• SD-WAN and Normal Firewall Rules

    Giovanni Meroni
    Giovanni Meroni
    XG86 Firewall v19.0MR1 TLDR: When i enable SD-Wan for a certain zone to use differente Gateway all other rules on that zone is ignored I have 2 Zone and 2 Wan. First LAN zone use ISP1 and ISP2 as a backup For the Second Zone i need ISP2 default and ISP1…
    • Answered
    • over 1 year ago
    • Sophos Firewall
    • Discussions
  • Site A-B (tunnel interace route based IPSec) Site B-C (policy based IPSec) configure A to C

    apijnappels
    apijnappels
    I have 3 sites (A, B, and C). Site A: 172.16.16.0/24 Site B: 192.168.1.0/24 Site C: 10.23.1.0/24 Site A and B are both Sophos XG firewalls configured with a route based IPSec tunnel interface between each other Site C is remote and is outside our…
    • Answered
    • over 1 year ago
    • Sophos Firewall
    • Discussions
  • Issue in the SDWAN routing engine

    Andrea Giacomin
    Andrea Giacomin
    Hi, I'm experiencing a strange issue with the SDWAN routing engine. I have 2 Sophos XG connected via route-based ipsec (xfrm interfaces) and using SDWAN rules for the routing decision. The XG located at the branch office route traffic, using a SDWAN…
    • Answered
    • over 1 year ago
    • Sophos Firewall
    • Discussions
  • SD-WAN for VLAN

    Kaid Armstrong
    Kaid Armstrong
    We have a separate VLAN set up and working for our Guest Wifi network. Clients (mostly cell phones) receive a DHCP IP in the correct range, are segregated from any other network communication, and can get to the internet fine. What we would now like to…
    • Answered
    • over 1 year ago
    • Sophos Firewall
    • Discussions
  • Scheduled SD-WAN routes?

    Ryan Meskill
    Ryan Meskill
    Hey all! I'm looking to schedule SD-WAN routes. For example, to send my traffic down one gateway during working hours but then move to another one for the evenings/weekend. It seems schedules are available elsewhere for rules, but not for SD-WAN. I guess…
    • over 1 year ago
    • Sophos Firewall
    • Discussions
  • Sophos Firewall: Managing Firewall and SD-WAN Orchestration

    Vivek Jagad
    Vivek Jagad
    Disclaimer : This information is provided as-is for the benefit of the Community. Please contact Sophos Professional Services if you require assistance with your specific environment. Table of Contents Overview Topology Head Office Central…
    • over 1 year ago
    • Sophos Firewall
    • Recommended Reads
  • Routing Precedence not working as expected

    kerobra
    kerobra
    Hi, I am currently changing our IPSEC VPNs from Cisco ASA to Sophos XGS, but now I am experiencing a strange behaviour regarding the routing. Route-precedence is VPN-Static-SD-WAN. Currently the ASA is handling the IPSEC tunnels so I created 3 static…
    • Answered
    • over 1 year ago
    • Sophos Firewall
    • Discussions
  • VPN failover to Azure

    Daniel Zulian
    Daniel Zulian
    Hi, community. I have an issue with my failover VPN to Azure. I have an XG210 v19, connected to 2 ISPs. I have a VPN connection to Azure cloud for SAP services. As recommended for Sophos, I created the VPN as tunnel interface, with xfrm interfaces.…
    • over 1 year ago
    • Sophos Firewall
    • Discussions
  • ISSABEL one side voice block with SOPHOS XG Firewall with configuring SD-WAN with Primary Link ( ISP-1 )

    GSL HSPL
    GSL HSPL
    Currently, I'm using the SOPHOS XG firewall in my office There are two ISPs: a primary ISP ( SuperNet ) with a dedicated link of 40Mbps, and a secondary ISP ( Transworld Home Fiber ) with a 100 Mbps shared link, and I want to configure my voice server…
    • over 1 year ago
    • Sophos Firewall
    • Discussions
  • SD-Wan to communicate with Sophos central / live protection

    Moritz_Max
    Moritz_Max
    i have XG firewalls located in china and sometimes the latency of some links to sophos getting to slow so i dont get a resonse in time for example for live protetcionn right now im trying to setup a SD WAN for all sophos services, but that it work well…
    • over 1 year ago
    • Sophos Firewall
    • Discussions
  • SD-WAN routing with 2 P2P Links

    Ajay Sharma1
    Ajay Sharma1
    Hello Community, We have this scenario where in we have a branch location and the location is connected using 2 P2P Links. At HO side we have Sophos XG330 and BO its a Sonicwall. The P2P links on XG330 are in DMZ zone, we have created custom gateway…
    • over 2 years ago
    • Sophos Firewall
    • Discussions
  • wan link manager sophos xg traditional method or SDWAN

    satyabrata bastia
    satyabrata bastia
    Dear All, i have configured two isp as below snapshot is it corect or we need to configured sdwan policy for redudancy please suggest.
    • over 2 years ago
    • Sophos Firewall
    • Discussions
  • Default for system generated traffic and reply packets

