Hello,
I am using a Sophos XG firewall (Version 19.5) and I have 2 WAN interfaces on that (1 active, 1 backup in the WAN link manager). To have the backup line not unused, we use it for SSL VPN (which works without problems). The problem is, that the user portal is only listening on the active WAN interface, not on the backup one. Is there a possibility to have the user portal listen on both WAN interfaces?
Greetings,
Sidney
Hello Sidney,
Thanks for reaching out to Sophos Community
Was this previously working fine before? or this is the first time the issue occured?
Is your user portal configured to use port 443? May you check if there's some DNAT/Port Forward policy that might use port 443 as well?
Kindly let us know. Have a nice day and thank you for choosing Sophos
Cheers,
Raphael Alganes
Global Community Engineer, Support & Services
Are you a Sophos Partner? | Product Documentation | @SophosSupport | Sign up for SMS Alerts
If a post solves your question, please use the 'Verify Answer' button.
The award-winning home for Sophos Support videos! - Visit Sophos Techvids
Hello autinerd ,
If the option under administration > device access > user portal enabled for the WAN zone, then the user portal will be accessible on All the WAN interface active or backup. I just tested in my lab on 19.5.0 GA-Build197.
Thanks & Regards,
_______________________________________________________________
Vivek Jagad | Team Lead, Technical Support, Global Customer Experience
Log a Support Case | Sophos Service Guide
Best Practices – Support Case | Security Advisories
Compare Sophos next-gen Firewall | Fortune Favors the prepared
Sophos Community | Product Documentation | Sophos Techvids | SMS
If a post solves your question please use the 'Verify Answer' button.
Hi, I just looked again and you are right! I just didn't test it right. I tried from the LAN zone and from there is interestingly only one of the WAN addresses reachable. But now I actually tried it from the WAN zone and it works perfectly. Thanks for your support!