Important note about SSL VPN compatibility for 20.0 MR1 with EoL SFOS versions and UTM9 OS. Learn more in the release notes.

This discussion has been locked.
You can no longer post new replies to this discussion. If you have a question you can start a new discussion

Two VLAN on Same Server

Hi,

here is my setup, i have 2 VLAN ( 20 and 30 ) and both have DHCP enabled, and both have similar setting.

VLAN is supposed to be used for Administration purposes and VLAN 30 for production traffic.

VLAN 20 does not have access to Internet Access and only Administration/Management port are open (22/3389/..) and accessible to some user.

VLAN 30 has internet access and only incoming connection on port 80/443 are allowed.

when a device is connected to both VLAN it creates two default routes and based on the metrics, sometime internet traffic is being route to VLAN 20 instead of VLAN 30

How can i prevent the route "default via 172.16.20.1" being created, in the DHCP option i can't leave the Gateway field blank, nor i can set "DHCP option 3"



This thread was automatically locked due to age.
  • Hello,

    Thanks for reaching out to Sophos Community. 

    Could you share a diagram showing how your network is connected and set up? Also, is this happening only to a specific server, as shown in the screenshot? 

    Further, I may also recommend using static IP address settings on the server for easier management and setup. Gateway* settings is a mandatory field on DHCP 

    I also notice the scope of your VLAN 30 DHCP to be providing only one lease:

    Hope this helps. Have a nice day and thank you for choosing Sophos.

    Raphael Alganes
    Community Support Engineer | Sophos Technical Support
    Sophos Support Videos Product Documentation  |  @SophosSupport  | Sign up for SMS Alerts
    If a post solves your question use the 'Verify Answer' link.

  • Him

    I suspect the issue is cause by your device being connected to two networks at the same time if I read your post correctly?

    If it is a windows device you will need to create a routing table in the device for traffic to the required works.

    Ian

    XG115W - v20.0.2 MR-2 - Home

    XG on VM 8 - v21 GA

    If a post solves your question please use the 'Verify Answer' button.