Hey everyone,
I’m working on setting up the uplinks between a Sophos XGS4500 firewall and a switch block consisting of two Unifi Pro Aggregation switches.
I’d really appreciate advice on the best way to configure the interfaces for optimal performance and redundancy.
Current Setup & Goals
I see three possible approaches, but I’m not sure which one is correct or best practice:
Questions I got:
I’d really appreciate any guidance or best practices from those who have done similar setups.
Thanks in advance!
----------------------After testing 19.03.25----------------------------
It is actually possible to coonfigure example nr.3 :
Thats how i did it:
Configure LAGs first as needed:
Configure the Bridge (Bridge1):
Assign VLANs to Bridge1 as needed.
On D1 (Distribution Switch) and D2:
Configure STP:
Configure Trunking on the Switch to ensure proper VLAN propagation.
Configure native VLANs on Access Ports where required.
Tomorrow i can give a more updates on traffic testting
Tomi from Vienna
-------------------------- Follower of the Holy Firewall Scriptures, Prophet of Lucartoni
Network & Security Enthusiast
Here to learn, share, and help!