496899a-0e84-4fa3-9d8a-07f23841dc1c">https://events.sophos.com/events/9496899a-0e84-4fa3-9d8a-07f23841dc1c</a>) . Chỉ cần đăng ký chương trình, nhấp vào liên kết trong email của bạn để tải xuống gói cập nhật chương trình cơ sở và cài đặt nó trên Sophos Firewall của bạn.</p>
]]></content:encoded>
					
					<wfw:commentRss>https://vacif.com/en/sophos-firewall-v21-cai-tien-vpn-va-dinh-tuyen/feed/</wfw:commentRss>
			<slash:comments>0</slash:comments>
		
		
			</item>
		<item>
		<title>Cách VPN có thể giúp thời gian trực tuyến của bạn trở nên riêng tư và an toàn hơn.</title>
		<link>https://vacif.com/en/cach-vpn-co-the-giup-thoi-gian-truc-tuyen-cua-ban-tro-nen-rieng-tu-va-an-toan-hon/</link>
					<comments>https://vacif.com/en/cach-vpn-co-the-giup-thoi-gian-truc-tuyen-cua-ban-tro-nen-rieng-tu-va-an-toan-hon/#respond</comments>
		
		<dc:creator><![CDATA[Đạt Trịnh]]></dc:creator>
		<pubDate>Wed, 04 Sep 2024 08:07:48 +0000</pubDate>
				<category><![CDATA[Hướng dẫn/Tài liệu]]></category>
		<category><![CDATA[IP]]></category>
		<category><![CDATA[VPN]]></category>
		<guid isPermaLink="false">https://thegioifirewall.com/?p=20286</guid>

					<description><![CDATA[VPN (mạng riêng ảo) là gì? Và làm cách nào mà VPN có thể giúp thời gian trực tuyến của bạn an toàn hơn và cũng riêng tư hơn? Sau đây chúng ta sẽ xem VPN là gì, nó cung cấp những gì và điều đó mang lại lợi ích gì cho bạn. VPN là [&#8230;]]]></description>
										<content:encoded><![CDATA[
<figure class="wp-block-image size-large"><img loading="lazy" decoding="async" width="1024" height="576" src="http://aws.vacif.com/wp-content/uploads/sites/3/2024/09/vpn-thumbnail-1024x576.png" alt="" class="wp-image-20288" srcset="https://vacif.com/en/wp-content/uploads/sites/3/2024/09/vpn-thumbnail-1024x576.png 1024w, https://vacif.com/en/wp-content/uploads/sites/3/2024/09/vpn-thumbnail-600x338.png 600w, https://vacif.com/en/wp-content/uploads/sites/3/2024/09/vpn-thumbnail-300x169.png 300w, https://vacif.com/en/wp-content/uploads/sites/3/2024/09/vpn-thumbnail-768x432.png 768w, https://vacif.com/en/wp-content/uploads/sites/3/2024/09/vpn-thumbnail-1536x864.png 1536w, https://vacif.com/en/wp-content/uploads/sites/3/2024/09/vpn-thumbnail-800x450.png 800w, https://vacif.com/en/wp-content/uploads/sites/3/2024/09/vpn-thumbnail.png 1600w" sizes="auto, (max-width: 1024px) 100vw, 1024px" /></figure>



<p>VPN (mạng riêng ảo) là gì? Và làm cách nào mà VPN có thể giúp thời gian trực tuyến của bạn an toàn hơn và cũng riêng tư hơn? Sau đây chúng ta sẽ xem VPN là gì, nó cung cấp những gì và điều đó mang lại lợi ích gì cho bạn.</p>



<h1 class="wp-block-heading"><strong>VPN là gì và nó bảo vệ tôi như thế nào?</strong></h1>



<p>VPN là một ứng dụng mà bạn cài đặt trên thiết bị của mình để giúp giữ an toàn cho dữ liệu của bạn khi bạn duyệt internet. Khi bạn bật ứng dụng VPN, thiết bị của bạn sẽ tạo kết nối an toàn với máy chủ VPN để định tuyến lưu lượng truy cập internet. An toàn. Điều này giúp hoạt động trực tuyến của bạn được riêng tư trên bất kỳ mạng nào, bảo vệ hoạt động đó khỏi những con mắt tò mò. Vì vậy, khi sử dụng VPN, bạn có thể duyệt web và giao dịch ngân hàng với sự tự tin rằng mật khẩu, thông tin đăng nhập và thông tin tài chính của bạn được bảo mật. Nếu bất kỳ tác nhân độc hại nào cố gắng chặn lưu lượng truy cập web của bạn, họ sẽ chỉ thấy nội dung bị cắt xén nhờ chức năng mã hóa VPN của bạn.</p>



