• How to use two gateways on the one router XG 310?

    Viacheslav Hranchenko
    Viacheslav Hranchenko
    Hello, We have two routers configured in High Availability mode. On this devices we have one LAN, one WAN and one DMZ ports cabled with ISP router via small switch. Not so long ago we received a new pool of IP addresses from ISP that we would like to…
    • Answered
    • over 1 year ago
    • Sophos Firewall
    • Discussions
  • Route-based VPN problem

    Cristiano Monteiro
    Cristiano Monteiro
    Good afternoon everybody. I have the following problem. Routed S2S VPN (xfrm) between head and branch and with SDWan activated. Ping between hosts on both networks, ok, working perfectly. Ping from Sophos Firewall to remote network fails. The Firewall…
    • over 1 year ago
    • Sophos Firewall
    • Discussions
  • XGS -> Multiwan -> Portale eigene Adresse; VLANs eigene Adressen

    Cengiz Pirasa
    Cengiz Pirasa
    Hallo zusammen, wir haben nun von UTM auf XGS migriert. An für sich eine tolle Sache wäre da nicht der erhöhte Konfigurationsaufwand. Bei der UTM konnte ich über die "Multipath Rules" je nach Verwendungszweck eigen Ip´s pro Netz festlegen. Irgendwie…
    • over 1 year ago
    • Sophos Firewall
    • German Forum
  • Problem in using 2 wan links

    pablo carvali
    pablo carvali
    Hi, I'm new to Sophos V19. I have 2 wan links from different ISPs. I don't want to do any load balancing. All I want to do is to access some websites using wan1 link, and some other websites with wan2. I was able to do this in previous versions…
    • over 1 year ago
    • Sophos Firewall
    • Discussions
  • Best choice for link quality

    Gib GoDesk
    Gib GoDesk
    Hey guys. I wanted to understand how to better treat the SLA and the health check. My doubts: 1 - When I select custom SLA, the percentage specified in "maximum lost packet" is based on the "Example size for SLA" right? 2 - If I have packet loss…
    • over 1 year ago
    • Sophos Firewall
    • Discussions
  • SD-WAN-Routing funktioniert nicht mit Provider-BGP-Leitung und zusätzlichem DSL

    OliverKoch1
    OliverKoch1
    Hallo miteinander, ich habe ein Routing-Problem seit der Umstellung von Sophos UTM auf XGS. Wir haben 2x BGP-Internetleitungen vom Provider und einen zusätzlichen DSL-Anschluss. Solange ich in der Routing-Preference nicht SD-WAN-Routing an erster…
    • over 1 year ago
    • Sophos Firewall
    • German Forum
  • WAN LINK Load balancing and failover

    Tharindu Premarathne
    Tharindu Premarathne
    Hi Guys, One of our customers has 3 ISP links and he needs to configure one ISP for the Active and the other two as a Backup line, When active links go down, we have to use both backup links to share the traffic. Is there any workaround for that scenario…
    • over 1 year ago
    • Sophos Firewall
    • Discussions
  • VPN - SD-WAN Connection Group to Azure.

    DavidSain
    DavidSain
    I've built out in the SD-WAN connection group. XGS116 firewall at my remote home office is behind DHCP public IP. Virtual firewall in Azure is behind Azure's NAT. It doesn't seem like an SD-WAN Connection group can handle this as it configures the Gateway…
    • over 1 year ago
    • Sophos Firewall
    • Discussions
  • SD wan Connection Group vs Site to Site VPN

    Louis Havenga
    Louis Havenga
    Good Day Members, I Trust you are well. We currently have 5 sites with site to site SSL VPN configured. We are investigating SD-WAN connection Group in Sophos Central. This will assist us in setting a couple defaults policies that that would be the same…
    • Answered
    • over 1 year ago
    • Sophos Firewall
    • Discussions
  • Enable SD-WAN Zero-impact failover

    Suporte Braveo
    Suporte Braveo
    Hey guys, hope all is going well. I'd like some guidance on how to enable SD-WAN Zero-impact failover. My setup is pretty basic, with an XGS 2100 and two WAN connections. I have them configured in a fail-over approach (not load balancing), using an…
    • Answered
    • over 1 year ago
    • Sophos Firewall
    • Discussions
  • Multi WAN Site routing

    cyberhop
    cyberhop
    Hi All I am hoping someone with multi wan experience can help us. I believe its down to routing. So we have 3 WAN's in operation, see our diagram attached, the copy monitors all sorts of different types of alarms and also has a phone app you can use…
    • over 1 year ago
    • Sophos Firewall
    • Discussions
  • Using CAA via VPN No Longer Working

    Ted Bealmear
    Ted Bealmear
    I have a, what feels like to me anyway, a unique way of accessing my remote firewalls. I use the CAA client when I am at my office to authenticate myself to the firewall. This in turn allows me to access my remote firewalls via the SDWAN that is configured…
    • over 1 year ago
    • Sophos Firewall
    • Discussions
  • SD-WAN Connection group

    Diogo Moreira
    Diogo Moreira
    Hi, I have a dedicated WAN LINK in a router that does not support bridge mode. I want to do an SD-WAN connection group and for that I have to tell my ISP what ports I need them to port forward Does anyone know the exacly ports that Sophos Firewall…
    • over 1 year ago
    • Sophos Firewall
    • Discussions
  • shift traffic to another link

