Reflexion will be End-of-life on March 31,2023. See Sophos Reflexion EoL FAQs to learn more.
we have to Dual WAN with static IP- refer to below screenshot
118.189.XXX.XX is the primary WAN IP address.
165.21.XX.XX is the secondary WAN IP address.
The problem is that SSL VPN is configured with the IP address 118.189.XXX.XX (Primary WAN). So, if this primary WAN fails, the SSL VPN client can't connect. Therefore, how do we connect through secondary WAN? (165.21.XX.XXX).
How can this problem be solved?
Thanks
Karthik
Hi Karthik,
Thank you for reaching out to Sophos Community.
Unfortunately, using SSL VPN is still not capable of failover
You may try to use IPsec VPN. Kindly try to see KB Below
Sophos Firewall: Configure an IPsec VPN failover with multiple connections
Erick JanCommunity Support Engineer | Sophos Technical SupportSophos Support Videos | Product Documentation | @SophosSupport | Sign up for SMS AlertsIf a post solves your question use the 'Verify Answer' link.
I don't need IPsec. there is any alternative solution for SSL VPN? e.g., No-IP DNS
Hey Karthik P , there is no alternative and it will not automatically failover if one of the ISP is down. But if under the SSL VPN Global settings you have not override the hostname then, users may disconnect the existing ssl vpn [for which ISP has been down] and then try re-connecting the SSL VPN, it will try to connect on the next available Active WAN interface.
Thanks & Regards,_______________________________________________________________
Vivek Jagad | Team Lead, Global Support & Services
Sophos Community | Product Documentation | Sophos Techvids | SMSIf a post solves your question please use the 'Verify Answer' button.