<h1 class="wp-block-heading"><strong>VPN có thay đổi địa chỉ IP của tôi không?</strong></h1>



<p>Mỗi kết nối internet được chỉ định một bộ số duy nhất gọi là địa chỉ IP, gắn liền với thông tin như vị trí địa lý hoặc Nhà cung cấp dịch vụ Internet (ISP). VPN thay thế địa chỉ IP thực của bạn để làm cho có vẻ như bạn đã kết nối với Internet từ vị trí thực của máy chủ VPN chứ không phải từ vị trí thực của bạn. Đây chỉ là một lý do tại sao rất nhiều người sử dụng VPN.</p>



<h1 class="wp-block-heading"><strong>Làm cách nào tôi có thể sử dụng VPN để thay đổi địa chỉ IP của mình?</strong></h1>



<p>Để thay đổi địa chỉ IP, bạn chỉ cần mở ứng dụng VPN, chọn vị trí máy chủ mà bạn muốn kết nối và thế là xong. Bây giờ bạn đang duyệt bằng địa chỉ IP mới. Nếu bạn muốn đảm bảo rằng IP của mình đã thay đổi, hãy mở trình duyệt và tìm kiếm “What’s my IP address” rồi chọn một trong các kết quả.</p>



<p><strong>Khi nào tôi nên sử dụng VPN?</strong></p>



<p>Trường hợp lý tưởng để sử dụng VPN là khi bạn đang sử dụng Wifi công cộng tại sân bay, quán cà phê, khách sạn hoặc bất kỳ nơi nào cung cấp “Wifi miễn phí”. Lý do là vì đây là những mạng mở và bất kỳ tội phạm mạng nào táo bạo đều có thể truy cập vào các mạng này và thu thập thông tin nhạy cảm. Một cuộc khảo sát cho thấy 39% người dùng Internet trên toàn thế giới hiểu Wifi công cộng là không an toàn, tuy nhiên một số người dùng vẫn giao dịch ngân hàng, mua sắm và làm những việc nhạy cảm khác trên Wifi công cộng bất chấp những rủi ro đã được hiểu rõ.</p>



<p>Hơn nữa, bạn có quyền riêng tư của mình để xem xét. Bạn có thể sử dụng VPN để ngăn các nhà quảng cáo theo dõi bạn. Các tìm kiếm bạn thực hiện và các trang web bạn truy cập sẽ không được truy ngược về bạn, điều này có thể ngăn các nhà quảng cáo thu thập thông tin về bạn và thói quen trực tuyến của bạn nói chung. Hơn nữa, một số ISP thu thập lịch sử duyệt web của người dùng và chia sẻ nó với các nhà quảng cáo và các bên thứ ba khác. VPN cũng có thể ngăn chặn kiểu thu thập này.</p>



<h1 class="wp-block-heading"><strong>VPN có thể bảo vệ lịch sử tìm kiếm của tôi không?</strong></h1>



<p>VPN bảo vệ lịch sử tìm kiếm của bạn thông qua kết nối an toàn mà bạn chia sẻ. Khi bạn tìm kiếm một trang web hoặc nhập URL vào thanh điều hướng, thiết bị của bạn sẽ gửi một thứ gọi là yêu cầu DNS, dịch trang web này sang địa chỉ IP của máy chủ web. Đây là cách trình duyệt của bạn có thể tìm thấy trang web và cung cấp nội dung của nó cho bạn. Bằng cách mã hóa các yêu cầu DNS của bạn, VPN có thể ẩn thói quen và lịch sử tìm kiếm của bạn khỏi những người có thể sử dụng thông tin đó như một phần của việc xây dựng hồ sơ về bạn. Loại thông tin này có thể được sử dụng theo nhiều cách khác nhau, từ việc phân phối hợp pháp các quảng cáo được nhắm mục tiêu cho đến kỹ thuật xã hội phức tạp.</p>



<h1 class="wp-block-heading"><strong>VPN và “Chế độ ẩn danh” và “Chế độ riêng tư” trong trình duyệt có giống nhau không?</strong></h1>



<p>Lưu ý rằng VPN khá khác biệt và toàn diện hơn nhiều so với việc sử dụng “Chế độ riêng tư” hoặc “Chế độ ẩn danh” trên trình duyệt của bạn. Các chế độ đó chỉ ẩn lịch sử tìm kiếm cục bộ trên thiết bị của bạn — không phải với những người khác trên internet, như ISP và nhà quảng cáo.</p>



