<?xml version="1.0" encoding="UTF-8"?><rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:wfw="http://wellformedweb.org/CommentAPI/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
	xmlns:slash="http://purl.org/rss/1.0/modules/slash/"
	>

<channel>
	<title>Client Windows &#8211; VACIF</title>
	<atom:link href="https://vacif.com/tag/client-windows/feed/" rel="self" type="application/rss+xml" />
	<link>https://vacif.com</link>
	<description>Đầu tư cho giá trị</description>
	<lastBuildDate>Thu, 07 May 2026 09:06:19 +0000</lastBuildDate>
	<language>vi</language>
	<sy:updatePeriod>
	hourly	</sy:updatePeriod>
	<sy:updateFrequency>
	1	</sy:updateFrequency>
	<generator>https://wordpress.org/?v=6.9.4</generator>

<image>
	<url>https://vacif.com/wp-content/uploads/2024/06/cropped-icon-32x32.png</url>
	<title>Client Windows &#8211; VACIF</title>
	<link>https://vacif.com</link>
	<width>32</width>
	<height>32</height>
</image> 
	<item>
		<title>[Mới Nhất 2026] Sophos Firewall: Hướng Dẫn Cấu Hình SSL VPN Client To Site Với Client Windows Và Sophos Firewall Firmware V22</title>
		<link>https://vacif.com/moi-nhat-2026-sophos-firewall-huong-dan-cau-hinh-ssl-vpn-client-to-site-voi-client-windows-va-sophos-firewall-firmware-v22/</link>
					<comments>https://vacif.com/moi-nhat-2026-sophos-firewall-huong-dan-cau-hinh-ssl-vpn-client-to-site-voi-client-windows-va-sophos-firewall-firmware-v22/#respond</comments>
		
		<dc:creator><![CDATA[Trang Nguyen]]></dc:creator>
		<pubDate>Thu, 07 May 2026 08:39:15 +0000</pubDate>
				<category><![CDATA[Bảo mật]]></category>
		<category><![CDATA[Blog]]></category>
		<category><![CDATA[Firewall]]></category>
		<category><![CDATA[Hướng dẫn]]></category>
		<category><![CDATA[Hướng dẫn/Tài liệu]]></category>
		<category><![CDATA[Sophos]]></category>
		<category><![CDATA[Tài liệu và Hướng dẫn]]></category>
		<category><![CDATA[Client Windows]]></category>
		<category><![CDATA[Endpoint Security]]></category>
		<category><![CDATA[Sophos Firewall]]></category>
		<category><![CDATA[Sophos Firewall Firmware V22]]></category>
		<category><![CDATA[SSL VPN Client To Site]]></category>
		<guid isPermaLink="false">https://vacif.com/?p=29849</guid>

