• How to config traffic using SD WAN routes instead of default gateway route ?

    Anhar Panduwinata
    Anhar Panduwinata
    Need help on this issue, I tried to configure the SD WAN routes destination to use SD WAN profile, but the traffic keep going through default. I have tried to disable the Underlay SD WAN route and access speedtest.net (I put speedtest.net as destination…
    • 1 day ago
    • Sophos Firewall
    • Discussions
  • Guest network on separate public IP

    jtaylor
    jtaylor
    We have a /29 subnet from our ISP. I want to use a dedicated public address for our guest network traffic. I've added an alias on the PPPoE port and thought I could then just use an SD-WAN rule to route the traffic, but the alias doesn't appear in the…
    • Answered
    • 15 days ago
    • Sophos Firewall
    • Discussions
  • Failover for Adjacent Vendor Routers on Separate Networks over SD-WAN

    Andrew Schoonover
    Andrew Schoonover
    I'm having an issue where we have two vendor routers that need to be highly available to all branch and data center locations (No changes permitted on the vendor R1 and R2) The networks at all the branch locations consist of a Sophos XG135 as the Gateway…
    • 1 month ago
    • Sophos Firewall
    • Discussions
  • 2 WAN Links One Firewall

    BobbyDigital
    BobbyDigital
    Hello World, I have to Internet gateways from my ISP as part of a package deal. I would like to use one internet gateway as my production traffic and the other gateway as my lab traffic. None of the resources behind need to talk to each other. I just…
    • 1 month ago
    • Sophos Firewall
    • Discussions
  • Sophos XG WAN Failback delayed

    Alex Loecherer
    Alex Loecherer
    clear 840 / 5.000 Übersetzungsergebnisse Übersetzung Is there a way to delay the failback in the event of a WAN failover? Our customer gets his Internet access…
    • Answered
    • 1 month ago
    • Sophos Firewall
    • Discussions
  • specific users to make use of just one of the ISPs

    Akshay Waje
    Akshay Waje
    Kindly help. I configured a load balance on two ISP links for my users. Among those users, I want some specific users to make use of just one of the ISPs only whole the rest use both.
    • 3 months ago
    • Sophos Firewall
    • Discussions
  • classify banking/financial services in the Application Object

    Guilherme Silva1
    Guilherme Silva1
    Hello, Do you have any recommendations for classifying financial services/banks and bank websites in the Application object? I need to use SDWAN for this type of service, but generally access to these sites are classified as "Secure Socket Layer…
    • 4 months ago
    • Sophos Firewall
    • Discussions
  • Different default WAN gateways for different VLAN groups

    Administrator User484
    Administrator User484
    Hello. I wonder if Sophos Firewall could be set up to have each VLAN having different WAN gateways ? For example, VLAN 1 will go to WAN 1 and VLAN 2 will go to WAN 2, so that there will virtually be two networks. Originally, I was thinking to set…
    • 4 months ago
    • Sophos Firewall
    • Discussions
  • Scheduled downtime for appliances and tunnels

    Fabio Airoldi
    Fabio Airoldi
    Hello all, I have several firewalls claimed on Sophos Central and SD-WAN connection groups among them. One of the branches will be without power for about two weeks, so the firewalls and tunnels to this branch will be offline. Is there a way to…
    • Answered
    • 5 months ago
    • Sophos Firewall
    • Discussions
  • Understanding SD-WAN performance

    Mostafa Fikry
    Mostafa Fikry
    I wanted to understand how does Sophos firewall measure Latency, Jitter and Packet loss. Is it measuring these metrics between the firewall and the WAN gateway or between the firewall and an external endpoint, if it's the second case then what is this…
    • Answered
    • 5 months ago
    • Sophos Firewall
    • Discussions
  • Where to start with SD-WAN configuration

    Sandra Koehler
    Sandra Koehler
    We have 2 firewalls at the main office in an active-passive HA pair. We just purchased another smaller XGS 107 to be used at a remote branch as a start to our SD-WAN project (we are going to be purchasing more firewalls to add later, but want to use this…
    • 5 months ago
    • Sophos Firewall
    • Discussions
  • Port forwarding WAN to Route based VPN

    Geniux
    Geniux
    I have 2 XG ver. 20 firewalls between 2 sites, both with Static public IP. There is a SDWAN route based VPN between the 2 sites, and it works perfect. the roude precedence is SDWAN, Static, VPN. I am trying to publish an internal server resource that…
    • 6 months ago
    • Sophos Firewall
    • Discussions
  • Only allow certain devices to use backup ISP when primary ISP is down

    shred
    shred
    I have a primary and backup ISP, with the backup ISP being a cellular-based limited bandwidth plan. The purpose of the backup ISP is for my “critical” devices such as my home server which hosts my alarm system via Home Assistant (so I can still receive…
    • 7 months ago
    • Sophos Firewall
    • Discussions
  • Problem with 2 Wan link Manager

