<?xml version="1.0" encoding="UTF-8" ?>
<?xml-stylesheet type="text/xsl" href="https://community.sophos.com/cfs-file/__key/system/syndication/rss.xsl" media="screen"?><rss version="2.0" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:slash="http://purl.org/rss/1.0/modules/slash/" xmlns:wfw="http://wellformedweb.org/CommentAPI/"><channel><title>LAN / VLAN SWITCH CORE (CISCO) WITH FIREWALL SOPHOS</title><link>https://community.sophos.com/utm-firewall/f/management-networking-logging-and-reporting/131560/lan-vlan-switch-core-cisco-with-firewall-sophos</link><description>Hello everyone I have the following problem I have an L3 switch (cisco) in the lan network with several vlan where the vlan interfaces are on the L3 switch internally the en route works
but it doesn&amp;#39;t go online.
Excuse me writing, I&amp;#39;m from Latin America</description><dc:language>en-US</dc:language><generator>Telligent Community 12</generator><item><title>RE: LAN / VLAN SWITCH CORE (CISCO) WITH FIREWALL SOPHOS</title><link>https://community.sophos.com/thread/483969?ContentTypeID=1</link><pubDate>Tue, 07 Dec 2021 21:41:30 GMT</pubDate><guid isPermaLink="false">4be5eb7d-caa4-4ff5-8e60-8f9463545a35:704cfec9-2e20-47c7-832f-2d39cf335299</guid><dc:creator>Rodolfo Flores</dc:creator><description>&lt;p&gt;Thanks for answering the sw core I use it for my LAN network where I have declared the vlan interfaces of each one I am only placing a static route in the cisco 0.0.0.0.0 0.0.0.0 172.16.1 which is the IP of Sophos in summary I want that the vlan go to the internet.&lt;/p&gt;&lt;div style="clear:both;"&gt;&lt;/div&gt;</description></item><item><title>RE: LAN / VLAN SWITCH CORE (CISCO) WITH FIREWALL SOPHOS</title><link>https://community.sophos.com/thread/483956?ContentTypeID=1</link><pubDate>Tue, 07 Dec 2021 20:09:27 GMT</pubDate><guid isPermaLink="false">4be5eb7d-caa4-4ff5-8e60-8f9463545a35:63fb876a-60f5-4798-b9d7-62935219538c</guid><dc:creator>PhilippRusch</dc:creator><description>&lt;p&gt;Hola Rodolfo,&amp;nbsp;&lt;/p&gt;
&lt;p&gt;I think you are using that cisco switch as your default gateway for all of your (internal) VLAN&amp;#39;s, right?&lt;/p&gt;
&lt;p&gt;If you now add a firewall to that network, that system either has to be the new &amp;quot;default gateway&amp;quot; for all of your networks OR the firewall-system &amp;quot;has to know&amp;quot; about all these other networks. This would mean to add static routes on the firewall with the cisco as gateway. I suppose these &amp;quot;other&amp;quot; networks can only be reached through the cisco-gateway. That would need one (untagged) VLAN uplink to the Sophos firewall system and then doing IP-routing from there.&lt;/p&gt;
&lt;p&gt;Second way:&lt;/p&gt;
&lt;p&gt;If you would like the Sophos firewall to be part in all these VLAN networks, you need to setup a trunk from the cisco to the firewall-port and then you have to define the ethernet-vlans on that physical port on the Sophos as well. Then you shouldn&amp;#39;t do the routing on the cisco anymore, instead use the Sophos as default gateway.&lt;/p&gt;&lt;div style="clear:both;"&gt;&lt;/div&gt;</description></item><item><title>RE: LAN / VLAN SWITCH CORE (CISCO) WITH FIREWALL SOPHOS</title><link>https://community.sophos.com/thread/483949?ContentTypeID=1</link><pubDate>Tue, 07 Dec 2021 16:22:05 GMT</pubDate><guid isPermaLink="false">4be5eb7d-caa4-4ff5-8e60-8f9463545a35:3b71c787-dbac-4323-960f-8803f11e4cf1</guid><dc:creator>Rodolfo Flores</dc:creator><description>&lt;p&gt;&lt;img alt=" " src="/resized-image/__size/640x480/__key/communityserver-discussions-components-files/53/prueba-rodolfo.png" /&gt;&lt;/p&gt;
&lt;p&gt;&lt;/p&gt;
&lt;p&gt;&lt;/p&gt;&lt;div style="clear:both;"&gt;&lt;/div&gt;</description></item><item><title>RE: LAN / VLAN SWITCH CORE (CISCO) WITH FIREWALL SOPHOS</title><link>https://community.sophos.com/thread/483768?ContentTypeID=1</link><pubDate>Sun, 05 Dec 2021 19:05:12 GMT</pubDate><guid isPermaLink="false">4be5eb7d-caa4-4ff5-8e60-8f9463545a35:3e29005f-b81e-45e7-b8f6-fd527e46c15c</guid><dc:creator>BAlfson</dc:creator><description>&lt;p&gt;&amp;iexcl;Hola! Rodolfo and welcome to the UTM Community!&lt;/p&gt;
&lt;p&gt;Please&amp;nbsp;insert a picture of the Edit of the UTM Interface definition for the port connected to your switch.&lt;/p&gt;
&lt;p&gt;Cheers - Bob&lt;/p&gt;&lt;div style="clear:both;"&gt;&lt;/div&gt;</description></item></channel></rss>