Important note about SSL VPN compatibility for 20.0 MR1 with EoL SFOS versions and UTM9 OS. Learn more in the release notes.

One card at a time?

SFVH (SFOS 21.0.1 MR-1-Build237) --Sophos XG Home Supports Only One 10Gbps Connection at a Time

Hello, In anticipation of UTM 9 (Home) EOL In September 2025 after about 15 years of use, I built an XG home version which I am using for clients as we speak, but have one problem so far.

It seems that XG will only allow one 10Gbps connection at a time so when I connect to the LAN at 10Gbps, the same exact card installed (two) in the system, will only connect on that 10Gig interface to the WAN (Internet) at 1Gbps.  It works fine but won't allow 10Gbps even though the LAN side will.  It falls back to 1Gig every time.  I am using two X540-10G-2T-X8 cards.  I have tried many permutations of auto and fixed speeds.

The only 'tricky" thing I am doing is since I have a 1.2Gbps WAN connection and plan to move to 2Gbps service from comcast (next gen)  shortly, since XG will not support my 2.5 Gbps i225 nic, I have a separate vlan in the switch that connects the modem (S34 Surboard 2.5Mbps LAN side) and the XG wan interface.  This way the Modem will connect to the switch at 2.5 while the XG wan card connection can connect at 10Gbps which allows me to get the full 1.2Mbps and be ready for 2Gbps service from the 2.5Gbps down link from the modem:  ONLY IT DOES NOT WORK since the XG will connect to the LAN at 10Gbps but only to the WAN side at 1Gbps on the same exact 10Gbps card.

Is there some sort of artificial limitation being imposed by the XG software on the WAN side?  I does see both two port cards.  I am using interface 0 on each card so port 1 on the LAN and port 3 on the WAN.  If I switch the cards back and forth from WAN to LAN and vice versa they will both connect at 10Gbps but only one at a time.

Any help?

Thanks from XG new guy.



Edited TAGs
[edited by: Erick Jan at 2:08 AM (GMT -7) on 10 Mar 2025]