For Auvik to successfully connect to Sophos firewalls using SSH, the login credentials must be entered in a specific format.
Sophos UTM/SG Firewalls
When configuring login credentials in Auvik, use the following values:
| Field | Value |
|---|---|
| Username | loginuser |
| Password | Password configured for loginuser
|
| Enable Password | Root/sudo password |
Important: The username must be entered as loginuser. Other administrator accounts are not supported for CLI collection.
Sophos UTM uses the loginuser account for SSH access. Administrative privileges are obtained after login using the root/sudo credentials.
Sophos XG / Sophos Firewall
When configuring login credentials in Auvik, use the following values:
| Field | Value |
| Username | admin |
| Password | Password configured for admin
|
Important: The username must be entered as admin.
Verify SSH Access
Before adding credentials to Auvik, verify that SSH access is enabled on the firewall.
Sophos UTM/SG
- Navigate to Management > System Settings > Shell Access.
- Verify that SSH access is enabled.
- Confirm that the Auvik collector's IP address is permitted in Allowed Networks.
- Verify the SSH daemon is listening on the expected port (TCP 22 by default).
Sophos XG / Sophos Firewall
- Verify that SSH administrative access is enabled.
- Confirm the Auvik collector can reach the management interface.
- Verify any administrator access restrictions permit connections from the collector.
Add the Credentials to Auvik
- In Auvik, navigate to Discovery > Login Credentials.
- Click Add Login Credentials.
- Select the appropriate credential type.
- Enter the credentials using the format described above.
- Click Save.
After the credentials are saved, Auvik will automatically attempt to authenticate to the firewall.
Troubleshooting
If authentication fails:
- Verify SSH access is enabled on the firewall.
- Confirm the collector IP address is allowed to access the management interface.
- Verify the correct username is being used (
loginuserfor UTM/SG oradminfor XG). - Confirm the password and enable password are correct.
- Test the credentials directly using an SSH client such as PuTTY.
- Verify the firewall is not configured to use a non-standard SSH port.
If authentication continues to fail after verifying these settings, contact Auvik support for further assistance.