    Moiz Bagban
    Moiz Bagban
    1) If one link is being fluctuated and getting time out then how to shift all over traffic on other link. 2) how to identify both link utilization report with SVI Configuration. 3) How to identify that which Link is best path when NAT is not configured…
    • over 1 year ago
    • Sophos Firewall
    • Discussions
  • BUG NC-114075 - SDWAN ROUTES

    Francisco Fiol Mas
    Francisco Fiol Mas
    Hello I am new to sophos, we are carrying out a POC with your firewalls and we are having a problem, the routes choose the xfrm1 interface but with the xfrm2 ip. From what I've read it seems like a BUG NC-114075 NC-113973 XFRM1 IP: 10.1.X.2 XFRM2…
    • Answered
    • over 1 year ago
    • Sophos Firewall
    • Discussions
  • How to route all internet-bound traffic from a specific IP on the LAN to the backup gateway

    Gsurfer
    Gsurfer
    Hi! We have 2 gateways, GW1 & GW2. GW1 is the primary gateway and GW2 is the backup/failover gateway. I'm needing to route all internet-bound traffic from a specific IP address (computer) on our LAN to GW2. I also need the capability of easily turning…
    • Answered
    • over 1 year ago
    • Sophos Firewall
    • Discussions
  • SDWAN Routing - works one way, but not the other.

    Michael Wallis
    Michael Wallis
    SDWAN/IPSEC Tunnel Issue Setup Site A Sophos XGS 107 2 X WAN connections 2 X Route Based IPSEC Tunnels to Site B Site B Sophos XGS 87 1 X WAN connection 2 X Route based IPSEC Tunnels to Site A Issue Site B can ping and connect…
    • Answered
    • over 1 year ago
    • Sophos Firewall
    • Discussions
  • problems with UDP packets on VPN with SD-WAN

    Gib GoDesk
    Gib GoDesk
    Hey guys. I have a problem that I can't figure out how to solve it. I have route-based IPsec VPN (xfrm) and when I use SD-WAN profiles for routing the non-TCP packets such as UDP from RDP or SIP are dropped. If I use the static route instead of SD…
    • Answered
    • over 1 year ago
    • Sophos Firewall
    • Discussions
  • Emails sollen nur über einen Port (Schnittstelle) der XGS gehen

    KarstenFL
    KarstenFL
    Hallo, wir haben eine XGS2300 mit aktueller Firmware im Einsatz. Daran haben wir an Port1 eine SDSL Leitung und an Port 2 eine zusätzliche LTE-Verbindung. Jetzt haben wir das Problem, dass der gesamte Email-Verkehr über Port1 gehen soll. Es darf also…
    • Answered
    • over 1 year ago
    • Sophos Firewall
    • German Forum
  • Show SDWAN Routes via CLI?

    Bepo
    Bepo
    Hello, in our head office we have a XGS2100 Cluster running on firmware version: SFOS 19.5.2 MR-2-Build624 We have some branch offices connected via IPSEC tunnel interfaces to the head office. For this we have some SDWAN Routes. Is there a way…
    • Answered
    • over 1 year ago
    • Sophos Firewall
    • Discussions
  • SD WAN Routing Not Routing Correctly

    Kyle Hesser
    Kyle Hesser
    I have a VLAN setup for our IP phones, the phones are able to get an IP but for whatever reason their traffic is not being routed correctly. I have one phone routing fine, but the other is not routing through the correct port. 10.10.52.0/24 is the network…
    • Answered
    • over 1 year ago
    • Sophos Firewall
    • Discussions
  • SSL VPN Traffic through SD-WAN Selected Gateway Times Out

    John Groller
    John Groller
    Good evening! I have Remote SSL VPN setup, and I can connect to it no problem. The network address for these clients are 192.168.3.0/24. Below are my three policies for allowing traffic from the VPN zone to the WAN, LAN, and DMZ zones. Here are…
    • Answered
    • over 1 year ago
    • Sophos Firewall
    • Discussions
  • Sophos Firewall: Using SD-WAN and XFRM to route System Generated Traffic like CFR to another location

    LuCar Toni
    LuCar Toni
    Disclaimer: This information is provided as-is for the benefit of the Community. Please contact Sophos Professional Services if you require assistance with your specific environment. Table of Contents Overview How it works Central Datacenter…
    • over 1 year ago
    • Sophos Firewall
    • Recommended Reads
  • SD-WAN on two IPSECVPN

    Matthieu CROPSAL
    Matthieu CROPSAL
    Good morning, On a XGS126 - SFOS 19.5.2 MR-2-Build624 I am looking to create an SD-WAN policy on two intersite IPSECVPN links The links are configured in "site-to-site" mode I tried to configure a failover group, but I was not convinced by the failover…
    • over 1 year ago
    • Sophos Firewall
    • Discussions
  • XGS, WAN Failover, SD-WAN

    Thomas Knauder
    Thomas Knauder
    Hallo! Ich hätte eine Frage zu WAN Failover und Routing. XGS116, aktuelle FW Situation: - WAN1: DSL mit fixer Public IP (langsam) - WAN2: LTE/5G mit random IP(Kein Business, schnell) - VPN zu 3 Standorte wo die Tunnel fix per WAN1 angebunden…
    • over 1 year ago
    • Sophos Firewall
    • German Forum
  • View related content from anywhere
  • More
  • Cancel
<>