					<description><![CDATA[Bài viết này hướng dẫn cấu hình SSL VPN Client-to-Site trên Sophos Firewall firmware v22, cho phép người dùng từ xa (remote user) sử dụng máy Windows kết nối an toàn vào mạng nội bộ doanh nghiệp thông qua Internet. Sau khi hoàn thành, người dùng có thể: Doanh nghiệp cần: Yêu cầu: Tổng quan [&#8230;]]]></description>
										<content:encoded><![CDATA[<div class="root-eb-toc-71c36 wp-block-essential-blocks-table-of-contents"><div class="eb-parent-wrapper eb-parent-eb-toc-71c36 "><div class="eb-toc-container eb-toc-71c36  eb-toc-is-not-sticky eb-toc-not-collapsible eb-toc-initially-not-collapsed eb-toc-scrollToTop style-1 list-style-none" data-scroll-top="false" data-scroll-top-icon="fas fa-angle-up" data-collapsible="false" data-sticky-hide-mobile="false" data-sticky="false" data-scroll-target="scroll_to_toc" data-copy-link="false" data-editor-type="" data-hide-desktop="false" data-hide-tab="false" data-hide-mobile="false" data-itemCollapsed="false" data-highlight-scroll="false"><div class="eb-toc-header"><h2 class="eb-toc-title">Mục lục</h2></div><div class="eb-toc-wrapper " data-headers="[{&quot;level&quot;:2,&quot;content&quot;:&quot;I - M\u1ee5c \u0111\u00edch b\u00e0i &quot;,&quot;text&quot;:&quot;I - M\u1ee5c \u0111\u00edch b\u00e0i &quot;,&quot;link&quot;:&quot;eb-table-content-0&quot;},{&quot;level&quot;:2,&quot;content&quot;:&quot;II - S\u01a1 \u0111\u1ed3 m\u1ea1ng&quot;,&quot;text&quot;:&quot;II - S\u01a1 \u0111\u1ed3 m\u1ea1ng&quot;,&quot;link&quot;:&quot;eb-table-content-1&quot;},{&quot;level&quot;:2,&quot;content&quot;:&quot;III - T\u00ecnh hu\u1ed1ng c\u1ea5u &quot;,&quot;text&quot;:&quot;III - T\u00ecnh hu\u1ed1ng c\u1ea5u &quot;,&quot;link&quot;:&quot;eb-table-content-2&quot;},{&quot;level&quot;:2,&quot;content&quot;:&quot;IV - C\u00e1c b\u01b0\u1edbc c\u1ea5u h\u00ecnh&quot;,&quot;text&quot;:&quot;IV - C\u00e1c b\u01b0\u1edbc c\u1ea5u h\u00ecnh&quot;,&quot;link&quot;:&quot;eb-table-content-3&quot;},{&quot;level&quot;:2,&quot;content&quot;:&quot;V - H\u01b0\u1edbng d\u1eabn c\u1ea5u h\u00ecnh chi ti\u1ebft&quot;,&quot;text&quot;:&quot;V - H\u01b0\u1edbng d\u1eabn c\u1ea5u h\u00ecnh chi ti\u1ebft&quot;,&quot;link&quot;:&quot;eb-table-content-4&quot;},{&quot;level&quot;:2,&quot;content&quot;:&quot;B\u01b0\u1edbc 1: T\u1ea1o User v\u00e0 Group&quot;,&quot;text&quot;:&quot;B\u01b0\u1edbc 1: T\u1ea1o User v\u00e0 Group&quot;,&quot;link&quot;:&quot;eb-table-content-5&quot;},{&quot;level&quot;:2,&quot;content&quot;:&quot;T\u1ea1o Group&quot;,&quot;text&quot;:&quot;T\u1ea1o Group&quot;,&quot;link&quot;:&quot;eb-table-content-6&quot;},{&quot;level&quot;:2,&quot;content&quot;:&quot;T\u1ea1o User&quot;,&quot;text&quot;:&quot;T\u1ea1o User&quot;,&quot;link&quot;:&quot;eb-table-content-7&quot;},{&quot;level&quot;:2,&quot;content&quot;:&quot;B\u01b0\u1edbc 2: C\u1ea5u h\u00ecnh SSL VPN&quot;,&quot;text&quot;:&quot;B\u01b0\u1edbc 2: C\u1ea5u h\u00ecnh SSL VPN&quot;,&quot;link&quot;:&quot;eb-table-content-8&quot;},{&quot;level&quot;:2,&quot;content&quot;:&quot;B\u01b0\u1edbc 3: C\u1ea5u h\u00ecnh SSL VPN Global Settings&quot;,&quot;text&quot;:&quot;B\u01b0\u1edbc 3: C\u1ea5u h\u00ecnh SSL VPN Global Settings&quot;,&quot;link&quot;:&quot;eb-table-content-9&quot;},{&quot;level&quot;:2,&quot;content&quot;:&quot;B\u01b0\u1edbc 4: T\u1ea1o Firewall Rule cho ph\u00e9p truy c\u1eadp t\u1eeb VPN v\u00e0o v\u00f9ng LAN&quot;,&quot;text&quot;:&quot;B\u01b0\u1edbc 4: T\u1ea1o Firewall Rule cho ph\u00e9p truy c\u1eadp t\u1eeb VPN v\u00e0o v\u00f9ng LAN&quot;,&quot;link&quot;:&quot;eb-table-content-10&quot;},{&quot;level&quot;:2,&quot;content&quot;:&quot;B\u01b0\u1edbc 5: T\u1ea3i VPN Client v\u00e0 file c\u1ea5u h\u00ecnh&quot;,&quot;text&quot;:&quot;B\u01b0\u1edbc 5: T\u1ea3i VPN Client v\u00e0 file c\u1ea5u h\u00ecnh&quot;,&quot;link&quot;:&quot;eb-table-content-11&quot;},{&quot;level&quot;:2,&quot;content&quot;:&quot;B\u01b0\u1edbc 6: C\u00e0i \u0111\u1eb7t ph\u1ea7n m\u1ec1m Sophos Connect&quot;,&quot;text&quot;:&quot;B\u01b0\u1edbc 