This discussion has been locked.
You can no longer post new replies to this discussion. If you have a question you can start a new discussion

Create a vlan (AP SSID), when connected by devices, seemingly behave as it isn't behind Sophos firewall, get's public IP

Is there a way to create a vlan allow connected devices (via AP) bypass firewall?

My current SSID in Vlan has a different IP subnet from my home devices.  There are times I want to connect devices that totally bypass home firewall.  This setup doesn't work.  Is there a way to do this?



This thread was automatically locked due to age.
Parents Reply Children
  • Step 1You can create a LAN2WAN Firewall rule that matches the device, vlan/subnet you are targeting and just dont enable any of the policies on it, no web, app, ips, etc.

    Step 2 (Optional if IP available) If you have a "spare" Public IP Address that you can split off and assign (as an alias interface on your WAN), you could NAT that IP completely to the wireless endpoints IP address, so any traffic to "PUBLICIPXX" is NAT'd to "WIRELESSENDPOINT1".

    But if you just want to bypass firewall security, follow step 1.  If this doesnt achieve what you want, let me know

  • Thanks Matthew.  Will do step 1.  I don't have extra public IP though.