Important note about SSL VPN compatibility for 20.0 MR1 with EoL SFOS versions and UTM9 OS. Learn more in the release notes.

This discussion has been locked.
You can no longer post new replies to this discussion. If you have a question you can start a new discussion

The big challenge this weekend cutover to XG

I have built my vlans, not tested.

I have limited mail policies in place - outgoing mail gets scanned on the incoming profile.

I have a country blocking policy in place - nothing blocked yet.

I have a voip policy - not tested and this where the country blocking should come into play.

Two APs will die until I am happy the VLANs and VoIP are working.

I have spent a lot of time setting this up and compared to a UTM, the UTM is way easier.

The interfaces are not friendly at all, though they are better than the beta versions.

I am not convinced the web proxy works in transparent mode because you need to enable NAT which defeats the proxy.

I have clientless users and I am looking forward to the next release when the clientless users can be created without an email address.

I would like to see only clientless users that have passed traffic to appear in the daily reports. I have setup about 20 extra clientless users for visiting relatives and athletic PC. To go through an disable these after the users leave is an absolutely stupid idea and quite time consuming.

Ian

More stuff. I have created new clientless groups for the VoIP phones and users on the user vlan. Debugging will be a pain, there aren't sufficient tools that you can have opne while reviewing policyies.



This thread was automatically locked due to age.
Parents
  • Didn't go to well. VLANs worked eg devices were asigned IP addresses from the vlan ranges. No traffic from the VLANs passed the policies. Don't understand that one because they were in the same policy as the normal network.
    Other issue is the Netgear managed switch will not talk to any port on the XG. I had to put another switch between the XG and the Netgear, strange. Connected the netgear back to the VM UTM and conencted straight away.

    Back to the drawing board.

    Ian

    Ian,

    home UTM 9.x running in ESXi 6 e3-1275v2

    AP55c and AP10 (courtesy Astaro)

    Three other UTMs, SUM and SFM in hibernation

    XG 15.x MR3 in hibernation

Reply
  • Didn't go to well. VLANs worked eg devices were asigned IP addresses from the vlan ranges. No traffic from the VLANs passed the policies. Don't understand that one because they were in the same policy as the normal network.
    Other issue is the Netgear managed switch will not talk to any port on the XG. I had to put another switch between the XG and the Netgear, strange. Connected the netgear back to the VM UTM and conencted straight away.

    Back to the drawing board.

    Ian

    Ian,

    home UTM 9.x running in ESXi 6 e3-1275v2

    AP55c and AP10 (courtesy Astaro)

    Three other UTMs, SUM and SFM in hibernation

    XG 15.x MR3 in hibernation

Children
No Data