This discussion has been locked.
You can no longer post new replies to this discussion. If you have a question you can start a new discussion

home license limit?

Hi all,

 

Have been searching but unable to find if there is are any limits to the home firewall between the 50 device limit and the obvious lack of HA... is there a limit to how many RED tunnels or ipsec tunnels it can maintain for instance?

 

Thanks!



This thread was automatically locked due to age.
  • Hi,

    At the engineer/architect training we learn the only limit is the 50 IP. HA works.
    No RED restrictions seen until now.

     


    Dirk

    Systema Gesellschaft für angewandte Datentechnik mbH  // Sophos Platinum Partner
    Sophos Solution Partner since 2003
    If a post solves your question, click the 'Verify Answer' link at this post.

  • Hi,

    Like Dirk says, you can do Hot-Standby (Active/Passive) HA.  The only limit to the number of tunnels is the power of your hardware.  IPsec tunnels are less resource-intensive than RED tunnels.

    Cheers - Bob

     
    Sophos UTM Community Moderator
    Sophos Certified Architect - UTM
    Sophos Certified Engineer - XG
    Gold Solution Partner since 2005
    MediaSoft, Inc. USA
  • Hi Bob,

     

    for HA in home-usage and with home license I only need 1 (ONE) license for both devices, right?

     

    also cheers, nd :)

  • Hi Andy,

    You can't load anything on the second device.  After the initial installation, you must do a factory reset.  Here's my standard recommendation:

    1. If needed, do a quick, temporary install so that the new device can download Up2Dates.
    2. Apply the Up2Dates to the same version as the current unit, do a factory reset and shutdown.
    3. On the current UTM in use, on the 'Configuration' tab of 'High Availability':
       a. Enable Hot-Standby
       b. Select eth3 as the Sync NIC
       c. Configure it as Node_1
       d. Enter an encryption key (I've never found a need to remember it)
       e. Select 'Enable automatic configuration of new devices'
       f. I prefer to use 'Preferred Master: None' and 'Backup interface: Internal'
    4. Cable eth3 to eth3 on the new device.
    5. Cable all of the other NICs exactly as they are on the original UTM.
    6. Power up the new device and wait for the good news. [;)]

    Cheers - Bob

     
    Sophos UTM Community Moderator
    Sophos Certified Architect - UTM
    Sophos Certified Engineer - XG
    Gold Solution Partner since 2005
    MediaSoft, Inc. USA
  • "for HA in home-usage and with home license I only need 1 (ONE) license for both devices, right?"

    Yes


    Dirk

    Systema Gesellschaft für angewandte Datentechnik mbH  // Sophos Platinum Partner
    Sophos Solution Partner since 2003
    If a post solves your question, click the 'Verify Answer' link at this post.