Skip to content

Troubleshoot site-to-site SSL VPN

Common configuration errors that prevent Sophos Firewall devices from establishing site-to-site IPsec VPN connections.

Site-to-site SSL VPN connections aren't established after migrating to version 20.0 MR1.


Firewalls using SFOS 20.0 MR1 won't establish site-to-site SSL VPN connections with firewalls using the following versions:

  • SFOS 18.5 and earlier versions.
  • UTM 9 OS.


You can use one of the following options:

  • Use site-to-site IPsec tunnels.
  • Use RED tunnels.
  • Upgrade both firewalls to the latest version.