    Viatory
    Viatory
    I am using Sophos Xg 125w V20 and i have configured two Wan link Manager. Wan link manager1 as my ISP and Wan link manager2 for Vlans and i want all my normal browsing to go through wan link manager1 instead of each of my computer on my network to select…
    • 8 months ago
    • Sophos Firewall
    • Discussions
  • ROUTING TRAFFIC TO A DESTINATION VIA A SPECIFIC WAN INTERFACE [SD-WAN ROUTING]

    Abdurrahman Mubi
    Abdurrahman Mubi
    Hi All, Scenario: XGS 136 firewall with two WAN links [Wan1 and Wan2] Server/URL on the Internet that has a static IP [x.x.x.x] Single LAN for the internal users Requirement: LAN users to use WAN1 for general Internet traffic LAN users…
    • 8 months ago
    • Sophos Firewall
    • Discussions
  • Route streaming media over different WAN-connection

    apijnappels
    apijnappels
    Is it possible to route "streaming media" over a dedicated WAN-connection using SD-WAN routes in SFOSv20? If not possible to route all streaming media, then is it possible to be more specific like youtube, tiktok maybe based on application rule?
    • Answered
    • 8 months ago
    • Sophos Firewall
    • Discussions
  • Sophos XG 19.0 and 19.5-traffic choosing wrong firewall rule if using SDWAN rules to far end subnet

    Administrator User395
    Administrator User395
    We have a main HA firewall XG210 pair, currently in 19.0 latest MR release, connecting to various XG and XGS units in the field. We have dedicated links to the far end locations, and on the XG210 at the head office it is configured as being over LAN…
    • 9 months ago
    • Sophos Firewall
    • Discussions
  • Can i assign a specific WAN interface to be used by some specific devices?

    Matteo Frati
    Matteo Frati
    I have a XG Firewall with 2 WAN (different ISPs) configured and balanced. I would like to set my AS400 to always use only one of these WAN (the onle one with static IPs) I think i might use the SD-WAN Profiles and rules, but could someone help me…
    • Answered
    • 9 months ago
    • Sophos Firewall
    • Discussions
  • Help Needed: Sophos XGS3100 Website Browsing Issue with Dual ISPs

    pranto
    pranto
    Hello Sophos Community, I hope this post finds you all in good spirits. We are currently facing a website browsing issue with our Sophos XGS3100 firewall, and I'm reaching out to seek your expertise. Here's a brief overview of the problem: We have…
    • 9 months ago
    • Sophos Firewall
    • Discussions
  • Multi-WAN based on Application Type

    w0rmh0le
    w0rmh0le
    Hi, I'm running SFOS 20.0.0 GA-Build222 with two internet Gateways. Basic load balancing seems to be working ok. Now since one link has a much higher bandwidth but also higher latency than the other I would like to send all traffic of Application…
    • 9 months ago
    • Sophos Firewall
    • Discussions
  • SD-WAN not routing back to traffic to branch office without static route

    Chris Haydon
    Chris Haydon
    Hi We are pulling our hair out slightly trying to get a SD-WAN deployment to play ball and have so far spent over 10 hours on the phone to support so far without them being able to explain why this traffic is doing what it is. The scenario is a 9…
    • 9 months ago
    • Sophos Firewall
    • Discussions
  • Use HO Internet for a specific Application Only

    CreateShare
    CreateShare
    Hi, Can branch users use Head Office Internet only for a specific application instead of routing the whole internet traffic? IPSEC Tunnels connect both offices. Thanks.
    • 9 months ago
    • Sophos Firewall
    • Discussions
  • Sophos XG blocking traffic from one local VM to another local VM (asymmetring routing issue?)

    Viacheslav Hranchenko
    Viacheslav Hranchenko
    I have a problem with communication between two local machines that host two different web applications. When I try to connect from VM_3 to VM_2 using the command curl -I https://site.pl , I do not receive a response from the VM_2 . When I try to…
    • Answered
    • 10 months ago
    • Sophos Firewall
    • Discussions
  • I want to use my wan 2 internet for dmz

    admin supremeinfra
    admin supremeinfra
    Dear all, I want to use my wan2 internet for dmz Model XG115 (C19xxXXXXXX) Azhar 961939****
    • 10 months ago
    • Sophos Firewall
    • Discussions
  • Unable to access a website

    Anesu Dangarembwa
    Anesu Dangarembwa
    we are using Sophos XG210 SFOS 19.5.3 We are unable to access a website on the internal network. If we do a traceroute to the website IP, its coming out with t wrong link which for cameras. We tried to create an SD-WAN profile for the users to use the…
    • 10 months ago
    • Sophos Firewall
    • Discussions
  • View related content throughout Sophos Firewall
  • More
  • Cancel
>