I have a quick question, is it possible to have a single Sophos UTM which can control and manage two different VPCs in the same region. We have 2 different AWS VPCs in same region lets says EU Ireland. Both VPCs are entirely on different private IP ranges and like few instsances to communicate each other. Is it possible and doable to get this kind of config working ? 


  • This should be possible, but there are too many questions.  As you start this project, come back and ask specific questions when you encounter a difficulty.

    Thanks for the reply but I 'm not getting any headway. I have created 2 VPCs and one VPC has been setup with UTM 9. I do not get any way to select interface in the other VPC as the subnets are different.  Do you have any doco / link which can give more info on the same ? 


    We do not want to use VPC peering between the VPCs but if that's necessary to get this working we are open to it as well.  




    I've not used VPC peering, so I can't speak to that, but that might be preferable for your needs.

    If the two VPCs should communicate through the UTM, the problem is the same as hub-and-spoke site-to-site VPNs where Site A and Site C communicate through Site B.  See Hub and Spoke Site-to-Site VPNs.  Is that what you want to do?