6: C\u00e0i \u0111\u1eb7t ph\u1ea7n m\u1ec1m Sophos Connect&quot;,&quot;link&quot;:&quot;eb-table-content-12&quot;},{&quot;level&quot;:2,&quot;content&quot;:&quot;B\u01b0\u1edbc 7: Import c\u1ea5u h\u00ecnh VPN v\u00e0o Sophos Connect&quot;,&quot;text&quot;:&quot;B\u01b0\u1edbc 7: Import c\u1ea5u h\u00ecnh VPN v\u00e0o Sophos Connect&quot;,&quot;link&quot;:&quot;eb-table-content-13&quot;},{&quot;level&quot;:2,&quot;content&quot;:&quot;B\u01b0\u1edbc 8: Test k\u1ebft n\u1ed1i SSL VPN&quot;,&quot;text&quot;:&quot;B\u01b0\u1edbc 8: Test k\u1ebft n\u1ed1i SSL VPN&quot;,&quot;link&quot;:&quot;eb-table-content-14&quot;}]" data-visible="[true,true,true,true,true,true]" data-delete-headers="[{&quot;label&quot;:&quot;I - M\u1ee5c \u0111\u00edch b\u00e0i &quot;,&quot;value&quot;:&quot;i-m\u1ee5c-\u0111\u00edch-b\u00e0i&quot;,&quot;isDelete&quot;:false},{&quot;label&quot;:&quot;II - S\u01a1 \u0111\u1ed3 m\u1ea1ng&quot;,&quot;value&quot;:&quot;ii-s\u01a1-\u0111\u1ed3-m\u1ea1ng&quot;,&quot;isDelete&quot;:false},{&quot;label&quot;:&quot;III - T\u00ecnh hu\u1ed1ng c\u1ea5u &quot;,&quot;value&quot;:&quot;iii-t\u00ecnh-hu\u1ed1ng-c\u1ea5u&quot;,&quot;isDelete&quot;:false},{&quot;label&quot;:&quot;IV - C\u00e1c b\u01b0\u1edbc c\u1ea5u h\u00ecnh&quot;,&quot;value&quot;:&quot;iv-c\u00e1c-b\u01b0\u1edbc-c\u1ea5u-h\u00ecnh&quot;,&quot;isDelete&quot;:false},{&quot;label&quot;:&quot;V - H\u01b0\u1edbng d\u1eabn c\u1ea5u h\u00ecnh chi ti\u1ebft&quot;,&quot;value&quot;:&quot;v-h\u01b0\u1edbng-d\u1eabn-c\u1ea5u-h\u00ecnh-chi-ti\u1ebft&quot;,&quot;isDelete&quot;:false},{&quot;label&quot;:&quot;B\u01b0\u1edbc 1: T\u1ea1o User v\u00e0 Group&quot;,&quot;value&quot;:&quot;b\u01b0\u1edbc-1-t\u1ea1o-user-v\u00e0-group&quot;,&quot;isDelete&quot;:true},{&quot;label&quot;:&quot;T\u1ea1o Group&quot;,&quot;value&quot;:&quot;t\u1ea1o-group&quot;,&quot;isDelete&quot;:true},{&quot;label&quot;:&quot;T\u1ea1o User&quot;,&quot;value&quot;:&quot;t\u1ea1o-user&quot;,&quot;isDelete&quot;:true},{&quot;label&quot;:&quot;B\u01b0\u1edbc 2: C\u1ea5u h\u00ecnh SSL VPN&quot;,&quot;value&quot;:&quot;b\u01b0\u1edbc-2-c\u1ea5u-h\u00ecnh-ssl-vpn&quot;,&quot;isDelete&quot;:true},{&quot;label&quot;:&quot;B\u01b0\u1edbc 3: C\u1ea5u h\u00ecnh SSL VPN Global Settings&quot;,&quot;value&quot;:&quot;b\u01b0\u1edbc-3-c\u1ea5u-h\u00ecnh-ssl-vpn-global-settings&quot;,&quot;isDelete&quot;:true},{&quot;label&quot;:&quot;B\u01b0\u1edbc 4: T\u1ea1o Firewall Rule cho ph\u00e9p truy c\u1eadp t\u1eeb VPN v\u00e0o v\u00f9ng LAN&quot;,&quot;value&quot;:&quot;b\u01b0\u1edbc-4-t\u1ea1o-firewall-rule-cho-ph\u00e9p-truy-c\u1eadp-t\u1eeb-vpn-v\u00e0o-v\u00f9ng-lan&quot;,&quot;isDelete&quot;:true},{&quot;label&quot;:&quot;B\u01b0\u1edbc 5: T\u1ea3i VPN Client v\u00e0 file c\u1ea5u h\u00ecnh&quot;,&quot;value&quot;:&quot;b\u01b0\u1edbc-5-t\u1ea3i-vpn-client-v\u00e0-file-c\u1ea5u-h\u00ecnh&quot;,&quot;isDelete&quot;:true},{&quot;label&quot;:&quot;B\u01b0\u1edbc 6: C\u00e0i \u0111\u1eb7t ph\u1ea7n m\u1ec1m Sophos Connect&quot;,&quot;value&quot;:&quot;b\u01b0\u1edbc-6-c\u00e0i-\u0111\u1eb7t-ph\u1ea7n-m\u1ec1m-sophos-connect&quot;,&quot;isDelete&quot;:true},{&quot;label&quot;:&quot;B\u01b0\u1edbc 7: Import c\u1ea5u h\u00ecnh VPN v\u00e0o Sophos Connect&quot;,&quot;value&quot;:&quot;b\u01b0\u1edbc-7-import-c\u1ea5u-h\u00ecnh-vpn-v\u00e0o-sophos-connect&quot;,&quot;isDelete&quot;:true},{&quot;label&quot;:&quot;B\u01b0\u1edbc 8: Test k\u1ebft n\u1ed1i SSL VPN&quot;,&quot;value&quot;:&quot;b\u01b0\u1edbc-8-test-k\u1ebft-n\u1ed1i-ssl-vpn&quot;,&quot;isDelete&quot;:true}]" data-smooth="true" data-top-offset=""><div class="eb-toc__list-wrap"><ul class='eb-toc__list'><li><a href="#eb-table-content-0">I &#8211; Mục đích bài </a><li><a href="#eb-table-content-1">II &#8211; Sơ đồ mạng</a><li><a href="#eb-table-content-2">III &#8211; Tình huống cấu </a><li><a href="#eb-table-content-3">IV &#8211; Các bước cấu hình</a><li><a href="#eb-table-content-4">V &#8211; Hướng dẫn cấu hình chi tiết</a></ul></div></div></div></div></div>


