• Check type of traffic used by host and only allow to pass through main Wan connection

    jang430
    jang430
    I have 2 wan connections, main, and LTE. LTE is only backup, and don't want to unnecessarily use it. I have IPTV subscription, and don't want it to use the LTE when main connection goes down. I know the IP address of the TV box. Can anyone tell me find…
    • over 3 years ago
    • Sophos Firewall
    • Discussions
  • Adding Second Interface with Different Public IP for Same Internet Connection

    Iam Zain
    Iam Zain
    We have a situation that I'm not sure how to proceed correctly. This location is currently utilizing two different firewalls - a Sophos XG 310 and a Sonicwall NSA 3500. The way this was originally configured, a small switch was put in place before the…
    • over 3 years ago
    • Sophos Firewall
    • Discussions
  • MPLS & SD-WAN Routing - What about the incoming traffic from the other site?

    ArtL
    ArtL
    I'm working with a client that has MPLS, a Cisco router and a Sophos XG. They plan to get rid of the MPLS at some point but for now it has to work. Site B got a Sophos XG firewall and we can get MPLS working using SD-WAN Routing and LAN devices (SiteB…
    • over 3 years ago
    • Sophos Firewall
    • Discussions
  • Having lan go out different wan

    Sophos User1175
    Sophos User1175
    Hi all, Under interfaces I have 2 wan addresses set with there respective gateways How would I configure a lan to go out that specific wan/gateway Do I do it under outbound nat (pfsense terminology) or make a normal firewall rule ie all that lan…
    • over 3 years ago
    • Sophos Firewall
    • Discussions
  • How restored connection can interact with SD-WAN and active connections

    GabrieleD
    GabrieleD
    Product: 2x XG210 (HA - Active and Passive) with SFOS 18.5MR1. I have a 3 Internet Connection (WAN). One is main (web browsing) and two for backup. One of two backup connection is used only for VoIP Call. I configure in WAN Link Manager in this…
    • Answered
    • over 3 years ago
    • Sophos Firewall
    • Discussions
  • HOW TO CONFIGURE MULTIPLE PRIVATE NETWORK TO USE SPESIFIC WAN?

    timit p2s3
    timit p2s3
    hello everyone, i need help to make sure our network working properly as our need. here details. i have two private network 192.168.19.0/24 network servers [dmz zone] 192.168.17.0/24 network our employer [lan zone] and i have three wan WAN…
    • Answered
    • over 3 years ago
    • Sophos Firewall
    • Discussions
  • Complain about support

    Moawia Mohammed1
    Moawia Mohammed1
    Hi, Our company is located in KSA. I would like to know how can I escalate a neglected support case. I've tried to submit a complaint ticket about a support ticket and didn't receive any feedback on that one for more than 11 months I've…
    • Answered
    • over 3 years ago
    • Sophos Firewall
    • Discussions
  • XGS 18.5.1-326 SD WAN rule changing gateway takes a lot of time to be activated

    AlexanderPoettinger
    AlexanderPoettinger
    We have an issue with SD WAN routing rules. We have two routing based IPsec connections, One SD WAN rule routes certain traffic through the first tunnel. No secondary/failover gateway through the second tunnel is configured. If we manually change…
    • over 3 years ago
    • Sophos Firewall
    • Discussions
  • XG 18.5.1-326 SD-WAN policy does not work with FQDN with "wildcard" but works with IP-Host

    AlexanderPoettinger
    AlexanderPoettinger
    Trying to route traffic for "*.remote.innotemp.de" through a particular gateway. Have added a FQDN host with that address and added the host to the destination of an SD-WAN policy rule. The rule does not work, the traffic is routed through the wrong…
    • over 3 years ago
    • Sophos Firewall
    • Discussions
  • Firewall rule routing certain ports through another SD Wan

    Brad Clement
    Brad Clement
    So I have something I need to complete where I need to route specific traffic from machines using Teams ports 50000:50059 which have DSCP packets marked. I currently have a firewall rule to isolate that traffic coming from the machines I specify but now…
    • over 3 years ago
    • Sophos Firewall
    • Discussions
  • SD-WAN and RED | VoiP Routing Problem

    Dennis D
    Dennis D
    Hi, So i have the following Problem: On Site A i have a XG v18 with 2 WAN Interfaces, a client network (192.168.166.0/24) and a VoiP Network (192.168.168.0/24). WAN-1 is the default WAN and with SD-WAN routing all traffic coming from the VoiP Network…
    • Answered
    • over 3 years ago
    • Sophos Firewall
    • Discussions
  • How do allow Sophos XG itself failover to a backup ISP (SD-WAN policy routing)

    shred
    shred
    I currently have Sophos XG installed on a Qotom Q335G4 box with two ISPs, a primary and a backup for just a few devices. I have an SD-WAN policy route setup that allows this: Everything works as expected but I also have email notifications setup…
    • over 3 years ago
    • Sophos Firewall
    • Discussions
  • XG v18 SD-WAN policy routing in dual ISP WAN - doubling fw rules for what?

