Netgate Discussion Forum
    • Categories
    • Recent
    • Tags
    • Popular
    • Users
    • Search
    • Register
    • Login

    Install PFSense on a Sophos SG appliance

    Scheduled Pinned Locked Moved Hardware
    51 Posts 14 Posters 27.3k Views
    Loading More Posts
    • Oldest to Newest
    • Newest to Oldest
    • Most Votes
    Reply
    • Reply as topic
    Log in to reply
    This topic has been deleted. Only users with topic management privileges can see it.
    • stephenw10S
      stephenw10 Netgate Administrator
      last edited by

      Hmm, potentially some timing issue. Try running the client command from the command line, see if it attaches to the server then.
      Check the system logs after booting you may well see the server and/or client being started/stopped several times.

      Steve

      1 Reply Last reply Reply Quote 0
      • R
        randy_srs
        last edited by

        is there a step by step howto install on a sophos SG appliance and what about the UTM appliances ?

        M 1 Reply Last reply Reply Quote 0
        • M
          mickesanda @randy_srs
          last edited by

          @randy_srs Hi Randy, I cannot say for other Sophos appliances, but for SG330, I created a bootable USB stick with Rufus and the installation is very easy.
          I could only auto identify one ethernet card. The rest were found automatically when the installation was finished. Other than the issue with the display, everything went smoothly.
          /Mike

          1 Reply Last reply Reply Quote 0
          • R
            randy_srs
            last edited by

            @mickesanda thanks for the info . i figured . i think there is a workaround for the LCD display . ill have to play around with them

            1 Reply Last reply Reply Quote 0
            • P
              pw @mickesanda
              last edited by

              @mickesanda

              Thx Mike, without messing in .conf file, all from GUI, was able to manage this on SG 450 platorm :)

              Cheers

              1 Reply Last reply Reply Quote 1
              • B
                barrio603
                last edited by

                I have SG 125 - SG 230 installed with PFSense and they work fine. The cost for a unit off ebay is way cheaper then buying a dual port and the only thing you need to concern about is the internal SSD, but that is a quick swap for a new one.

                1 Reply Last reply Reply Quote 0
                • D
                  dkzsys
                  last edited by dkzsys

                  This post is deleted!
                  1 Reply Last reply Reply Quote 0
                  • D
                    dabbler455
                    last edited by

                    Has anyone tried to use the sfp port on an xg-135 rev3 with a gpon optic for an incoming fiber connection?

                    1 Reply Last reply Reply Quote 0
                    • SGMPhilS
                      SGMPhil
                      last edited by

                      pfSense works great on the SG-310 that I have. LCD works great with this configuration:
                      Screenshot 2024-03-10 111033.png

                      1 Reply Last reply Reply Quote 3
                      • G
                        geoslake
                        last edited by

                        Hi guys, and thanks for the above tips.
                        So ive installed latest Pfsense (community 2.7.2) on an SG115rev3. All went fine except Ethernet ports (ETH 0 to 3) are listed in random order each time the appliance reboots, which of course makes the device unusable with Pfsense.
                        Do any of you ever have encountered such a weird behaviour ?

                        Thanks & cheers

                        stephenw10S 1 Reply Last reply Reply Quote 0
                        • W
                          Wirepower
                          last edited by Wirepower

                          LCDProc for SG550 rev1
                          Have installed pfsense with lcdproc.
                          Have used many of the listed drivers etc but display still not changing.
                          alt text

                          stephenw10S 1 Reply Last reply Reply Quote 0
                          • stephenw10S
                            stephenw10 Netgate Administrator @geoslake
                            last edited by

                            @geoslake said in Install PFSense on a Sophos SG appliance:

                            Ethernet ports (ETH 0 to 3) are listed in random order each time the appliance reboots, which of course makes the device unusable with Pfsense.
                            Do any of you ever have encountered such a weird behaviour ?

                            Hmm, nope never seen that on any hardware.

                            Do they come up with the same MAC addresses but just in a different order?

                            Do they show as the same PCI addresses in the boot log or in the output of: pciconf -lv?

                            Steve

                            G 1 Reply Last reply Reply Quote 1
                            • stephenw10S
                              stephenw10 Netgate Administrator @Wirepower
                              last edited by

                              @Wirepower said in Install PFSense on a Sophos SG appliance:

                              LCDProc for SG550 rev1

                              What display is that exactly?

                              W 1 Reply Last reply Reply Quote 0
                              • W
                                Wirepower @stephenw10
                                last edited by

                                @stephenw10
                                I put a picture up of it?

                                1 Reply Last reply Reply Quote 0
                                • stephenw10S
                                  stephenw10 Netgate Administrator
                                  last edited by

                                  Yes but that doesn't help much. We need to know the actual make and model of the display and how it's connected.

                                  W 1 Reply Last reply Reply Quote 0
                                  • W
                                    Wirepower @stephenw10
                                    last edited by

                                    @stephenw10
                                    Ah ok. So I will need to open the unit up and take photos of inside behind the lcd etc?
                                    Ok I will do that :) thanks

                                    1 Reply Last reply Reply Quote 0
                                    • stephenw10S
                                      stephenw10 Netgate Administrator
                                      last edited by

                                      Yes that's what I would do.

                                      1 Reply Last reply Reply Quote 0
                                      • W
                                        Wirepower
                                        last edited by Wirepower

                                        Got it running,
                                        So for those that have the Sophos SG550.
                                        Pics below are the settings:
                                        alt text

                                        The only issue I found with this is the buttons seem to be for the wrong button. Like esc is actually enter, enter is esc, etc

                                        1 Reply Last reply Reply Quote 1
                                        • G
                                          geoslake @stephenw10
                                          last edited by

                                          @stephenw10
                                          Thanks for replying. Well, not sure what happens but LAN is now ETH0, WAN is ETH3 and dont "move" anymore, for now.
                                          Let's see if it keeps working...

                                          Cheers

                                          1 Reply Last reply Reply Quote 0
                                          • M
                                            mikey_s
                                            last edited by

                                            I've successfully install pfsense on various XG hardware, XG125 Rev3, XG 135 Rev3 and a XG230 Rev2. I think they are great units. Been looking out for a fanless model for another family install potentially. Pondesk E3845 unit currently in place for a quiet 900/900 connection.

                                            Only thing I've generally had to do is remap the NICs so that they match was is on the front of the unit.

                                            I've got a 900/900 connection coming later this year to replace my existing 500/50, do I need it, no, but will it be cheaper / same price - yes.

                                            I'm trying to determine which unit to use between the XG135 Rev3 and the XG230 Rev2, both have plus license where as my XG125 is on CE / other firewall software.

                                            XG135 Rev3 - Intel(R) Atom(TM) CPU C3558 @ 2.20GHz
                                            XG230 Rev2 - Intel G4400, but have an i3-6100T in the unit atm.

                                            VPN usage is S2S IPSEC with another pfsense unit, Wireguard for IOS devices and OpenVPN for a Windows laptop, but open to IPSEC config too.

                                            Like others on the XG230 Rev2 the LCD works fine, but the buttons are the wrong way round if I recall.

                                            Anyone tried pfsense on any of the newer XGS units?

                                            stephenw10S 1 Reply Last reply Reply Quote 0
                                            • First post
                                              Last post
                                            Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.