<div class="wp-block-essential-blocks-advanced-heading  root-eb-advance-heading-oiy73"><div class="eb-parent-wrapper eb-parent-eb-advance-heading-oiy73 "><div class="eb-advance-heading-wrapper eb-advance-heading-oiy73 button-1 undefined" data-id="eb-advance-heading-oiy73"><h2 class="eb-ah-title"><span class="first-title">I &#8211; Mục đích bài </span></h2></div></div></div>



<p>Bài viết này hướng dẫn cấu hình <strong>SSL VPN Client-to-Site</strong> trên Sophos Firewall firmware v22, cho phép người dùng từ xa (remote user) sử dụng máy Windows kết nối an toàn vào mạng nội bộ doanh nghiệp thông qua Internet.</p>



<p>Sau khi hoàn thành, người dùng có thể:</p>



<ul class="wp-block-list">
<li>Truy cập tài nguyên nội bộ (Server, NAS, RDP, Web nội bộ…)</li>



<li>Mã hóa kết nối đảm bảo an toàn dữ liệu</li>



<li>Xác thực bằng tài khoản người dùng trên Sophos Firewall</li>
</ul>



<div class="wp-block-essential-blocks-advanced-heading  root-eb-advance-heading-5y1xh"><div class="eb-parent-wrapper eb-parent-eb-advance-heading-5y1xh "><div class="eb-advance-heading-wrapper eb-advance-heading-5y1xh button-1 undefined" data-id="eb-advance-heading-5y1xh"><h2 class="eb-ah-title"><span class="first-title">II &#8211; Sơ đồ mạng</span></h2></div></div></div>



<figure class="wp-block-image size-large"><img fetchpriority="high" decoding="async" width="1024" height="422" src="https://vacif.com/wp-content/uploads/2026/05/image-94-1024x422.png" alt="" class="wp-image-29853" srcset="https://vacif.com/wp-content/uploads/2026/05/image-94-1024x422.png 1024w, https://vacif.com/wp-content/uploads/2026/05/image-94-300x124.png 300w, https://vacif.com/wp-content/uploads/2026/05/image-94-768x316.png 768w, https://vacif.com/wp-content/uploads/2026/05/image-94-1536x633.png 1536w, https://vacif.com/wp-content/uploads/2026/05/image-94-2048x843.png 2048w" sizes="(max-width: 1024px) 100vw, 1024px" /></figure>



<div class="wp-block-essential-blocks-advanced-heading  root-eb-advance-heading-dpdzc"><div class="eb-parent-wrapper eb-parent-eb-advance-heading-dpdzc "><div class="eb-advance-heading-wrapper eb-advance-heading-dpdzc button-1 undefined" data-id="eb-advance-heading-dpdzc"><h2 class="eb-ah-title"><span class="first-title">III &#8211; Tình huống cấu </span></h2></div></div></div>



<p>Doanh nghiệp cần:</p>



<ul class="wp-block-list">
<li>Nhân viên truy cập từ xa (WFH)</li>



<li>Kết nối vào LAN nội bộ</li>



<li>Đảm bảo bảo mật và kiểm soát truy cập</li>
</ul>



<p>Yêu cầu:</p>



<ul class="wp-block-list">
<li>Chỉ user hợp lệ mới được VPN</li>



<li>Truy cập server nội bộ (RDP, File Server)</li>



<li>Có thể mở rộng MFA sau này</li>
</ul>



<div class="wp-block-essential-blocks-advanced-heading  root-eb-advance-heading-qtw7f"><div class="eb-parent-wrapper eb-parent-eb-advance-heading-qtw7f "><div class="eb-advance-heading-wrapper eb-advance-heading-qtw7f button-1 undefined" data-id="eb-advance-heading-qtw7f"><h2 class="eb-ah-title"><span class="first-title">IV &#8211; Các bước cấu hình</span></h2></div></div></div>



<p>Tổng quan các bước:</p>



<ol class="wp-block-list">
<li>Tạo User và Group</li>



<li>Cấu hình SSL VPN Profile</li>



<li>Cấu hình SSL VPN Global Settings</li>



<li>Tạo Firewall Rule cho phép truy cập từ VPN vào vùng LAN</li>



<li>Tải VPN Client và file cấu hình</li>



<li>Cài đặt phần mềm Sophos Connect</li>



<li>Import cấu hình VPN vào Sophos Connect</li>



<li>Test kết nối SSL VPN</li>
</ol>



<div class="wp-block-essential-blocks-advanced-heading  root-eb-advance-heading-3sz4j"><div class="eb-parent-wrapper eb-parent-eb-advance-heading-3sz4j "><div class="eb-advance-heading-wrapper eb-advance-heading-3sz4j button-1 undefined" data-id="eb-advance-heading-3sz4j"><h2 class="eb-ah-title"><span class="first-title">V &#8211; Hướng dẫn cấu hình chi tiết</span></h2></div></div></div>



<div class="wp-block-essential-blocks-advanced-heading  root-eb-advance-heading-hbhxd"><div class="eb-parent-wrapper eb-parent-eb-advance-heading-hbhxd "><div class="eb-advance-heading-wrapper eb-advance-heading-hbhxd button-1 undefined" data-id="eb-advance-heading-hbhxd"><h2 class="eb-ah-title"><span class="first-title">Bước 1: Tạo User và Group</span></h2></div></div></div>



<div class="wp-block-essential-blocks-advanced-heading  root-eb-advance-heading-3o54l"><div class="eb-parent-wrapper eb-parent-eb-advance-heading-3o54l "><div class="eb-advance-heading-wrapper eb-advance-heading-3o54l button-1 undefined" data-id="eb-advance-heading-3o54l"><h2 class="eb-ah-title"><span class="first-title">Tạo Group</span></h2></div></div></div>



