Skip to main content
Configuring Sophos XG firewall for 8x8
8x8 Support

Configuring Sophos XG firewall for 8x8

Objective

Configuring Sophos XG to work with 8x8

Applies To

Sophos XG 85 also applies to other models.

Procedure  

Before you begin login to the Firewall:

Login to the firewall using any SSH client, we are going to use Putty in this example:

2018-12-10_11h06_55.png

Once you are in Device console mode, type "show advanced-firewall" to view current firewall status:

2018-12-10_11h08_51.png

Here are the items that we need to configure:

Load SIP Module

Type " system system_modules show" to view the current status of the SIP module.

2018-12-10_11h26_38.png

If you see "sip" "unloaded" type in the following command to load SIP:

system system_modules sip load
2018-12-10_11h28_07.png

Run "system system_modules show" to make sure sip module is loaded.

Set UDP timeout

Run command "show advanced-firewall"

         2018-12-10_11h29_35.png

Run command " set advanced-frewall udp-timeout-stream 300 " to set UDP timeout.

Turn off Strict Policy

Run command "set advanced-firewall strict-policy off" to turn off strict policy

 

Add 8x8 subnets to QoS and Firewall

Navigate to Firewall, Enter rule name and set rule position to "Top"

2018-12-10_11h33_31.png

Make sure to Set source zone to "LAN" and Set desitnation Zones to "WAN"

Here is 8x8 technical document link to get 8x8 subnet information.

Additional Information

Known issues with incorrectly configured Sophos:

  • Call Misrouting
  • Call drops
  • Call transfers failing
  • Device connectivity and registration issues 

Sophos devices require the SIP Module to be enabled for SIP traffic to pass correctly on the LAN. While testing the XG85 it was discovered that with SIP Modules disabled the phones would experience issues with: 

How can we help you?

X
  • Was this article helpful?