Important note about SSL VPN compatibility for 20.0 MR1 with EoL SFOS versions and UTM9 OS. Learn more in the release notes.

  • XG wireless client traffic VLAN confusion

    I have connected my APX120 to the XG and created a new wireless network, basically same as the default sophos. Bridge to AP LAN. Now I want to add another network with its own subnet, that will have access to my LAN on Port3. So I created a vlan connected…
  • DHCP Servers and VLANs

    First of all, apologies if this is a really stupid question, I'm still learning the XG Firewall. We're migrating from a Sonicwall and I'm trying to reproduce the DHCP config we have on the XG. It's simple enough: I've got range #1 replicated, easy…
  • Bridged VLAN - RDP - SSL Engine Issue - Server did not respond to client hello

    I have a XG running 18.5.1 MR1. This XG has 2 physical interface bridged together with multiple VLANs. Each of these connections go to a managed switch via said Bridged(Trunk) connections. I have a Server in VLAN 5 that is connect to one switch…
  • interfaces shows NA for VLANS only

    hi all, under "network > interfaces", when i add a "vlan" ie give it an ip/subnet/vlan tag no etc and bind it to a physical port i can see it under vlans page when i go back under "interfaces" it just says connected but NA under the ip details, why…
  • Different Vlans Users use different ISPs

    Sophos XG430 firewall, multiple VLANs and two ISPs are working in our network shown in attached picture. I want to use ISP2 (Wateway1) for VLAN21, VLAN24, VLAN24 and ISP2 (Wateway2) for VLAN16, VLAN17 internet traffic , is it possible we use both gateways…
  • Setup VLAN between SophosXG and Netgear Nighthawk

    I currently use SophosXG with two connected Netgear Nighthawk access points. I would like to start using the VLAN configuration, but am searching for the right walkthrough to set this up on both SophosXG and connected netgear APs.
  • Sophos XG: VLAN Wifi different physical Interfaces

    Hi, I have 2 physical interfaces and both are lan zones. They should be separate networks. There should be no traffic between both of them. I have 4 Sophos APs on interface A. There should be Wifi bridged into lan A. Before I ordered switches with…
  • VLAn over RED20 Tunnel

    Hi Team, Need to segment a remote branch network using VLAN. My current setup. HQ -> XG210 build 18.5. With already configure VLANS. It's also the DHCP server for the VLAN network. -> VLAN attached to remote RED interface/Hardware with the necessary…
  • No Peer administration settings with VLAN Devices

    Have I seen it right, that die Feature 'Peer administration settings' under HA is not working if my main Interface is an VLAN Device? The VLAN Interface is not in the list of selectable interfaces. Only the parent LAG device (which stupidly needs an…
  • Windows deployment services (PXE boot) and Sophos XG210

    Hello, Anyone using Windows Deployment Services (WDS) with Sophos XG210, using Windows DHCP server. Clients on one VLAN and the Servers on another VLAN? Any step by step guide or tips? Pulling my hair out on this (almost bald!)
  • PXE boot and sophos xg210

    Hello people, I have a question about PXE boot from Windows Deployment Server with XG210 in between, doing InterVLAN routing. This is how it looks like Windows Deployment Server (192.168.1.11/24) , Windows DHCP (192.168.1.10/24) |------------…
  • Thinking of trying Sophos XG Home. Some questions.

    Hi everyone. I have a couple questions. I currently run pfSense in my home network/homelab. I was thinking of maybe trying out Sophos XG. I have no problem with my pfSense it runs great but when I was checking out Sophos it seemed to be more similar to…
  • VLAN packets showing up on wrong interface and being blocked...

    I have a Guest VLAN on VLAN 100, attached to the Bridge on our XG. It's set to Masq out our primary WAN connection, but otherwise be blocked from any local traffic. However, the packets seem to have issues traversing the gateway. Looking at the Firewall…
  • Sophos XG & Bridge & VLAN

    Hi everyone… I need help to configure Sophos XG Firewall and help with understanding how bridge and VLAN's work on XG(If they work) and how to TAG/UNTAG VLAN's… There is requirement for 3 separated zones each with own VLAN, own DHCP Server and own…
  • XG106 Backup WAN v18.5

    Hi all I'm still a bit new to Sophos XG, so apologies in advance if I'm not using the right terminology etc. Am running the latest firmware ( SFOS 18.5.1 MR-1-Build326) and the current WAN uses DMZ to enable me to add VLAN tagging as required by the…
  • Disable ping and http/https access to Vlan interface IPs?

    Hi all, Is it possible disable ping and http/https access to VLAN interface IPs? Is this to be performed via FW rules?
  • Create Vlan

    Hi everyone, i have some tests in sophos home xg v18.5 with vlans, my exemple is below: dhcp: then i have a dlink switch webmanaged port1: go to Sophos port2: go to pc pc cannot obtain ip. an you help? Thanks.
  • VLAN routing

    We are trying to start with a ping to a VLAN. I have port 8 on my Sophos XG with an IP on the VLAN. That cable is going to a port on a layer 3 switch. We setup rules to go back and forth and setup routing for that network. When I hook directly into that…
  • Strange SSH behavior on XG210

    Hello chaps, Starting a new thread on strange SSH behavior. I was not able to connect to a switch in VLAN via SSH but I was able to connect to a HTTPS server on the same VLAN. Noticed the XG210 Log viewer says Invalid packet/Invalid TCP state when…
  • [Resolved] How to ssh into Core switch from Mgt PC, using XG210 to perform InterVLAN routing

    Hello all, I'm stuck at the following, hope to get the community's help. I have the following network configured. I am trying to ssh into the CORE SWITCH from the MGT PC but to no avail. XG210 is currently configured to perform InterVLAN routing via…
  • Inter VLAN Communication is not working

    Hi I am using Sophos XG115 as the firewall and i do have a layer 3 switch (Unifi 8 port POE 60W switch) which leverages VLANS created & tagged at XG115. Users in different VLANs want to connect to devices (e.g. Network Printer and Network Attached…
  • How to set VLAN ip address with /28 netmask in SFOS 18.5.1 MR-1?

    Hello Chaps! I've managed to setup the company's XG210 and now configuring the VLANs. I've got couple VLANS which will need to talk to one another but for now, I need to configure one VLAN for hosts with static IPs. This VLAN is #100. I could…
  • VLAN Outbound Traffic

    I have a VLAN that setup that inbound rules are working but outbound traffic is not able to get out. My Network is as following XG210 HA (Active - Passive) | Port E4 (DMZ) Tagged | PortE4.301 | HPE Switch | Host
  • Planning for secondary datacenter site with a secondary ISP - routing and ISP failover questions

    Hello - Looking for some suggestions here while in the planning stages... We currently have 1 datacenter, with 2 ISP connections going into a pair of XG550's (an HA Pair). This is working fine today. We have miles of dark fiber which we light, and…
  • Setting up VLAN for ISP connection

    I switched to an ISP that requires VLAN tagging the WAN connection which I've done by adding a VLAN interface for the ethernet port the connection to the ISP is with the appropriate VLAN tag. Everything works as expected. However, on the physical interfaces…