Important note about SSL VPN compatibility for 20.0 MR1 with EoL SFOS versions and UTM9 OS. Learn more in the release notes.

This discussion has been locked.
You can no longer post new replies to this discussion. If you have a question you can start a new discussion

Basic setup with WAN, LAN and WLAN

Hello together,

i tried to setup a basic configuration, but have some Problems with my WLAN.

I connect my FritzBox as exposed host to the WAN Interface on my Sophos Firewall.

I create a second Interface LAN, where my clients are located. That is working fine and my Clients have access to the Internet.

Also i want to configre a WLAN Network to connect mobile devices and grant them access to the Internet. So i create a Interface WLAN and connect a little

POE Switch to that Interface. I plug in a APX120 AccessPoint to the POE Switch and add the WiFi Zone to the default Network Policy to allow connect over WAN to register my access Point.

Problem is, that my accespoint is not visible to register.

What im missing?

Maybe it is a stupid question but thank you for your help...

Thorsten



This thread was automatically locked due to age.
Parents
  • Good Morning!

    Here is my full Setup...

    On Sophos defined 4 Interfaces: WAN, LAN, WLAN and DMZ

    WAN has ip 192.168.178.2 and as additional adress 192.168.50.2

    LAN has 192.168.50.1

    WLAN 192.168.30.1

    At LAN is a switch connected for the clients (PC's)

    At WLAN i connect a poe switch for the sophos apx120 accespoint (full reseted).

    In default Network Policy i add the LAN and WLAN as allowed networks to WAN.

    PC's are manuall configured with a adress from LAN Interface (192.168.50.x) and as gateway the LAN Interface IP.

    Clients could connect to Internet

    DHCP Interface configured for WLAN Interface with gateway 192.168.30.1

    No additional Routing, etc

    If i want to register the accesspoint, it is not visible. (on Firewall and in Sophos Central)

    Questions:

    Is it the best option to configure an additional adres for WAN or is a NAT config the better way?

    What im missing to get the accesspoint visible to register?

    Thanks a lot!

    Thorsten

  • On Sophos defined 4 Interfaces: WAN, LAN, WLAN and DMZ

    WAN has ip 192.168.178.2 and as additional adress 192.168.50.2

    LAN has 192.168.50.1

    Why do you have an additional address on your WAN that is also on your LAN? 


    Managing several Sophos firewalls both at work and at some home locations, dedicated to continuously improve IT-security and feeling well helping others with their IT-security challenges.

Reply
  • On Sophos defined 4 Interfaces: WAN, LAN, WLAN and DMZ

    WAN has ip 192.168.178.2 and as additional adress 192.168.50.2

    LAN has 192.168.50.1

    Why do you have an additional address on your WAN that is also on your LAN? 


    Managing several Sophos firewalls both at work and at some home locations, dedicated to continuously improve IT-security and feeling well helping others with their IT-security challenges.

Children