This discussion has been locked.
You can no longer post new replies to this discussion. If you have a question you can start a new discussion

Port forward to firewall ip lan or wan

Hi all,

Creating a port forward or dnat rule to the firewall ip

Is is best to port forward to the lan int ip or the wan int ip

Thanks,

Rob



This thread was automatically locked due to age.
Parents
  • Hello there,

    Thank you for contacting the Sophos Community.

    What is it that you’re trying to achieve?

    Usually, you would use the DNAT rule to give access to a Server behind the XG not to a LAN interface of the XG.

    For the Public IP address, in the DNAT rule, you’ll select the Port that has the # and the Public IP  "#Port2 - 100.99.88.77"  (Given Port2 is your WAN) then select the Service that you want to pass down to the Server behind the XG.

    Regards,


     
    Emmanuel (EmmoSophos)
    Technical Team Lead, Global Community Support
    Sophos Support VideosProduct Documentation  |  @SophosSupport  | Sign up for SMS Alerts
    If a post solves your question use the 'Verify Answer' link.
Reply
  • Hello there,

    Thank you for contacting the Sophos Community.

    What is it that you’re trying to achieve?

    Usually, you would use the DNAT rule to give access to a Server behind the XG not to a LAN interface of the XG.

    For the Public IP address, in the DNAT rule, you’ll select the Port that has the # and the Public IP  "#Port2 - 100.99.88.77"  (Given Port2 is your WAN) then select the Service that you want to pass down to the Server behind the XG.

    Regards,


     
    Emmanuel (EmmoSophos)
    Technical Team Lead, Global Community Support
    Sophos Support VideosProduct Documentation  |  @SophosSupport  | Sign up for SMS Alerts
    If a post solves your question use the 'Verify Answer' link.
Children