<p>Authentication → Groups → Add</p>



<ul class="wp-block-list">
<li>Group Name: VACIF GROUP</li>



<li>Surfing quota: Unlimited Internet Access</li>



<li>Access time: Allowed all the time</li>
</ul>



<div class="wp-block-essential-blocks-advanced-image  root-eb-advanced-image-g6bpo"><div class="eb-parent-wrapper eb-parent-eb-advanced-image-g6bpo "><figure class="eb-advanced-image-wrapper eb-advanced-image-g6bpo no-effect" data-id="eb-advanced-image-g6bpo"><div class="eb-image-wrapper"><div class="eb-image-wrapper-inner eb-img-style-square"><img decoding="async" src="https://vacif.com/wp-content/uploads/2026/05/Picture1-2-scaled.png" alt=""/></div></div></figure></div></div>



<div class="wp-block-essential-blocks-advanced-heading  root-eb-advance-heading-0i5mh"><div class="eb-parent-wrapper eb-parent-eb-advance-heading-0i5mh "><div class="eb-advance-heading-wrapper eb-advance-heading-0i5mh button-1 undefined" data-id="eb-advance-heading-0i5mh"><h2 class="eb-ah-title"><span class="first-title">Tạo User</span></h2></div></div></div>



<p>Authentication → Users → Add</p>



<ul class="wp-block-list">
<li>Username: VACIF</li>



<li>Password: ****</li>



<li>Group: VACIF GROUP</li>
</ul>



<div class="wp-block-essential-blocks-advanced-image  root-eb-advanced-image-lqq0z"><div class="eb-parent-wrapper eb-parent-eb-advanced-image-lqq0z "><figure class="eb-advanced-image-wrapper eb-advanced-image-lqq0z no-effect" data-id="eb-advanced-image-lqq0z"><div class="eb-image-wrapper"><div class="eb-image-wrapper-inner eb-img-style-square"><img decoding="async" src="https://vacif.com/wp-content/uploads/2026/05/Picture3.png" alt=""/></div></div></figure></div></div>



<div class="wp-block-essential-blocks-advanced-heading  root-eb-advance-heading-ahlmg"><div class="eb-parent-wrapper eb-parent-eb-advance-heading-ahlmg "><div class="eb-advance-heading-wrapper eb-advance-heading-ahlmg button-1 undefined" data-id="eb-advance-heading-ahlmg"><h2 class="eb-ah-title"><span class="first-title">Bước 2: Cấu hình SSL VPN</span></h2></div></div></div>



<p>VPN → Remote Access VPN → SSL VPN → Add → Configure manually</p>



<div class="wp-block-essential-blocks-advanced-image  root-eb-advanced-image-65sev"><div class="eb-parent-wrapper eb-parent-eb-advanced-image-65sev "><figure class="eb-advanced-image-wrapper eb-advanced-image-65sev no-effect" data-id="eb-advanced-image-65sev"><div class="eb-image-wrapper"><div class="eb-image-wrapper-inner eb-img-style-square"><img decoding="async" src="https://vacif.com/wp-content/uploads/2026/05/Picture4-scaled.png" alt=""/></div></div></figure></div></div>



<figure class="wp-block-image size-large"><img decoding="async" width="1024" height="565" src="https://vacif.com/wp-content/uploads/2026/05/image-98-1024x565.png" alt="" class="wp-image-29860" srcset="https://vacif.com/wp-content/uploads/2026/05/image-98-1024x565.png 1024w, https://vacif.com/wp-content/uploads/2026/05/image-98-300x166.png 300w, https://vacif.com/wp-content/uploads/2026/05/image-98-768x424.png 768w, https://vacif.com/wp-content/uploads/2026/05/image-98-1536x847.png 1536w, https://vacif.com/wp-content/uploads/2026/05/image-98-2048x1130.png 2048w" sizes="(max-width: 1024px) 100vw, 1024px" /></figure>



<p><strong>Thực hiện cấu hình các thông số sau:</strong></p>



<ul class="wp-block-list">
<li><strong>Name:</strong> Đặt tên cho cấu hình SSL VPN (ví dụ: SSLVPN-IT)</li>



<li><strong>Policy members: </strong>Chọn user hoặc group đã tạo trước đó (ví dụ: vpnuser01 hoặc SSLVPN-Users)</li>



<li><strong>Use as default gateway:</strong>
<ul class="wp-block-list">
<li><strong>Bật</strong> khi muốn toàn bộ lưu lượng của VPN Client đi qua Sophos Firewall (Full Tunnel)</li>



<li><strong>Không bật </strong>khi chỉ định tuyến lưu lượng truy cập vào mạng nội bộ qua VPN (Split Tunnel)</li>
</ul>
</li>



<li><strong>Permitted network resources (IPv4)</strong>: Chọn các dải mạng nội bộ (LAN) mà người dùng VPN được phép truy cập (ví dụ: 10.10.10.0/24)</li>



<li><strong>Disconnect idle clients: </strong>Tự động ngắt kết nối VPN khi người dùng không có hoạt động trong một khoảng thời gian nhất định</li>
</ul>



<p>→ Nhấn <strong>Apply </strong>để lưu cấu hình</p>



<div class="wp-block-essential-blocks-advanced-image  root-eb-advanced-image-lii7j"><div class="eb-parent-wrapper eb-parent-eb-advanced-image-lii7j "><figure class="eb-advanced-image-wrapper eb-advanced-image-lii7j no-effect" data-id="eb-advanced-image-lii7j"><div class="eb-image-wrapper"><div class="eb-image-wrapper-inner eb-img-style-square"><img decoding="async" src="https://vacif.com/wp-content/uploads/2026/05/Picture5.png" alt=""/></div></div></figure></div></div>



