This is probably a more of a routing than a wireless issue, but I'll give it a try.
I have a XG 230 with a number of available HW ports and a brand new APX320.
I have a subnet to the outside where the office traffic flows trough x.x.x184 and I would like the wifi (Guest) traffic to go trough x.x.x.191
Should the user need anything on our LAN they will have to go trough VPN.
I have connected APX320 to port 6 on the XG and enabled the port. Set it to Wifi zone with address: 192.168.108.1/255.255.255.0 (In my simple mind that would be the gateway)
I gave the network interface this address.: 192.168.108.200/255.255.255.0. (Why not the GW address??)
I have setup a DHCP for the WIFI zone. I have defined the wifi network to 192.168.108.0/24. Client separation and so on.
I have setup a routing from the wifi network to the WAN.
APX is online, I can connect to it with a laptop.(Did only come online after a FW update, but that could be the restart)
I can ping the APX from the laptop, but not the network interface at .200 nor .1.
So I'm stuck. Ideas anyone?
I figured this one out. The Sophos staff did not....
1, Set P6 as gateway.
2, Set network as "bridge to AP LAN" instead of separate zone.