
Closed
Posted
Azure + Sophos Firewall Expert Needed (HA Active-Active Setup - POC Phase) We are currently working on a Proof of Concept (POC) for implementing a High Availability (HA) setup using Sophos Firewall in Microsoft Azure (East US). The goal is to first validate everything in the POC environment and once successful, replicate the same setup in production. Important Note: - At this stage, NO changes are required on the production firewall - Work will be strictly limited to the POC environment - Once POC is successful, we will proceed with production implementation separately POC Objective: We want to implement and validate: - HA (Active-Active) setup between two Sophos Firewalls - VPN configurations - Site-to-Site (S2S) VPN - WAF setup and rules - All backend services and routing Current Status: POC infrastructure is already deployed, including: - 2 Sophos Firewalls - External Load Balancer - Internal Load Balancer - VNet setup However, we are currently facing issues specifically with HA configuration (Active-Active setup is not getting established properly) Scope of Work: - Review the existing POC setup in Azure - Troubleshoot and fix HA (Active-Active) configuration - Ensure proper synchronization and failover behavior - Validate that VPN, S2S, WAF and routing work correctly with HA - Assist in testing and stabilizing the setup Required Skills: - Strong hands-on experience with Sophos Firewall (XG/XGS) - Deep knowledge of Azure networking (VNet, Load Balancer, Routing) - Experience with HA (Active-Active) in cloud environments - VPN, S2S VPN, NAT and WAF expertise Timeline: Immediate / ASAP
Project ID: 40309440
20 proposals
Remote project
Active 1 mo ago
Set your budget and timeframe
Get paid for your work
Outline your proposal
It's free to sign up and bid on jobs
20 freelancers are bidding on average $12 USD/hour for this job

As a dedicated network and system administrator with more than a decade of experience, I am eager to tackle and resolve complex network challenges such as the one you're facing with your Sophos Firewall POC setup in Azure. I am proficient in utilizing Azure networking tools like VNet, Load Balancer, and Routing, which aligns perfectly with the scope of your project. Specifically, my deep knowledge of Sophos Firewall HA (Active-Active) configuration will be instrumental in troubleshooting and resolving your current setup issues. Additionally, my certifications in CCNP, CCNA, RHCE, and Certified Ethical Hacker are not just accolades but reflections of my commitment to staying up-to-date with the latest industry expertise. My experience with VPNs including Site-to-Site (S2S), NAT, and WAN is also essential for ensuring not only the proper synchronization Moreover, having worked extensively on various cloud platforms such as Azure, AWS GCP, OVH Cloud, and Digital Ocean—including deploying firewall solutions on them—I understand the unique challenges that cloud environments present. With this comprehensive skill set and hands-on knowledge of diverse networking devices including other firewall solutions like WatchGuard, Palo Alto or Huawei firewalls in complex network architectures means I can confidently guarantee a successful and efficient execution of your project on time—a combination you won't easily find elsewhere!
$35 USD in 40 days
6.8
6.8

As a highly skilled and experienced developer, my proficiency in aspects of cloud computing will more than meet your expectations for this project. I have accumulated over 8 years of experience troubleshooting and configuring complex setups involving HA in cloud environments, which makes me perfect for the task at hand. My in-depth knowledge of Azure networking, Sophos Firewall (XG/XGS), VPNs, S2S VPNs, NATs and WAF is unparalleled and gives me an astute advantage over competitors. Not to mention, my previous ventures have seen me gain familiarity with technologies like VNet, Load Balancer, Routing - all crucial components to the successful implementation of your POC setup. I'm particularly excited about the opportunity to tackle your current issue specifically concerning HA configuration. With my skill set and attention to detail, you can expect diligent reviews, thorough troubleshooting and efficient fixes keeping disruption to an absolute minimum. Most importantly, I strive not only to deliver highly functional solutions but also provide value-added services. For instance, in your case where we're dealing with a moderately stable live environment that needs minimal disruptions during the POC phase. You can count on my ability to find creative ways to fine-tune the current setup without risking the integrity of your production environment. Let's join forces and establish a resilient HA setup together!
$5 USD in 40 days
4.1
4.1

