Help us enhance your Sophos Community experience. Share your thoughts in our Sophos Community survey.

Important note about SSL VPN compatibility for 20.0 MR1 with EoL SFOS versions and UTM9 OS. Learn more in the release notes.

How to change Packets TTL (Time to Live) value in firewall?

Is there a feature in Sophos Firewall to change TTL value of packets so that the authorized users in my network cannot share internet access by creating their personal WiFi Hotspot to connect unauthorized users to access the internet through my network?

Please let me know and help me on this matter. If there is no such feature in Sophos Firewall then how can we recommend the Sophos to add this feature in their firewall as soon as possible.

Thank you so much 



Edited TAGs
[edited by: Erick Jan at 3:20 AM (GMT -7) on 29 Apr 2024]
Parents
  • Hi,

    In the meantime while waiting for a fix let us suggest a method to overcome your issue. Please post a copy of your firewall rule that is being used by the AP connections?

    Ian

    XG115W - v20.0.1 MR-1 - Home

    XG on VM 8 - v20 GA

    If a post solves your question please use the 'Verify Answer' button.

  • This feature is available in Mikrotik>IP>Firewall>Mangle> New rule> Chain(Postrouting)>Action(Change TTL)> TTL=2

    TTL 1 is for my Firewall and other is for my endpoint devices.

    I am using Mikrotik Router to avail this feature between my Firewall and ISP.

    If Sophos Firewall provides this feature update then I can remove Mikrotik router from my network and it will increase my network performance and decrease the cost and delay in traffic as well.

    Please do something and help me with this scenario.

Reply
  • This feature is available in Mikrotik>IP>Firewall>Mangle> New rule> Chain(Postrouting)>Action(Change TTL)> TTL=2

    TTL 1 is for my Firewall and other is for my endpoint devices.

    I am using Mikrotik Router to avail this feature between my Firewall and ISP.

    If Sophos Firewall provides this feature update then I can remove Mikrotik router from my network and it will increase my network performance and decrease the cost and delay in traffic as well.

    Please do something and help me with this scenario.

Children