Important note about SSL VPN compatibility for 20.0 MR1 with EoL SFOS versions and UTM9 OS. Learn more in the release notes.

Unifi USG behind Sophos XG - vlan config

Hi,

my current network looks like this. This is a double NAT scenario but works quite well.

Now I got a Unifi USG for testing purposes. I'd like to add it between the Sophos XG and the Unifi Switch. The Sophos should keep on managing DHCP, DNS as well as VLANs. The only reason for adding the USG is that I'd like to test the traffic analysis functionality of the USG - even tough most people say it's worthless :-) It should look like this

However, I can't get a internet connection in this tripple nat scenario but don't know how to establish it. If I take out the Sophos and connect Fritzbox directly to the USG, the connection works for the native vlan as it should. Since VLANs are managed by Sophos, of course VLANs won't work in this testing scenario.

So the question is, what kind of settings in Sophos am I missing to make it work?

Best



Added TAGs
[edited by: Erick Jan at 12:14 PM (GMT -7) on 5 Aug 2024]