Sophos XG Firewall Web Interface Reference and Admin Guide v16.5

Add to My manuals
627 Pages

advertisement

Sophos XG Firewall Web Interface Reference and Admin Guide v16.5 | Manualzz

Backup & Firmware

Backup & Firmware provides following options:

Backup & Restore

: Backup and restore system data.

API

: Application Programming Interface (API) allows third party applications to communicate with the device.

Import Export

: Import/export device configuration from/to a text file.

Firmware

: Allows you to upload/view firmware versions downloaded.

Pattern Updates

: Update patterns for various modules like Sophos AV, IPS, WAF or set auto-update interval.

Backup & Firmware

Backup is the essential part of data protection. No matter how well your system is treated, no matter how much it is taken care of, you cannot guarantee that your data is safe, if it exists only at one place.

Backups are necessary in order to recover data from loss due to disk failure, accidental deletion or file corruption.

There are many ways of taking backup and just as many types of media to use as well.

Backup consists of all the policies and all other user related information.

Device facilitates to take back-up only of the system data, either through scheduled automatic backup or using a manual backup.

Once the backup is taken, the file for restoring the backup must be uploaded for restoring the configuration.

Below are the screen elements with their description:

Backup

Backup Mode

Select how and to whom backup files should be sent.

Available Options:

Local - Backup is taken and stored on the Device itself.FTP - Configure FTP server IP Address

(IPv4/IPv6), login credentials and FTP path. Email - Configure Email Address on which backup is to be mailed. You can configure multiple Email Addresses.

Backup Prefix

Specify backup file name (prefix). The backup file name format is as follows:

• With Prefix: <Prefix>_Backup_<Device Key>_<timestamp>

For example:

Dallas_Backup_ABCDEY190_26Nov2014_12.09.24

NY_Backup_ABCDEY190_26Nov2014_12.09.24

• Without Prefix(Default): Backup_<Device Key>_<timestamp>

For example:

Backup_ABCDEY190_26Nov2014_12.09.24

If prefix is not provided, the default format is used for backup file.

Backup Prefix will be useful in case you need to take backup from multiple devices.

Frequency

Select the system data backup frequency.

In general, it is best to schedule backup on regular basis. Schedule can be determined depending on how much information is added or modified.

| System | 506

Available Options:

Never - Backup will not be taken at all Daily - Backup will be taken every day Weekly - Backup will be taken every week Monthly - Backup will be taken every month

Schedule

Specify the day/date and time for Daily, Weekly and Monthly backup.

Backup Now

Click to take the backup of system data till date.

Download (Only for Local Backup Mode)

Click to download the latest backup that is available for uploading.

| System | 507

Figure 471: Backup

Backup Restore

Restore Configuration

To select the complete path of the backup file to be restored, click the file selection button against

Restore Configuration.

Upload and Restore

Click to upload and restore the configuration.

Figure 472: Backup Restore

Note: Restoring data older than the current data results in the loss of current data.

API

Application Programming Interface (API) is an interface which allows third party applications to communicate with the device. This page allows the Administrator to log on and log off users.

API Configuration

API Configuration

Enable to allow only authorized third-party solution providers like ISP, and system integrators to use

API for log-on and log-off process.

Default - Disabled

Allowed IP Address

Add the IP addresses allowed to place the XML log-on and log-off requests.

You will be able to add IP Address only if API Configuration is enabled.

Figure 473: API Configuration

API Explorer

Request XML String

Specify the XML content containing the configurations to enable user log on or log off.

Parse and apply

Click to parse the XML content and apply the configurations.

Figure 474: API Explore

Sample XML Request Code

For all the requests, XML response will be displayed in a pop-up window.

<Request><LiveUserLogin><UserName>sophos</UserName><Password>sophos</

Password><IPAddress>10.21.18.15</IPAddress><MacAddress>00:0C:29:2D:D3:AC</

MacAddress> </LiveUserLogin></Request>

<Request><LiveUserLogout><Admin><UserName>admin</UserName><Password>admin</

Password></Admin><UserName>sophos</UserName><IPAddress>10.21.18.15</

IPAddress></LiveUserLogout></Request>

For versions prior to 10.6.1 MR-1

<Request><LiveUserLogout><UserName>sophos</UserName><IPAddress>10.21.18.15</

IPAddress></LiveUserLogout></Request>

Please use the below link to use API: https://<Sophos IP>:<port>/webconsole/APIController?reqxml=<Add the XML

request here>

| System | 508

advertisement

Key Features

  • Firewall rules
  • Web filtering
  • Intrusion prevention
  • VPN
  • Wireless management
  • Email security
  • Advanced threat protection

Related manuals

Frequently Answers and Questions

What is the purpose of Sophos XG Firewall?
Sophos XG Firewall is a network security appliance designed to protect your network from threats.
What are the key features of Sophos XG Firewall?
Key features include firewall rules, web filtering, intrusion prevention, VPN, wireless management, email security, and advanced threat protection.
How do I access the Sophos XG Firewall web interface?
You can access the Sophos XG Firewall web interface by entering the IP address of the appliance in your web browser.
How do I configure basic firewall rules?
You can configure basic firewall rules by creating a new rule in the Firewall section of the web interface.
How do I enable web filtering?
You can enable web filtering by creating a new web filter policy in the Web section of the web interface.
What is the difference between a user rule and a network rule?
A user rule applies to a specific user, while a network rule applies to a specific network.
How do I create a VPN tunnel?
You can create a VPN tunnel by creating a new IPsec connection in the VPN section of the web interface.

advertisement

Table of contents