This discussion has been locked.
You can no longer post new replies to this discussion. If you have a question you can start a new discussion

Sophos sg105 UTM 9 - VLAN setup

Hello,

I am going to rent an office space to an external company. I have to separate the network so that the tenant does not reach our internal resources.

can i set up vlan to separate? if so, how is this done?



This thread was automatically locked due to age.
Parents
  • Think of the vlan as a separate  layer 2 network segment, coexisting with other segments on the same cable.  As such you would have to define/allow services you want it to have, same as for an interface.

    Appears the sg105 has 4 ports on the back. You would define one of the unused ports for your tenant. You don't necessarily have to use vlan. Vlans are used when you want to segregate an in use interface. Doing so eliminates the complication of having to use a managed switch for traffic on that interface.

    You then define services (nat, firewall, etc) you want them to have access to.  Unless you explicitly define firewall rules between interfaces (or vlans), traffic from one cannot cross to another. Of course, the new interface would be on an unused subnet as well.

Reply
  • Think of the vlan as a separate  layer 2 network segment, coexisting with other segments on the same cable.  As such you would have to define/allow services you want it to have, same as for an interface.

    Appears the sg105 has 4 ports on the back. You would define one of the unused ports for your tenant. You don't necessarily have to use vlan. Vlans are used when you want to segregate an in use interface. Doing so eliminates the complication of having to use a managed switch for traffic on that interface.

    You then define services (nat, firewall, etc) you want them to have access to.  Unless you explicitly define firewall rules between interfaces (or vlans), traffic from one cannot cross to another. Of course, the new interface would be on an unused subnet as well.

Children