Please see the attached network topology,
I'm looking for opinions on the best configuration based on performance and security.
I welcome any suggestions that the experts on the forum can provide to assist with this config.
I would also welcome…
Hello, Hoping I can get some assistance with what I am missing on this UTM SG230 running 9.407-3. I have seen other questions on here, however could not find one with a...complete answer. As well, I know all configurations are different. So, even a push…
Hallo Zusammen, Wir haben bei uns im Unternehmen ein Problem welches den VPN-Zugang von diversen Usern betrifft. Grundsätzlich läuft alles einwandfrei nur es ist nun bereits einige Male aufgetaucht, dass User sich einwählen konnten, allerdings nicht über…
Hi!
I tend to use tcptraceroute a lot when troubleshooting link connectivity, with me being a newb and all.
I noticed whenever I try to tcptraceroute to a greater than 1024 port, or a port number with more than 3 characters (eg 8443 instead of 443…
Hi
Sorry for the novel, but I wanted to give details. What is the best way to enable multiple ISP uplinks but without the uplink balancing or having to configure multipath rules? I have 2 WAN connections, but obviously when you set a default gateway…
Hi guys, I am in process of redesign of my home network and I got Edgerouter Lite to replace Netgear w/ Tomato. After seeing that edgerouter won't answer all my concerns I am thinking of adding UTM to equation. I know that UTM can handle everything that…
Hallo Forengemeinschaft,
habe folgendes Versucht, scheitere aber mit dem Internetzugriff über den Hotspot.
SG115
Eth0 / LAN /192.168.10.20
WLAN0 bridged, WPA2 Enterprise mit Radiusauthentifizierung
WLAN1, Hotspot Voucher, DHCP 192.168.100…
Folgender Sachverhalt:
Gemäß den hier gängigen DNS Best Practice nutzt man i. d.R. LAN -> DC -> Sophos -> DNS Server seines Providers.
In der Sophos habe ich dazu eine Verfügbarkeitsgruppe mit Servern des Providers und z. B. Google DNS.
Die Google…
Guten Tag Zusammen,
wir haben Netzwerk-Probleme und ich vermute eine fehlerhafte Einstellung auf der Firewall.
Es sind zwei Class C Netzwerke eingerichtet die eigentlich getrennt sein sollten. Nun habe ich aber festgestellt, dass die Clients nicht…
Hello together,
We are having a SG230 with actual 5 RED 15w Devices to Remote Branch-Offices. This is working fine.
Actual we have IP 10.16.0.0/24 on Headquarters and on each Branch Office IP like 10.16.20.0/24. Now, we should integrate an existing…
hi @all,
after updating my Sophos UTM virtual appliance to the latest version one of my NICs is missing. There we're no changes on the vm settings, but after rebootinng the vm, the interface eth4 is missing, in the hardware overview I can see the interfaces…
Hi,
I'm looking for some guidance / advice / help in a deployment we have. We have an SG 210 configured as shown in the diagram attached; I think that will be the easiest way of showing the setup.
We have the Peplink MAX BR1 above the UTM which…
I currently have the following setup: Site B >>> Site A <<< Site C, with A-B and A-C being IPSEC VPN connections. I am looking to pass traffic from Site C to Site B through Site A, but I'm not sure how I accomplish this.
I tried to define static routes…
Hi,
We've only had our SG430 a few months and for the most part have figured out how to do what we want it to do. The one thing I cannot figure out is this.
We have an externally hosted website that internal users need to access, this external site…
Firstly my UTM is up to date. Whether that is a good or a bad thing is uncertain :)
I have a cable modem in bridge mode with three connections to it. Each connection gets a public IP address from my ISP. One of these is the WAN connection on the UTM…
I have a site to site IPSec tunnel, which was established a week ago but we were having routing issues which was semi-resolved yesterday.
My local hosts are
10.10.10.156
10.10.10.98
10.10.10.16
The remote hosts are
10.15.1.50
10.15…
Hi There, I manage a branch office, and was having trouble connecting to websites hosted by the head office (over an IPSEC VPN) when web filtering is on. Branch office running UTM9 is connected to IPSEC to head office (not sure of their equipment) and…
Hi guys. I have 3 interfaces on my UTM, LAN(internal),WAN and WORK.
LAN/internal is my local network (192.168.0.x).
WAN is the internet which is a public IP via cable router (172.16.0.1) in bridge mode.
WORK is a connection to a company vpn router…
My backend VLAN1 subnet is 10.0.0.0/24, my SG330 is 10.0.0.248.
I have a L3 Cisco switch 10.0.0.9 on the same VLAN1
On that Cisco Switch I have VLAN 31 - 10.0.31.0/24
The SG330 has a static route to VLAN31 thru 10.0.0.9 and can ping any device in…
Hi All,
I've had my UTM running for a while now, however I've only just started to notice that my download speed has slowed significantly when I use my UTM.
My UTM is installed on an old Toshiba Satellite Laptop that has a dual core celeron processor…
We have a Sophos UTM SG 125. We have two WAN links, our main one through our ISP and a 4G modem link setup in an active / standby configuration. (Uplink Balancing and Uplink Monitoring)
When our main ISP connection fails, it fails over to the 4G cell…
Ich antworte hier mal, da ich etwas weiter bin:
Wenn das LAN-Interface das einzige ist, das ein Gateway hat UND NAT deaktiviert UND ich eine Firewall-Regel LAN -> ANY -> ANY : Allowed setze, funktioniert zumindest dieser Teil. Da das einzige GW nicht…
Hello Everyone!
I have a set of redundant SG310s,
I have 2 uplinks to 2 different carriers with a /24 advertised via BGP.
I have a subnet setup for DMZ to use these IPs for my phone system and it works just fine, but everything breaks down when…
Hello,
using BGP for routing in my network I would like to know if there is the option to set the UTM as route reflector so I can aviod to have a full meshed network?
I can't find anything about it in the decumentation.
Greetings, Felix
Hi all,
im at the end of all my ideas so im asking for help...
I have two sites with UTM, working IPsec tunnel.
At point A there is Public WAN IP and thru this interface is reachable also subnet 172.20.60.0 which is kind of "management subnet…