<div class="wp-block-essential-blocks-advanced-heading  root-eb-advance-heading-886cg"><div class="eb-parent-wrapper eb-parent-eb-advance-heading-886cg "><div class="eb-advance-heading-wrapper eb-advance-heading-886cg button-1 undefined" data-id="eb-advance-heading-886cg"><h2 class="eb-ah-title"><span class="first-title">Bước 3: Cấu hình SSL VPN Global Settings</span></h2></div></div></div>



<p>VPN → Remote Access VPN → SSL VPN → Global Settings</p>



<ul class="wp-block-list">
<li><strong>Protocol: </strong>Chọn UDP để tối ưu hiệu suất và giảm độ trễ khi kết nối VPN</li>



<li><strong>SSL server certificate: </strong>Giữ nguyên ApplianceCertificate (chứng chỉ mặc định của thiết bị)</li>



<li><strong>Override hostname:</strong> Nhập địa chỉ IP WAN hoặc tên miền mà người dùng VPN sẽ sử dụng để kết nối (ví dụ: 123.20.173.178 hoặc vpn.company.com)</li>



<li><strong>Port:</strong> Giữ mặc định <strong>8443</strong> hoặc thay đổi nếu có yêu cầu riêng (Ở đây mình đặt 10443)</li>



<li><strong>Assign IPv4 addresses: </strong>Khai báo dải IP cấp phát cho VPN Client <em>(ví dụ: </em><em>10.121.10.0/24</em><em>)</em></li>



<li><strong>IPv4 DNS: </strong>Cấu hình DNS để client có thể phân giải tên miền khi kết nối VPN <em>(ví dụ: </em><em>8.8.8.8</em><em>, </em><em>1.1.1.1</em><em> hoặc DNS nội bộ)</em></li>



<li><strong>Disconnect dead peer after: </strong>Thiết lập thời gian (giây) để tự động ngắt kết nối khi client không phản hồi</li>



<li><strong>Disconnect idle peer after: </strong>Thiết lập thời gian ngắt kết nối khi người dùng không có hoạt động Có thể để trống &#8211; nên để trống nếu không giới hạn</li>
</ul>



<p>→ Nhấn <strong>Apply </strong>để lưu cấu hình</p>



<div class="wp-block-essential-blocks-advanced-image  root-eb-advanced-image-qainb"><div class="eb-parent-wrapper eb-parent-eb-advanced-image-qainb "><figure class="eb-advanced-image-wrapper eb-advanced-image-qainb no-effect" data-id="eb-advanced-image-qainb"><div class="eb-image-wrapper"><div class="eb-image-wrapper-inner eb-img-style-square"><img decoding="async" src="https://vacif.com/wp-content/uploads/2026/05/Picture6.png" alt=""/></div></div></figure></div></div>



<div class="wp-block-essential-blocks-advanced-heading  root-eb-advance-heading-k7b8x"><div class="eb-parent-wrapper eb-parent-eb-advance-heading-k7b8x "><div class="eb-advance-heading-wrapper eb-advance-heading-k7b8x button-1 undefined" data-id="eb-advance-heading-k7b8x"><h2 class="eb-ah-title"><span class="first-title">Bước 4: Tạo Firewall Rule cho phép truy cập từ VPN vào vùng LAN</span></h2></div></div></div>



<p>Rules and Policies → Firewall Rules</p>



<div class="wp-block-essential-blocks-advanced-image  root-eb-advanced-image-ybbxr"><div class="eb-parent-wrapper eb-parent-eb-advanced-image-ybbxr "><figure class="eb-advanced-image-wrapper eb-advanced-image-ybbxr no-effect" data-id="eb-advanced-image-ybbxr"><div class="eb-image-wrapper"><div class="eb-image-wrapper-inner eb-img-style-square"><img decoding="async" src="https://vacif.com/wp-content/uploads/2026/05/Picture7-scaled.png" alt=""/></div></div></figure></div></div>



<p><strong>Thực hiện cấu hình các thông số sau:</strong></p>



<figure class="wp-block-table is-style-stripes"><table class="has-fixed-layout"><tbody><tr><td><strong>Mục cấu hình</strong></td><td><strong>Giá trị đề xuất</strong></td></tr><tr><td>Rule Name</td><td>VACIF RULE VPN</td></tr><tr><td>Action</td><td>Accept</td></tr><tr><td>Log firewal traffic</td><td>On</td></tr><tr><td>Source zone</td><td>VPN</td></tr><tr><td>Source networks and devices</td><td>Any</td></tr><tr><td>During scheduled time</td><td>All the time</td></tr><tr><td>Destination zones</td><td>LAN</td></tr><tr><td>Destination networks</td><td>Lớp mạng local bạn muốn truy cập</td></tr><tr><td>Services</td><td>Any</td></tr></tbody></table></figure>



<p>→ Nhấn <strong>Save </strong>để lưu cấu hình</p>



<div class="wp-block-essential-blocks-advanced-image  root-eb-advanced-image-idgle"><div class="eb-parent-wrapper eb-parent-eb-advanced-image-idgle "><figure class="eb-advanced-image-wrapper eb-advanced-image-idgle no-effect" data-id="eb-advanced-image-idgle"><div class="eb-image-wrapper"><div class="eb-image-wrapper-inner eb-img-style-square"><img decoding="async" src="https://vacif.com/wp-content/uploads/2026/05/Picture9.png" alt=""/></div></div></figure></div></div>



