Important note about SSL VPN compatibility for 20.0 MR1 with EoL SFOS versions and UTM9 OS. Learn more in the release notes.

This discussion has been locked.
You can no longer post new replies to this discussion. If you have a question you can start a new discussion

SSL VPN from both WAN Sophos XG

Hi,

first of all is it possible to use the internet on both wan ports? Like combine?

Secound, would it possible to combine both wan ports for ssl vpn? We have two providers which give use each 50mbit/s uploud, and sometimes we need more for remote work.

(And no we dont just want "fail over", we want use both at same time, so that RemoteUser1 connect over wan1  to his pc, and the next RemoteUserX can connect to his pc over wan2 .)



This thread was automatically locked due to age.
Parents Reply Children
  • Hello,

    thanks for the Link/Thread hunting! If i understand correctly:

    Hi Gib GoDesk 
    
    You should specify your choice of WAN link in the override hostname configuration of SSL VPN settings. That way, SSL VPN client will initiate a connection directly to that WAN link IP address.
    
    Reference to this KBA for more information: https://community.sophos.com/kb/en-us/122769
    
    Regards
    
    Jaydeep

    I simply can just type my secound wan ip Adress in the host overwrite option of the VPN Client openvpn?

    Sadly i am not expert if it comes to setting up wan gateways and each manufactor does his own interface, i simply but up the secound wan gateway on the sophos as backup/failover with the ip adress 20.251, the router from my secound provider we are currently using as SIP Converter (VoiP) for our old phone system. This Router sits on IP 20.254 and it sets like this

    On the Lancom site i made a port forwarding rule

    But there is not really comming anything on the sophos logs, do i need do add some routing or nat on the lancom ?

    (Even if i open ping and user portal on sophos on the wan zone, i cant see anything)

  • Hi,

    "we want use both at same time, so that RemoteUser1 connect over wan1  to his pc, and the next RemoteUserX can connect to his pc over wan2"

    Can you try the following with provisioning file

    1. Create two different .pro with different Gateway and send the configuration separately.

    Ex.

    • User1 will use GW1
    • User2 will use GW2

    You may check the following for reference

    Erick Jan
    Community Support Engineer | Sophos Technical Support
    Sophos Support Videos Product Documentation  |  @SophosSupport  | Sign up for SMS Alerts
    If a post solves your question use the 'Verify Answer' link.