<h1 class="wp-block-heading"><strong>VPN có khiến tôi ẩn danh không?</strong></h1>



<p>Không, VPN không thể khiến bạn ẩn danh. Dù sao thì cũng không hoàn toàn. Chúng giúp bảo mật những gì bạn đang làm nhưng ISP của bạn vẫn biết khi nào bạn sử dụng Internet. Họ không thể biết bạn đang làm gì, bạn truy cập trang web nào hoặc bạn đã ở trên trang web đó bao lâu.</p>



<h1 class="wp-block-heading"><strong>Còn các dịch vụ như Private Relay của Apple thì sao?</strong></h1>



<p>Private Relay của Apple tương tự như VPN ở chỗ nó thay đổi địa chỉ IP của bạn nên các trang web bạn truy cập không thể biết chính xác bạn đang ở đâu. Nó hoạt động trên iOS và Mac như một phần của đăng ký iCloud+. Tuy nhiên, có một điểm khác biệt quan trọng: nó chỉ bảo vệ quyền riêng tư của bạn khi lướt web bằng trình duyệt Safari.</p>



<p>Theo Apple, nó hoạt động như thế này:</p>



<p>Khi Private Relay được bật, yêu cầu của bạn sẽ được gửi qua hai chuyển tiếp internet an toàn, riêng biệt. Địa chỉ IP của bạn được hiển thị với nhà cung cấp mạng của bạn và với trạm chuyển tiếp đầu tiên do Apple vận hành. Bản ghi DNS của bạn được mã hóa nên không bên nào có thể thấy địa chỉ trang web mà bạn đang cố truy cập. Sự chuyển tiếp thứ hai, do nhà cung cấp nội dung bên thứ ba vận hành, tạo địa chỉ IP tạm thời, giải mã tên trang web bạn yêu cầu và kết nối bạn với trang web. Tất cả điều này được thực hiện bằng cách sử dụng các tiêu chuẩn internet mới nhất để duy trì trải nghiệm duyệt web hiệu suất cao đồng thời bảo vệ quyền riêng tư của bạn.</p>



<p>Lưu ý rằng tại thời điểm viết bài này, Apple Private Relay không khả dụng ở tất cả các quốc gia và khu vực. Nếu bạn đi du lịch đến nơi không có Private Relay, nó sẽ tự động tắt và sẽ thông báo cho bạn khi không có và một lần nữa khi nó hoạt động trở lại. Bạn có thể tìm hiểu thêm về nó tại đây và cách bạn có thể kích hoạt nó trên các thiết bị Apple của mình.</p>



<h1 class="wp-block-heading"><strong>Tôi có cần VPN không nếu tôi có Private Relay của Apple?</strong></h1>



<p>Như đã đề cập ở trên, Private Relay chỉ hoạt động với Safari trên iOS và macOS như một phần của đăng ký iCloud+. Ngay cả khi bạn đang sử dụng thiết bị Apple, VPN vẫn là một ý tưởng hay vì nó sẽ bảo vệ thông tin mà thiết bị của bạn gửi bên ngoài Safari — chẳng hạn như mọi thông tin được truyền qua ứng dụng của bạn hoặc bất kỳ trình duyệt nào khác mà bạn có thể sử dụng.</p>



<h1 class="wp-block-heading"><strong>Cách nhận VPN của riêng bạn.</strong></h1>



<p>VPN không giới hạn với mã hóa cấp ngân hàng là một phần trong đăng ký McAfee+ của bạn và cung cấp các lợi ích về bảo mật và quyền riêng tư ở trên với mã hóa cấp ngân hàng. Ngoài ra, nó sẽ tự động bật bất cứ khi nào bạn kết nối với mạng Wi-Fi không bảo mật, giúp bạn không phải phỏng đoán khi nào thực sự cần sử dụng nó.</p>



<p>Nói chung, VPN của chúng tôi thực tế khiến tội phạm mạng hoặc nhà quảng cáo không thể truy cập để những gì bạn thực hiện trực tuyến vẫn ở chế độ riêng tư và an toàn, để bạn có thể tự tin tận hưởng thời gian trực tuyến của mình.</p>



<p>Nguồn: <a href="https://s.net.vn/qs0I">https://s.net.vn/qs0I</a>&nbsp;</p>
]]></content:encoded>
					
					<wfw:commentRss>https://vacif.com/en/cach-vpn-co-the-giup-thoi-gian-truc-tuyen-cua-ban-tro-nen-rieng-tu-va-an-toan-hon/feed/</wfw:commentRss>
			<slash:comments>0</slash:comments>
		
		
			</item>
	</channel>
</rss>