    TheMonzel
    TheMonzel
    Short question: What are default values for both option of "set routing sd-wan-policy-route" in the CLI? The docs could make this more clear, as they only mention, that I *can* turn both on: SD-WAN routing behavior - Sophos Firewall and set - Sophos…
    • Answered
    • over 2 years ago
    • Sophos Firewall
    • Discussions
  • SSL Traffic over non-SSL ports traffic through WAN1 only

    jang430
    jang430
    I have android boxes for IPTV streaming. I can see it uses SSL Traffic over non-SSL ports, as those are the main application type that consumes a ton of data from the boxes. I have 2 WAN links, WAN1 and WAN2. WAN2 is set as BACKUP, and to activate if…
    • Answered
    • over 2 years ago
    • Sophos Firewall
    • Discussions
  • SD-WAN Profile failback with VPN Does not work.

    Fagner Nascimento
    Fagner Nascimento
    Hello Dear Partners! I configured an SD-WAN Scenario with Two VPN Tunnels and then created an SD-WAN Profiles. as the image below: I did the following Test I dropped the Main Link VPN_MTZ_1 and Sophos Quickly switched the Route to the Backup…
    • Answered
    • over 2 years ago
    • Sophos Firewall
    • Discussions
  • How to configure SDWAN for user based policy .

    satyabrata bastia
    satyabrata bastia
    Hi , i have configured STAS in sophos firewall after i created multiple user based rule .if i need to used SDWAN for this user is it work or i its will work through wan link manger. i need redudancy in ISP.please help me .
    • over 2 years ago
    • Sophos Firewall
    • Discussions
  • SD-WAN Routing issue for and TFTP service

    John Nickell
    John Nickell
    I'm using a Sophos Central defined SD-Wan Connection Group and a series of rules to allow connection between sites. As best I can tell all the rules are working for all other workloads. The only place I'm aware that these rules are not working properly…
    • Answered
    • over 2 years ago
    • Sophos Firewall
    • Discussions
  • SDWan Disconnect when ISP in third site has issues

    John Nickell
    John Nickell
    We are encountering an issue with our SD-Wan. The SD-WAN is created via a Sophos Central SD-Wan Connection group. For sake of this question we have 3 sites, (Site A = Head office where AD/DNS and RemoteApp server are at; Site B where affected user is…
    • over 2 years ago
    • Sophos Firewall
    • Discussions
  • use of full bandwidth when having multiple gateway

    Ravi Ratnakar1
    Ravi Ratnakar1
    Hi team, someone can say this would be silly question, but I require a clarity on the same. I am using Sophos XG136 with firmware updated to 19. I have two bandwidth from different ISP's, one is 20Mbps and second is 25 Mbps with the new feature…
    • over 2 years ago
    • Sophos Firewall
    • Discussions
  • Question: Target based routing on 2 Gateways based on target country

    n.coker
    n.coker
    Hi Community members i have to setup target country based routing. For that we have 2 "Internet lines" One standard line (local exit) and a special one to route the traffic for other countries region ! Now to my question: How do i configure the the…
    • over 2 years ago
    • Sophos Firewall
    • Discussions
  • Did I get the SD-WAN policies right ?

    J Thai
    J Thai
    Hello everyone, I am running Sophos XG (Home) v18.5 MR4 with dual-WAN in failover mode. I will soon be changing it to load-balancing globally. However, I would like to set the SDWAN policies for these 2 scenarios as exceptions to this change: Some…
    • over 2 years ago
    • Sophos Firewall
    • Discussions
  • Outgoing (SMTP) Traffic uses undefined WAN Line

    GernotMeyer
    GernotMeyer
    Hi all, I have Sophos XG 18.5.4 with multiple WAN lines (different vendors for failover) and also multiple IP addresses per wan line. Outgoing SMTP traffic needs to fit MX config in internet so I defined SD WAN and NAT rules as described here https…
    • over 2 years ago
    • Sophos Firewall
    • Discussions
  • make one LAN go out different WAN address

    Sophos User1175
    Sophos User1175
    hi all, i know you do this via SD WAN and SNAT policies, like below make two SD WANS "source networks" LAN 2 subnet > "SD WAN profile" choose the other WAN 2 address in drop down "source networks" LAN 1,3,4,5,6 subnets > "SD WAN profile" choose…
    • over 2 years ago
    • Sophos Firewall
    • Discussions
  • Sophos XG V19

    humane jard
    humane jard
    Hello, how can I configure my wireless to use a different ISP rather than the one used for my LAN.
    • over 2 years ago
    • Sophos Firewall
    • Discussions
  • XG 19 SD WAN with NAT rules

    Geniux
    Geniux
    Our XG 19 has 2 ISP links. I created a NAT policy though the wizard which allows reaching a server on the LAN. this NAT policy is set to be available only on ISP1 - FiOS I also created an SD WAN policy for outbount connections to select ISP based…
    • over 2 years ago
    • Sophos Firewall
    • Discussions
  • View related content from anywhere
  • More
  • Cancel
<>