Hi, I am a full-stack AI developer with 8 years of experience, well-versed in Azure networking, VPN configurations, and cloud security. I have hands-on experience with Sophos Firewalls, particularly in cloud environments like Azure. For this project, I can assist you with troubleshooting and fixing the HA Active-Active setup for Sophos Firewalls in your POC environment, ensuring that VPN, Site-to-Site (S2S) VPN, WAF, and routing work correctly with HA. I'll review your existing setup, resolve configuration issues, and help stabilize the setup for future production deployment. I’m an individual freelancer and can work on any time zone you want. Please contact me with the best time for you to have a quick chat. Looking forward to discussing more details. Thanks, Emile
$15 USD in 40 days
3.5
3.5

Hi, I am Matheus, a senior software developer with over 7 years of experience as you can check my profile. I am a senior engineer with over 7 year of experience on Cloud Computing, Azure, Network Administration, Cloud Networking, Cloud Security, VPN, Firewall, Network Monitoring. Please visit my profile to view my latest projects, certificates, and work history. Let's connect in chat to discuss more. Thank you, Matheus
$6 USD in 40 days
2.0
2.0

Dear Hiring Manager, We have strong hands-on experience with both Microsoft Azure networking and Sophos Firewall (XG/XGS), including High Availability setups and complex cloud-based routing scenarios. Your POC requirement for an Active-Active HA configuration aligns closely with the kind of troubleshooting and implementation work we regularly handle. How we will approach your POC: • Review your existing Azure setup (VNet, subnets, NSGs, UDRs, Load Balancers) • Validate Sophos HA configuration (heartbeat, sync, interface bindings) • Troubleshoot Active-Active behavior with Azure Load Balancer (health probes, HA ports, floating IP) • Ensure session persistence and symmetric routing for proper failover • Validate VPN and Site-to-Site connectivity under HA conditions • Review and test WAF rules and backend routing through both nodes • Perform failover testing to confirm stability and synchronization We understand this is a POC phase with zero impact on production, and we can jump in immediately to stabilize the environment and help you move confidently toward production rollout. We’ve handled similar Azure + firewall HA scenarios and can quickly identify misconfigurations that typically block Active-Active setups. Available to start ASAP. Best regards, Jagrati.
$4 USD in 40 days
1.0
1.0

Hello, thanks for posting this project. I specialize in designing and validating cloud-based firewall architectures with hands-on experience in Sophos XG/XGS and Azure networking. I will review your POC in East US, troubleshoot the Active-Active HA configuration, and ensure seamless synchronization, failover, VPN, S2S, WAF, and routing work end-to-end within the POC environment. My approach combines thorough configuration review, targeted troubleshooting, and validated testing to deliver a stable HA Active-Active setup in Azure before moving to production. What are the expected SLAs for VPN failover during the POC, and are there any preferred Azure regions beyond East US for staging? I am ready to start immediately and align with your tight timelines for the POC. Looking forward to hearing from you. Best regards,
$8 USD in 12 days
0.0
0.0

I understand you have the infrastructure deployed (Internal/External LBs, VNets, and 2 Sophos Firewalls) but are struggling with the Active-Active HA synchronization. In Azure’s SDN environment, traditional HA heartbeat logic often fails due to how Azure handles IP forwarding and load balancer probes. My Approach to Fix Your POC: HA Sync Recovery: I will audit your NSGs and NIC settings (specifically IP Forwarding and MAC Address Spoofing) to ensure the Sophos nodes can establish a stable heartbeat link over the Azure fabric. Azure-Orchestrated Failover: I will prioritize Option B (Azure Fabric Probes) to ensure the External and Internal Load Balancers correctly identify "Healthy" nodes, preventing asymmetric routing issues. Traffic Symmetry: I will configure the Internal Load Balancer (ILB) and User-Defined Routes (UDR) to ensure that VPN, S2S, and WAF traffic flows remain symmetric even in an Active-Active state. Validation & Stability: Once the HA is established, I will perform a controlled failover test to ensure zero-downtime for your backend services before we discuss production replication.
$5 USD in 40 days
0.0
0.0

