Important note about SSL VPN compatibility for 20.0 MR1 with EoL SFOS versions and UTM9 OS. Learn more in the release notes.

Enable Routing for public IP on the Lan Interface

Hello everybody!

Right now I have the situation where I want to have multiple public Servers behind a sophos virtual firewall.

For the Sophos i have a seperate public IP. I have a public IP Subnet for the servers that is routed via the public IP of the Sophos firewall.

I've directly assigned a public IP from the subnet to the Server on the Lan interface where the Subnet is configured. I tried to configure the routing so that I can access the Internet but I'm not sure how exactly i should configure it.

Does anyone have advice on how to solve this issue or should i take a different approach?

Thanks in advance!



Edited TAGs
[edited by: Erick Jan at 10:56 AM (GMT -7) on 12 Aug 2024]
Parents Reply
  • When using the DNAT wizard you will also get the option to create a reflexive NAT rule to have the server use the specified IP when accessing the internet. Tick that option and make sure this NAT rule comes before your general SNAT rule for all other clients.


    Managing several Sophos firewalls both at work and at some home locations, dedicated to continuously improve IT-security and feeling well helping others with their IT-security challenges.

Children