<div class="wp-block-essential-blocks-advanced-heading  root-eb-advance-heading-0z6tv"><div class="eb-parent-wrapper eb-parent-eb-advance-heading-0z6tv "><div class="eb-advance-heading-wrapper eb-advance-heading-0z6tv button-1 undefined" data-id="eb-advance-heading-0z6tv"><h2 class="eb-ah-title"><span class="first-title">Bước 5: Tải VPN Client và file cấu hình</span></h2></div></div></div>



<p>Để biết được port VPN là bao nhiêu thì bạn cần phải vào:</p>



<p>Administrator → Admin and user settings</p>



<div class="wp-block-essential-blocks-advanced-image  root-eb-advanced-image-jyd90"><div class="eb-parent-wrapper eb-parent-eb-advanced-image-jyd90 "><figure class="eb-advanced-image-wrapper eb-advanced-image-jyd90 no-effect" data-id="eb-advanced-image-jyd90"><div class="eb-image-wrapper"><div class="eb-image-wrapper-inner eb-img-style-square"><img decoding="async" src="https://vacif.com/wp-content/uploads/2026/05/Picture10-scaled.png" alt=""/></div></div></figure></div></div>



<ul class="wp-block-list">
<li>Tiếp theo, truy cập <strong>VPN Portal</strong> bằng trình duyệt: https://&lt;WAN-IP hoặc tên miền&gt;:8443</li>



<li>Đăng nhập bằng tài khoản VPN mà bạn đã tạo trước đó.</li>
</ul>



<figure class="wp-block-image size-full"><img decoding="async" width="2560" height="1477" src="https://vacif.com/wp-content/uploads/2026/05/image-100-scaled.png" alt="" class="wp-image-29868" srcset="https://vacif.com/wp-content/uploads/2026/05/image-100-scaled.png 2560w, https://vacif.com/wp-content/uploads/2026/05/image-100-300x173.png 300w, https://vacif.com/wp-content/uploads/2026/05/image-100-1024x591.png 1024w, https://vacif.com/wp-content/uploads/2026/05/image-100-768x443.png 768w, https://vacif.com/wp-content/uploads/2026/05/image-100-1536x886.png 1536w, https://vacif.com/wp-content/uploads/2026/05/image-100-2048x1181.png 2048w" sizes="(max-width: 2560px) 100vw, 2560px" /></figure>



<p>Tại giao diện Portal:</p>



<ul class="wp-block-list">
<li>Nhấn <strong>Download for Windows</strong> trong mục <strong>Sophos Connect client</strong> để tải phần mềm</li>



<li>Nhấn <strong>Download for Windows, macOS, Linux</strong> trong mục <strong>VPN configuration</strong> để tải file cấu hình SSL VPN (.ovpn)</li>
</ul>



<figure class="wp-block-image size-full"><img loading="lazy" decoding="async" width="1643" height="851" src="https://vacif.com/wp-content/uploads/2026/05/Picture12.png" alt="" class="wp-image-29869" srcset="https://vacif.com/wp-content/uploads/2026/05/Picture12.png 1643w, https://vacif.com/wp-content/uploads/2026/05/Picture12-300x155.png 300w, https://vacif.com/wp-content/uploads/2026/05/Picture12-1024x530.png 1024w, https://vacif.com/wp-content/uploads/2026/05/Picture12-768x398.png 768w, https://vacif.com/wp-content/uploads/2026/05/Picture12-1536x796.png 1536w" sizes="auto, (max-width: 1643px) 100vw, 1643px" /></figure>



<div class="wp-block-essential-blocks-advanced-heading  root-eb-advance-heading-dfep1"><div class="eb-parent-wrapper eb-parent-eb-advance-heading-dfep1 "><div class="eb-advance-heading-wrapper eb-advance-heading-dfep1 button-1 undefined" data-id="eb-advance-heading-dfep1"><h2 class="eb-ah-title"><span class="first-title">Bước 6: Cài đặt phần mềm Sophos Connect</span></h2></div></div></div>



<ul class="wp-block-list">
<li>Chạy file cài đặt: SophosConnect_&lt;version&gt;.exe</li>



<li>Tại màn hình cài đặt: Tick chọn “I accept the Sophos End User License Agreement and acknowledge the Sophos Privacy Policy”</li>
</ul>



<figure class="wp-block-image size-full"><img loading="lazy" decoding="async" width="975" height="556" src="https://vacif.com/wp-content/uploads/2026/05/image-101.png" alt="" class="wp-image-29870" srcset="https://vacif.com/wp-content/uploads/2026/05/image-101.png 975w, https://vacif.com/wp-content/uploads/2026/05/image-101-300x171.png 300w, https://vacif.com/wp-content/uploads/2026/05/image-101-768x438.png 768w" sizes="auto, (max-width: 975px) 100vw, 975px" /></figure>



<div class="wp-block-essential-blocks-advanced-heading  root-eb-advance-heading-iasma"><div class="eb-parent-wrapper eb-parent-eb-advance-heading-iasma "><div class="eb-advance-heading-wrapper eb-advance-heading-iasma button-1 undefined" data-id="eb-advance-heading-iasma"><h2 class="eb-ah-title"><span class="first-title">Bước 7: Import cấu hình VPN vào Sophos Connect</span></h2></div></div></div>