Hello, I understand you need an Azure + Sophos Firewall Specialist for HA Active-Active setup in a POC environment. The goal is to deliver a reliable, fully functional HA POC solution in Azure that ensures VPN, S2S, WAF, and routing work seamlessly. Here’s what I can provide: HA Active-Active Sophos Firewall setup troubleshooting and configuration validation. VPN, S2S, NAT, WAF, and routing optimization to ensure full synchronization and failover functionality. Azure networking expertise, including VNet, Load Balancer, and backend service integration for smooth operations. I bring over 4+ years of experience in Azure networking and Sophos Firewall deployments, with hands-on expertise in HA configurations and cloud security setups. I’ve worked on enterprise POCs and production firewall environments, always prioritizing stability, performance, and secure connectivity. Just to clarify a few things: Are there any specific HA sync errors you are currently seeing? Should the VPN and WAF testing be included as part of the POC validation report? Please come to the chat box to discuss more about your project. Best regards, Indresh Kushwaha
$7 USD in 40 days
0.0
0.0

Hi, I can help you quickly stabilize your Sophos HA (Active-Active) setup in Azure POC, focusing on correct sync, failover, and full integration with your existing architecture. What I’ll do: Review VNet, Load Balancers (internal/external), and routing paths Fix HA sync issues (heartbeat, session sync, interface binding) Validate Active-Active behavior with proper failover testing Ensure VPN, S2S, WAF, and NAT work seamlessly with HA Optimize Azure LB rules (health probes, floating IP, SNAT behavior) Key Focus Areas (common issues I’ll address): Azure LB not aligned with Sophos HA requirements Incorrect probe/port configuration affecting failover Session persistence & asymmetric routing issues HA config mismatches between nodes Why me: Strong experience with Sophos Firewall (XG/XGS) Deep understanding of Azure networking & HA patterns Hands-on troubleshooting of real-world HA + VPN setups Availability: Immediate (can start now) Let’s get your POC stable and production-ready step by step. Best regards, Shailendra
$5 USD in 40 days
0.0
0.0

With your immediate demand, my 4+ years in software development makes me the ideal fit for your Azure and Sophos Firewall project. I'm profoundly skilled in handling complex deployments, and I specialize in Python (Django, FastAPI), which is well-suited to your specific infrastructure needs. In addition, my knowledge of cloud computing and experience in working with different cloud service providers including Google Cloud Platform would lend itself effectively to supporting your High Availability (HA) solution in Microsoft Azure. The issue you're currently facing with the HA configuration aligns perfectly with my expertise, as I possess extensive experience managing HA setups like the one required for this project. My deep understanding of Azure networking (VNet, Load Balancer, Routing) coupled with my hands-on knowledge on Sophos Firewall (XG/XGS), VPN configurations, Site-to-Site (S2S) VPN and WAF setup will prove invaluable in troubleshooting and resolving the issues you're encountering. Let's transform this challenge into an opportunity for exemplary success!
$6 USD in 40 days
0.0
0.0

Here’s a sharp, high-impact proposal under 1000 characters: Hi, Active-Active HA with Sophos on Azure often fails due to load balancer probes, session sync limits, or routing/NAT misalignment — not just firewall config. I can quickly identify and fix the root issue. What I’ll do: Audit your Azure setup (VNet, LB rules, probes, routing) Fix HA sync and ensure proper Active-Active behavior Validate failover, session persistence, and health checks Align VPN/S2S, WAF, and NAT with HA architecture Focus: Stable HA with correct traffic flow — not just “connected” firewalls. Experience: Worked on Sophos XG/XGS HA in cloud (Azure/AWS), including LB + routing issues. Timeline: Start immediately | Fix within hours (depending on config complexity) POC-first approach is correct — I’ll ensure it’s production-ready. Let’s stabilize your HA setup.
$5 USD in 40 days
0.0
0.0

I personally experienced network security gateways such as Sophos UTM 9(ASG 9). I can help you quickly stabilize and validate your HA (Active-Active) setup for Sophos Firewall in Azure. I have hands-on experience with Sophos environments (including Sophos UTM 9 and XG/XGS) and strong expertise in Azure networking (VNet, Load Balancers, routing, and VPN architecture). I understand the common challenges with Active-Active HA in cloud environments—especially around synchronization, session persistence, asymmetric routing, and load balancer health probes. For your POC, I will: * Review your current Azure architecture (External/Internal LB, VNet, routing tables) * Diagnose why HA Active-Active is not forming properly * Fix synchronization and failover behavior between both firewalls * Ensure correct configuration of Azure Load Balancers (probe, SNAT, HA ports if required) * Validate VPN and Site-to-Site connectivity under HA * Verify WAF functionality and backend routing stability * Assist with structured testing to confirm resilience I’m comfortable working strictly in POC and documenting everything clearly so it can be replicated in production later. I can start immediately and focus on resolving the HA issue as the top priority. Let’s connect and get your setup working as intended. Best regards, Filip
$5 USD in 40 days
0.0
0.0

