Route ALL Branch Office (BO) Internet traffic through the Head Office (HO) ISP link via an IPsec VPN tunnel.
Note: All locally generated traffic from the BO, such as pattern updates, licencing, categorization, etc., will also be routed via the HO ISP link.
The following sections are covered:
Applies to the following Sophos products and versions Sophos Firewall
You must be logged in to the Admin Console as an administrator with Read-Write permissions for the relevant feature(s).
You can route all BO traffic through HO by following the steps below:
Configure an IPsec Connection between HO and BO with the following parameters:
Refer to the article How To Establish Site-to-Site VPN Connection using a Preshared Key for detailed instructions on configuring the IPsec Connection.
The above rule will ensure that all internet traffic from the branch office will not use its own WAN connection.
If you've spotted an error or would like to provide feedback on this article, please use the section below to rate and comment on the article. This is invaluable to us to ensure that we continually strive to give our customers the best information possible.
Every comment submitted here is read (by a human) but we do not reply to specific technical questions. For technical support post a question to the community. Or click here for new feature/product improvements. Alternatively for paid/licensed products open a support ticket.