Server certificate cannot be verified: <gateway name>. Do you want to continue?

This error applies to SSL VPN connections only.


The Sophos Connect client imports the SSL VPN configuration by connecting to the XG Firewall user portal using the provisioning file's properties. The user portal uses a self-signed certificate that can't be verified by the Sophos Connect client.


  1. Accept the security warning to connect and download the ovpn configuration file from the user portal.

    To prevent the prompt from showing in the future, contact your firewall administrator. They must choose one of the options below:

  2. Issue a new certificate for XG Firewall signed by a public CA. On XG Firewall, import the certificate then select it for Admin console and end-user interaction.
  3. Push the default CA certificate from XG Firewall to the trusted store on the remote computers.