Good day everyone,
I have been asked to update our network so our data demands can be met. Currently, we run a conventional flat network and our Sophos XG is routing all the traffic. THru my research I think the best solution is to design the network…
I followed this helfull guide:
Sophos Firewall: Interface / VLAN Migration via XML Import/Export
I am facing a migration from SG (UTM) to XGS (SFOS) with hundrets of VLANs an DHCP-Server.
Sophos Migration Support converted the config of the SG and…
Currently, I created Vlans for my each SSID of my Unifi APs. I have 4 APs, all connected to my TP-Link poe switch, which is Vlan aware also. The poe switch is plugged to my Cisco switch e.g. port 10 (Vlan aware). All other desktops (not in Vlans), NAS…
Hi all!
Quick question regarding XGS 126: MTU is a property of the physical interface. If I want to reduce the MTU for a VLAN I have to do it on the physical interface.
By adjusting MTU value I seem to lose the VLAN interface and the associated dependencies…
I have a problem where I am unable to ping google and it somehow seems as the firewall is missing a route back to my client. My client is inside a VLAN (172.16.87.99) and from the traffic below I can see that it correctly routes to the gateway address…
Hello,
i have a problem with the internet connection on physical port WAN with additional vlan (zone LAN). I tried to change the physical port to an dummy ip and zone DMZ and create two vlans 1 (WAN) and 40 (LAN). My router recognizes the IP address…
Hi,
We have just started using Sophos FW and having some difficulties creating Rules.
We have two vLANs vLAN10 and vLAN20. We need to allow vLAN10 to have full access to the internet whereas vLAN20 should have a whitelist, i.e. access to few websites…
Hi,
I'm new with this equipments, i'm trying to configure VLANS between two equipments (SOPHOS -» Switch)
SOPHOS:
- WAN - DHCP from ISP router
- LAN PORT1
IP: 192.168.100.1/24 - ZONE LAN
1.10 - VLAN 10 - 192.168.10.1/24 - PORT 1 - ZONE…
Hi, I'm trying to get my Guest WiFi VLAN working on SFOS. This was previously working fine with UTM9 but since moving to SFOS has stopped working!
Running the SFOS virtual appliance in ESXi v8, configured as follows;
vSwitch0 contains port groups…
We have a separate VLAN set up and working for our Guest Wifi network. Clients (mostly cell phones) receive a DHCP IP in the correct range, are segregated from any other network communication, and can get to the internet fine. What we would now like to…
I have 2 Vlans on my network, 1 for voip and one for manageing devices such as swithces and accesspoints.
until recently i was using a different router and that worked fine however sincce switching i am unable to access the vlans on th email network…
Hello all,
Currently, we need to migrate our existing Firewall Watch Guard Router whose license will expire soon by the Sophos Firewall. So we ask for your help to set up a trunk between these two routers, indeed the idea is that the Sophos will play…
Hi all,
User Kyle Sexson had this issue a while ago, too, but there’s no solution in his post - so…
I have a set of VLANs running on a bridge interface. This works mostly well, but certain outgoing traffic will show up both on the bridge interface…
Hello,
I'm new to Sophos and can't seem to figure out what I'm doing wrong. I created a separate VLAN (Port 1.50) to prevent my IP cameras from accessing the internet and added the VLAN to the default "Traffic to WAN" group, rejecting any internet traffic…
My setup has 2 VLANs - Main and IoT, using Sophos XG as DHCP and gateway. I'm able to allow traffic between the 2 VLANs by adding a firewall rule of
LAN Any host Any service to LAN Any host Any service.
What I'm trying to do is to only allow traffic…
Hi,
I have increased the size of a subnet from /27 to /26 and any node with an IP beyond the range of /27 has connectivity issues.
I have done this before and don't remember having issues. Apart from Network > Interfaces > VLAN > {Port} > IPv4/netmask…
I see an IPv6 address on my WAN port, but none on any of my configured VLANs or Interfaces.
I'm guessing I need to configure IPv6 Router Advertisements, but when I click it doesn't have an interface
I'm not sure how to open this port up for these…
Hi,
I have replaced the UTM with an XGS. I added the existing older access points to Sophos Central.
The guest network under Settings Client Addressing is in Nat Mode. Is it only possible to create firewall rules for the guest network,
when making…
Hi, I've set up a new VLAN (20) bound to the LAN hardware (Port1.20) with IP 192.168.20.1, and assigned it to the DMZ zone.
If I run the policy checker using Firewall,SSL/TLS and web method, with the following parameters, it fails
URL: dns://192.168…
Hello Mr, I configured 3 vlan with a dhcp server on my mikrotik router. until everything works well: the PCs of the different networks manage to receive ip addresses from the different vlans. However when I connect this mikrotik router to the sophos xg…
Hello everyone,
I hope someone can explain me....
Im trying to connect a trunk port to xg, however looks like im missing something which i dont fully understand.
server: static ip
switch: link to server = vlan 1, link to xg trunk
added the vlans…
Hi Fellas.
I just wanna test Captive Portal scenerio where a guest wants to connect to network, and before access any resources it must authenticate <-- i think that is obious.
So i decided to check it on SophosXG where some things are done much different…