<ul class="wp-block-list">
<li>Mở phần mềm <strong>Sophos Connect</strong></li>



<li>Tại giao diện chính: Nhấn <strong>Import connection </strong></li>



<li>Chọn file cấu hình đã tải: sslvpn-vacif-client-config.ovpn</li>



<li>Sau khi import thành công: Kết nối VPN sẽ hiển thị trong danh sách</li>
</ul>



<figure class="wp-block-image size-full"><img loading="lazy" decoding="async" width="744" height="422" src="https://vacif.com/wp-content/uploads/2026/05/image-102.png" alt="" class="wp-image-29871" srcset="https://vacif.com/wp-content/uploads/2026/05/image-102.png 744w, https://vacif.com/wp-content/uploads/2026/05/image-102-300x170.png 300w" sizes="auto, (max-width: 744px) 100vw, 744px" /></figure>



<figure class="wp-block-image size-full"><img loading="lazy" decoding="async" width="967" height="726" src="https://vacif.com/wp-content/uploads/2026/05/image-103.png" alt="" class="wp-image-29872" srcset="https://vacif.com/wp-content/uploads/2026/05/image-103.png 967w, https://vacif.com/wp-content/uploads/2026/05/image-103-300x225.png 300w, https://vacif.com/wp-content/uploads/2026/05/image-103-768x577.png 768w" sizes="auto, (max-width: 967px) 100vw, 967px" /></figure>



<figure class="wp-block-image size-full"><img loading="lazy" decoding="async" width="726" height="764" src="https://vacif.com/wp-content/uploads/2026/05/image-104.png" alt="" class="wp-image-29873" srcset="https://vacif.com/wp-content/uploads/2026/05/image-104.png 726w, https://vacif.com/wp-content/uploads/2026/05/image-104-285x300.png 285w" sizes="auto, (max-width: 726px) 100vw, 726px" /></figure>



<figure class="wp-block-image size-full"><img loading="lazy" decoding="async" width="881" height="890" src="https://vacif.com/wp-content/uploads/2026/05/image-105.png" alt="" class="wp-image-29874" srcset="https://vacif.com/wp-content/uploads/2026/05/image-105.png 881w, https://vacif.com/wp-content/uploads/2026/05/image-105-297x300.png 297w, https://vacif.com/wp-content/uploads/2026/05/image-105-768x776.png 768w" sizes="auto, (max-width: 881px) 100vw, 881px" /></figure>



<div class="wp-block-essential-blocks-advanced-heading  root-eb-advance-heading-0mezb"><div class="eb-parent-wrapper eb-parent-eb-advance-heading-0mezb "><div class="eb-advance-heading-wrapper eb-advance-heading-0mezb button-1 undefined" data-id="eb-advance-heading-0mezb"><h2 class="eb-ah-title"><span class="first-title">Bước 8: Test kết nối SSL VPN</span></h2></div></div></div>



<p>Lúc này bạn có thể truy cập vào trong lớp mạng LAN nội bộ đã cấu hình. Ngoài ra bạn có thể vào mục Current activities để kiểm tra xem user nào đang đăng nhập SSL VPN.</p>



<figure class="wp-block-image size-full"><img loading="lazy" decoding="async" width="2272" height="1402" src="https://vacif.com/wp-content/uploads/2026/05/image-107.png" alt="" class="wp-image-29876" srcset="https://vacif.com/wp-content/uploads/2026/05/image-107.png 2272w, https://vacif.com/wp-content/uploads/2026/05/image-107-300x185.png 300w, https://vacif.com/wp-content/uploads/2026/05/image-107-1024x632.png 1024w, https://vacif.com/wp-content/uploads/2026/05/image-107-768x474.png 768w, https://vacif.com/wp-content/uploads/2026/05/image-107-1536x948.png 1536w, https://vacif.com/wp-content/uploads/2026/05/image-107-2048x1264.png 2048w" sizes="auto, (max-width: 2272px) 100vw, 2272px" /></figure>



<figure class="wp-block-image size-full"><img loading="lazy" decoding="async" width="2560" height="1198" src="https://vacif.com/wp-content/uploads/2026/05/image-108-scaled.png" alt="" class="wp-image-29877" srcset="https://vacif.com/wp-content/uploads/2026/05/image-108-scaled.png 2560w, https://vacif.com/wp-content/uploads/2026/05/image-108-300x140.png 300w, https://vacif.com/wp-content/uploads/2026/05/image-108-1024x479.png 1024w, https://vacif.com/wp-content/uploads/2026/05/image-108-768x359.png 768w, https://vacif.com/wp-content/uploads/2026/05/image-108-1536x719.png 1536w, https://vacif.com/wp-content/uploads/2026/05/image-108-2048x958.png 2048w" sizes="auto, (max-width: 2560px) 100vw, 2560px" /></figure>
]]></content:encoded>
					
					<wfw:commentRss>https://vacif.com/moi-nhat-2026-sophos-firewall-huong-dan-cau-hinh-ssl-vpn-client-to-site-voi-client-windows-va-sophos-firewall-firmware-v22/feed/</wfw:commentRss>
			<slash:comments>0</slash:comments>
		
		
			</item>
	</channel>
</rss>
