Important note about SSL VPN compatibility for 20.0 MR1 with EoL SFOS versions and UTM9 OS. Learn more in the release notes.

This discussion has been locked.
You can no longer post new replies to this discussion. If you have a question you can start a new discussion

Installing Sophos XG v20 Firewall home edition and SETTING up ALL ports as a router

Hi, I have gone through a fair bit of posts and how-to online, so I decided to post the question here, after 5 days researching this.

----------------------

My setup:

Motherboard with 1 built-in 1000mb/s ethernet port, 2x PCI-e cards HP NIC 2 ports each at 2500mb/s, 3x PCI-e cards 1 port each at 1000mb/s (totalling 8 ethernet ports)

Install went through completely fine, I used the recommended security settings from initial wizard.

What do I have now: 1 HP NIC card has the WAN port and LAN port working ok.

----------------------

What I don't get: all other ports are showing in the UI interface, I have tried dhcp and fixed IP under networking, also same and different masking. but I get no internet access when I plug a cable into one of them

----------------------

What I would like:

What is the simplest way, as little configuration as possible, to have all ports working, ideally in the same range as LAN1 172.16.16.16 so that I can have internet access in all 7 ports in a plug-and-play mode.

----------------------

I have read a lot about bridge mode, not too sure if I need that on WAN or the working LAN1.

Could someone kindly let me know the easiest way to achieve that?

I'll work my way up, learning this platform, it will be quite a learning curve as there's so many features inside the software that I got overwhelmed just reading to sort this initial issue.

Anyway thanks in advance.



This thread was automatically locked due to age.
Parents
  • Hi Alex,

    Thank you for reaching out to Sophos Community.

    Have you done bridging all Interfaces to 172.16.16.16, and creating a FW rule to allow it outside the network?

    Erick Jan
    Community Support Engineer | Sophos Technical Support
    Sophos Support Videos Product Documentation  |  @SophosSupport  | Sign up for SMS Alerts
    If a post solves your question use the 'Verify Answer' link.

  • ok, that did go quite well, I lost access to the sophos. but working on it. (yes I did try setting fixed ip, but still not happy about it)

    I had a look in the links you provided and a few documentation.

    I'm quite surprised how many steps it requires, I wonder if the hardware version of sophos has already the router capability built-in. I'm struggling to recommend this to my work, but I really have good hopes will come out good, then I can just document for the IT people how to proceed.

    We have Zyxel UTM, which by standard all ports are on dhcp for internet use, with basic firewall functions on. Now my choices at the moment were to test PaloAlto, Fortigate and Sophos. Let's hope sophos wins this challenge.

Reply
  • ok, that did go quite well, I lost access to the sophos. but working on it. (yes I did try setting fixed ip, but still not happy about it)

    I had a look in the links you provided and a few documentation.

    I'm quite surprised how many steps it requires, I wonder if the hardware version of sophos has already the router capability built-in. I'm struggling to recommend this to my work, but I really have good hopes will come out good, then I can just document for the IT people how to proceed.

    We have Zyxel UTM, which by standard all ports are on dhcp for internet use, with basic firewall functions on. Now my choices at the moment were to test PaloAlto, Fortigate and Sophos. Let's hope sophos wins this challenge.

Children
No Data