Browse By Tags

  • 2 WAN interfaces to 2 LAN interfaces

    Good day all, I am running Sophos XGS3100 Firewall SFOS 18.5.2 MR-2-Build380 I'm trying to get lan 1 to wan 1 and lan 2 to wan 2, and in the future it will be lan 3 to wan 3. I tried to do this via SD-WAN and Static route but after about 10 minutes…
  • SSL Traffic over non-SSL ports traffic through WAN1 only

    I have android boxes for IPTV streaming. I can see it uses SSL Traffic over non-SSL ports, as those are the main application type that consumes a ton of data from the boxes. I have 2 WAN links, WAN1 and WAN2. WAN2 is set as BACKUP, and to activate if…
  • Sophos Firewall: Routing in Sophos Firewall with SD-WAN PBR

    Disclaimer: Much of the content below was written in V18.0. The online help of V20+ may be a better source of content. https://docs.sophos.com/nsg/sophos-firewall/21.0/help/en-us/webhelp/onlinehelp/AdministratorHelp/Routing/SDWANRoutes/index.html …
  • Sophos Home Firewall

    I have 4 LAN interfaces: 172.16.16.16 that I use for admin 192.168.8.1 that I use for my home network 192.168.100.1 that has 1 PC on it 10.1.1.1 that has 1 PC on it While the gateways can be pinged from any network, I cannot see all of the PCs…
  • Static Routing in XG 210 Firewall

    Hi Team I am configured Static Routing with 1 VLAN But in my network, there are 12 VLAN are available Do I need to create 12 VLAN IPs in Static Routing ?
  • SD-WAN Profile failback with VPN Does not work.

    Hello Dear Partners! I configured an SD-WAN Scenario with Two VPN Tunnels and then created an SD-WAN Profiles. as the image below: I did the following Test I dropped the Main Link VPN_MTZ_1 and Sophos Quickly switched the Route to the Backup…
  • How to configure SDWAN for user based policy .

    Hi , i have configured STAS in sophos firewall after i created multiple user based rule .if i need to used SDWAN for this user is it work or i its will work through wan link manger. i need redudancy in ISP.please help me .
  • Firewall/routing question

    Hi, I have a networking related question. I'm not sure if it's a configuration issue on the Sophos firewall. I have a Sophos XGS 136 appliance with a number of physical interfaces configured with the following IP addresses: 192.168.100.1 and 192…
  • Can't access Synology server once Sophos XG Firewall is connected to Cisco switch

    As I've worked through some (not all) setup issues, one that continues to stump me is the fact that when my NAS is connected to switch along with all other LAN devices and incoming internet from router, life is good. I can access my NAS no problem. …
  • SDWan Disconnect when ISP in third site has issues

    We are encountering an issue with our SD-Wan. The SD-WAN is created via a Sophos Central SD-Wan Connection group. For sake of this question we have 3 sites, (Site A = Head office where AD/DNS and RemoteApp server are at; Site B where affected user is…
  • SD-WAN Routing issue for and TFTP service

    I'm using a Sophos Central defined SD-Wan Connection Group and a series of rules to allow connection between sites. As best I can tell all the rules are working for all other workloads. The only place I'm aware that these rules are not working properly…
  • Help routing specific device traffic across layer 2 connection

    Hello there, I’m trying and failing to route all internet traffic from device 10.5.15.20 at SITE B across the layer 2 MAN and out ISP1 WAN at SITE A. I’m trying not to impact any other traffic at SITE B with this configuration, only internet bound…
  • use of full bandwidth when having multiple gateway

    Hi team, someone can say this would be silly question, but I require a clarity on the same. I am using Sophos XG136 with firmware updated to 19. I have two bandwidth from different ISP's, one is 20Mbps and second is 25 Mbps with the new feature…
  • Redundancy - BGP & Static routing

    We have two wan links connected on sophos & want autofailover between them, for one wan link we have configured bgp and for other wan link we have configured static routes. Now we want bgp routes to be preferred over static routes & in case of link failure…
  • Question: Target based routing on 2 Gateways based on target country

    Hi Community members i have to setup target country based routing. For that we have 2 "Internet lines" One standard line (local exit) and a special one to route the traffic for other countries region ! Now to my question: How do i configure the the…
  • Did I get the SD-WAN policies right ?

    Hello everyone, I am running Sophos XG (Home) v18.5 MR4 with dual-WAN in failover mode. I will soon be changing it to load-balancing globally. However, I would like to set the SDWAN policies for these 2 scenarios as exceptions to this change: Some…
  • Centos OpenVPN Internet Routing

    Hello Everyone, Apart from Sophos SSL VPN, I have a Centos based OpenVPN server, which is behind my firewall. My OpenVPN clients access that server through a DNAT rule. I have created a VPN tunnel (Site-to-Site) between Sophos XG and AWS, using this…
  • redistribute site-site ipsec route on ospf

    I have a Data Center network that connect to 3rd party server network using site-site ipsec and all the vm in my data center knows how to get to the 3rd party servers. tunnel established Also have my HQ network and two branches network connected to…
  • Sophos XGS2100 and Ubiquiti dream machine pro

    Hello everybody, can these two devices work together? And if it is possible, what is the best way to connect this UDMP to Sophos? At the moment customer is using UDMP as router/firewall. Thanks
  • OSPF not enabled on interface

    XGS107 (SFOS 19.0.0 GA-Build317 I have OSPF configured and working on another XGS 107. I have dynamic routing enabled in ADMIN>Device Access.> LAN, I am using Port 2, which I have changed to LAN. Under Information OSFP > Interface it shows…
  • MPLS GATEWAY NOT PINGING IN SOPHOS FIREWALL . MPLS LINK DOWN

    I have my MPLS Link termintaed on port no. 4 of sophos XG Firewall. When i put the MPLS Line on my laptop and assign static IP Configuration ISP has given to me. i am able to ping the Gateway of MPLS . but when i try to configure it on sophos firewall…
  • Sophos Routing precedence through IPsec Tunnel

    Hello, I have bought my first Sophos Firewall and I need some help. Setup: Port1: LAN - 172.16.0.1/23 Port2: WAN - Public IP (PPPoE) Port3: LAN - 192.168.1.1/24 Site-to-Site IPsec tunnel: Port1 172.16.0.1 (local site) - 192.168.0.1/22 (remote…
  • Error with OSPF route

    Hi Sophos. I have configured Sophos Firewall OSPF with Cisco via a leased line . two sites can ping each other. Sophos Neighbor ospf table have information about cisco The problem is that when i turn on ospf route in Sophos firewall. I have tested…
  • make one LAN go out different WAN address

    hi all, i know you do this via SD WAN and SNAT policies, like below make two SD WANS "source networks" LAN 2 subnet > "SD WAN profile" choose the other WAN 2 address in drop down "source networks" LAN 1,3,4,5,6 subnets > "SD WAN profile" choose…
  • Sophos XG V19

    Hello, how can I configure my wireless to use a different ISP rather than the one used for my LAN.