Hello, I can help stabilize and complete your Azure-based Sophos Firewall HA (Active-Active) POC by identifying and resolving the root cause of the synchronization issue. With strong experience in Azure networking (VNet, UDRs, Load Balancers) and Sophos XG/XGS deployments, I will review your current architecture, validate HA prerequisites (interfaces, heartbeat, session sync, LB configuration), and fix the Active-Active setup to ensure proper failover and traffic distribution. I will also verify that VPN, Site-to-Site tunnels, WAF rules, and routing behave correctly under HA conditions. Once stabilized, I’ll assist with structured testing and document the setup so it can be replicated smoothly in production. Before give you time and cost estimation could you please give me the answers of my questions : Is session persistence configured on your Azure Load Balancers? Are both firewalls in the same availability zone or different zones? Have you configured HA heartbeat interfaces correctly? Thankss Divu..
$10 USD in 40 days
0.0
0.0

Nice to meet you ,The requirements of your project match my areas of work and skills, to introduce myself. My name is Anthony Muñoz and i am the lead engineer for DS Pro IT agency. I have worked for over 10 years as a Full-Stack and software development engineer and have successfully done multiple jobs. It will be a pleasure to work together to make your project. Feel free to discuss about the project with me, greetings.
$16 USD in 40 days
4.3
4.3

Hello!!! Quantum Code Solutions is ready to resolve the HA Active-Active synchronization issues in your Azure POC. The primary challenge in East US Sophos deployments often stems from Load Balancer probe configurations or incorrect NIC routing in the VNet. Recently, a similar HA setup was fixed for a logistics firm involving complex backend routing. The team corrected the internal load balancer rules and updated the Sophos XML configurations to allow seamless failover. This stopped data loss during sync and stabilized the S2S VPN and WAF rules. Eager to get connected with you. Best regards, Quantum Code Solutions
$8 USD in 40 days
0.0
0.0

I am a network and cloud security engineer with daily hands-on experience on both Microsoft Azure and Sophos Firewall (XG/XGS) . I have worked extensively with High Availability (HA) configurations, VPNs, and WAF in cloud environments, and I can help you resolve your HA setup issue quickly. Why me? Azure expertise: Deep knowledge of VNet, Load Balancers (internal/external), routing, and cloud networking. Sophos Firewall expert: Daily work with Sophos XG/XGS, including HA (active-active), VPN S2S, NAT, and firewall rules. POC focus: I understand this is a POC and will work strictly within that environment without touching production. How I can help: Review your current POC infrastructure (2 firewalls, load balancers, VNet). Troubleshoot and fix the active-active HA configuration (synchronization, failover behavior). Validate VPN S2S, WAF rules, routing, and backend services with HA enabled. Test and stabilize the setup until everything works as expected. Document the working configuration so you can replicate it in production later. I am available for an immediate remote session and can start as soon as needed. Let's connect and get your POC back on track.
$10 USD in 40 days
0.0
0.0

New Delhi, United Arab Emirates
Payment method verified
Member since Oct 8, 2020
$8-15 USD / hour
$2-8 USD / hour
$2-8 USD / hour
$2-8 USD / hour
$8-15 USD / hour
$60-70 USD / hour
₹750-1250 INR / hour
₹600-601 INR
₹250000-500000 INR
£20-250 GBP
$8-15 AUD / hour
$250-750 USD
₹1500-12500 INR
₹600-1500 INR
$30-250 USD
$10-30 USD
$15-25 USD / hour
€30-250 EUR
₹75000-150000 INR
$30-250 AUD
$30-250 USD
$250-750 USD
₹1500-12500 INR
$250-750 USD
₹600-1500 INR