<?xml version="1.0" encoding="UTF-8" ?>
<?xml-stylesheet type="text/xsl" href="https://community.sophos.com/cfs-file/__key/system/syndication/rss.xsl" media="screen"?><rss version="2.0" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:slash="http://purl.org/rss/1.0/modules/slash/" xmlns:wfw="http://wellformedweb.org/CommentAPI/"><channel><title>If RED can connect XG behind firewall?</title><link>https://community.sophos.com/sophos-xg-firewall/f/discussions/83528/if-red-can-connect-xg-behind-firewall</link><description>Dear All, Our customer was interesting with Sophos RED. But they have their old firewall and cannot be replaced with XG... So XG can only be placed on LAN, and mapping a public IP for it. XG sets the default static route to old firewall for out. (XG only</description><dc:language>en-US</dc:language><generator>Telligent Community 12</generator><item><title>RE: If RED can connect XG behind firewall?</title><link>https://community.sophos.com/thread/313363?ContentTypeID=1</link><pubDate>Thu, 24 Nov 2016 06:22:19 GMT</pubDate><guid isPermaLink="false">4be5eb7d-caa4-4ff5-8e60-8f9463545a35:3ae43641-2bc3-46a0-8a65-bfc860c6a74c</guid><dc:creator>ShunzeLee</dc:creator><description>&lt;p&gt;I have set up the environment on user site today.&lt;/p&gt;
&lt;p&gt;I works great, thanks all~&lt;/p&gt;&lt;div style="clear:both;"&gt;&lt;/div&gt;</description></item><item><title>RE: If RED can connect XG behind firewall?</title><link>https://community.sophos.com/thread/312645?ContentTypeID=1</link><pubDate>Thu, 17 Nov 2016 02:11:00 GMT</pubDate><guid isPermaLink="false">4be5eb7d-caa4-4ff5-8e60-8f9463545a35:0b6399c0-bbf6-489f-bb89-980c6e0fdf8d</guid><dc:creator>Jeffrey Jaspers</dc:creator><description>&lt;p&gt;Hi Shunze,&lt;/p&gt;
&lt;p&gt;I can confirm what Luk says. I&amp;#39;ve done this a lot of times with the Sophos UTM, but you have to make sure the right ports are open and forwarded to the XG.&lt;/p&gt;
&lt;p&gt;Greets,&lt;/p&gt;
&lt;p&gt;Jeffrey Jaspers&lt;/p&gt;&lt;div style="clear:both;"&gt;&lt;/div&gt;</description></item><item><title>RE: If RED can connect XG behind firewall?</title><link>https://community.sophos.com/thread/312630?ContentTypeID=1</link><pubDate>Thu, 17 Nov 2016 00:05:24 GMT</pubDate><guid isPermaLink="false">4be5eb7d-caa4-4ff5-8e60-8f9463545a35:ac7cbfef-ac8a-45ae-ba27-6591136d49ab</guid><dc:creator>ShunzeLee</dc:creator><description>&lt;p&gt;Thank Luk.&lt;/p&gt;
&lt;p&gt;Since you say &amp;quot;YES&amp;quot;, we will try it on customer&amp;#39;s site.&lt;/p&gt;
&lt;p&gt;After confirmed it, I will update the issue, thanks~&lt;/p&gt;&lt;div style="clear:both;"&gt;&lt;/div&gt;</description></item><item><title>RE: If RED can connect XG behind firewall?</title><link>https://community.sophos.com/thread/312628?ContentTypeID=1</link><pubDate>Wed, 16 Nov 2016 23:58:09 GMT</pubDate><guid isPermaLink="false">4be5eb7d-caa4-4ff5-8e60-8f9463545a35:2d623e80-382f-4598-aa1b-a3663f2dbbbd</guid><dc:creator>lferrara</dc:creator><description>&lt;p&gt;Shunze, &lt;/p&gt;
&lt;p&gt;Thanks for the diagram. It helps a lot. Anyway your configuration can work. You have to make sure that proper ports are allowed through the firewall and and configure dnat on old firewall for necessary ports. Red uses different ports. Use the following kb:&lt;/p&gt;
&lt;p&gt;&lt;a href="https://community.sophos.com/kb/en-us/122755"&gt;community.sophos.com/.../122755&lt;/a&gt;&lt;/p&gt;
&lt;p&gt;Regards &lt;/p&gt;&lt;div style="clear:both;"&gt;&lt;/div&gt;</description></item></channel></rss>