    SimoXGFW
    SimoXGFW
    Hi all, I'm writing after a v17 to v18 migration, I have read and watched Sophos videos and I'm starting to get an idea of the main changes in the traffic management rules BUT, I wanted to be sure that I'm not missing something in the "concept" and…
    • over 3 years ago
    • Sophos Firewall
    • Discussions
  • IPSec SD-WAN Design

    Daniel Bruss
    Daniel Bruss
    Hello, I have three sites that I am connecting and each site has an XG running 18.5. Each site has two Internet connections - a primary faster link and a secondary slower link. Thus far, I have two of the sites connected using IPSec Tunnel interfaces…
    • over 3 years ago
    • Sophos Firewall
    • Discussions
  • 2 WAN's, want to keep them separate.

    Brad Clement
    Brad Clement
    Hoping to get some help on the following scenario. We have had a single WAN connection servicing all our internet traffic for all services for years and have now added a second WAN. Our primary goal is to have these two WAN's completely separate but…
    • Answered
    • over 3 years ago
    • Sophos Firewall
    • Discussions
  • Firewall user via different ISP gateway

    ce_Sophos
    ce_Sophos
    Question is related to XG firewall version 18. They have removed many previous options. Is there a method to route set od users or user groups via a different ISP (assuming an organization has multiple ISP links) I can see in SD-WAN Policy Routing…
    • over 3 years ago
    • Sophos Firewall
    • Discussions
  • XG18.0.5 SD WAN Policy not working but worked perfect on XG18.0.4

    Thomas Meier2
    Thomas Meier2
    Hi all, we do have connected to remote sites to our main site with xg 18.0.4 and a SD WAN policy because the internetbreakout should be on the main site. Yesterday I updated all xg firewalls to 18.0.5. But then the SD WAN policy stopped working…
    • over 3 years ago
    • Sophos Firewall
    • Discussions
  • Does SD-WAN requires an active subscription?

    Rodrigo Silveira1
    Rodrigo Silveira1
    Hello, I have a virtual environment for lab purposes and I have two XGs, both of them have their licenses expired, even Base Firewall module so SD-WAN feature does not suppose to work in this case? Static routing is working fine. Thanks
    • Answered
    • over 3 years ago
    • Sophos Firewall
    • Discussions
  • Dont use VPN network interface for on IP Adress

    Florian Mueller1
    Florian Mueller1
    Hello, I have an XG FW with an IPsec Site to Site tunel and the whole traffic is routed through the vpn tunel, so the internet traffic on location B with a site tunnel to location A is routed through the network of location A. Now I want that the…
    • over 3 years ago
    • Sophos Firewall
    • Discussions
  • sd wan routing

    Sherief Refaat
    Sherief Refaat
    Dears, I have sophos xg210 v.18.0.5 i have 2 physical 2 ports physical lan (192.168.20.0/22) and (192.168.11.0/24) and i have 2 ports physical wan, the two lans can access internet and the 2 lans can access resources in each lan and the ping is working…
    • over 3 years ago
    • Sophos Firewall
    • Discussions
  • XG v18 - Zone lookup with SD-WAN policy route

    Steppenwolf
    Steppenwolf
    Hi, can anyone tell me how the XG looks up the destination zone for incoming traffic? Is it possible that only the static and VPN routes are used, but not the SD-WAN routes? Best regards, Steppenwolf
    • over 3 years ago
    • Sophos Firewall
    • Discussions
  • Sophos XG in MTA Mode with multiple WAN Gateways

    David Klein2
    David Klein2
    Hello, I would like the XG to send the emails it receives from the email server as outgoing emails over the second WAN interface. I proceeded according to the following article: community.sophos.com/.../sophos-xg-how-to-setup-mta-mode-when-you-have-multiple…
    • Answered
    • over 3 years ago
    • Sophos Firewall
    • Discussions
  • Migration V17 to V18 SD-WAN

    homerjs
    homerjs
    hello how can i see the parameters of the migrated sd-wan rules ? thx
    • over 3 years ago
    • Sophos Firewall
    • Discussions
  • Question About Static Route and SD-WAN Policy Route

    Yemliha Ipek
    Yemliha Ipek
    Hi All, I am having trouble with routing. I will try to explain what i need. If traffic initiated from XG2 MPLS interface to XG1, XG1 will reply from MPLS interface. If traffic initiated from XG2 XFRM1 interface to XG1, XG1 will reply from XFRM1…
    • over 3 years ago
    • Sophos Firewall
    • Discussions
  • Schedules in Routing

    Curtis Sophos
    Curtis Sophos
    Hi, This is my first time asking a question, so please bear with me. Sophos obsoleted my XG 105 which is running 17.5. So I bought an XGS 107 now running 18.5. In 17.5 you could specify a firewall rule to take affect at scheduled times. My set up…
    • Answered
    • over 3 years ago
    • Sophos Firewall
    • Discussions
  • View related content throughout Sophos Firewall
  • More
  • Cancel
<>