This discussion has been locked.
You can no longer post new replies to this discussion. If you have a question you can start a new discussion

New ISP

We have a UTM 9

We will be migrating to a new ISP soon.

They have given us the new IP addresses but I am unsure how to implement the new IP addresses in the UTM

it seems that they have issued a new WAN Address

WANIP Block:XXX.XXX.XXX.XXX/30

RouterIP: XXX.XXX.XXX.XXX - Reserved for the Carrier and will be your gateway

Subnet Mask 255.255.255.252

Usable Range XXX.XXX.XXX.XXX - assigned to your equipment

 

LANIP Block XXX.XXX.XXX.120/29

GateWay XXX.XXX.XXX.121

Subnet 255.255.255.248

DNS1 XXX.XXX.XXX.XXX

DNS2 XXX.XXX.XXX.XXX

Usable Range: XXX.XXX.XXX.122 - XXX.XXX.XXX.126

My current ISP only uses the /29 addresses so I have

1 Address assigned to UTM, 1 Address Assigned to Gateway, and 3 Addresses assigned to WAN using additional addresses.

How do I setup the UTM to take advantage of all 5 IP addresses. using the WAN Block?

Thank you.



This thread was automatically locked due to age.
Parents
  • WANIP Block:XXX.XXX.XXX.XXX/30

    You will only be able to use the IP they have gave you. There other IP is the peering address as a /30 only has 2 usable IP addresses

    You will need to contact them to get a /29 (5 usable IP's)

    I'd try and get an IPv6 /64 prefix too then you can have as many as you want and most are free compared to a block of 8/16 IPv4's and are also becoming more prevalent by the day.

  • my new ISP has assigned a block of /29 addresses

    XXX.XXX.XXX.120/29 Block

    with gateway a .121

    and 5 usable addresses .122 - .126

    with DNS1 address

    and DNS2 address

    I don't understand can I use the /29 they assigned?

    George

Reply Children
  • it seems that they have issued a new WAN Address

    WANIP Block:XXX.XXX.XXX.XXX/30

    RouterIP: XXX.XXX.XXX.XXX - Reserved for the Carrier and will be your gateway

    Subnet Mask 255.255.255.252

    Usable Range XXX.XXX.XXX.XXX - assigned to your equipment

     

    Ummmm. that tells me that you only have 1 WAN IP address.

    Is your LAN block of IP's from a private range or a fully routeable range?

  • Hi George - first time we've seen you post here - welcome to the UTM Community!

    One of the usable addresses will be the IP of your WAN interface.  You probably want to use the other four as Additional Addresses on that interface and then use NAT rules with them.

    Cheers - Bob

     
    Sophos UTM Community Moderator
    Sophos Certified Architect - UTM
    Sophos Certified Engineer - XG
    Gold Solution Partner since 2005
    MediaSoft, Inc. USA
  • thanks, I realized I need to add an Edge Router before the SG-125.

    the new ISP has  given us a Fiber connection with a Copper hand off.

    the WAN IP /30 address is for connecting to the ISP.

    the /29 address is for our internal equipment to reach the internet.

    it seems our ISP will only accept internet traffic from the WAN address.

    the /30 is for other devices that may need direct access to the internet, but I am going to use in my SG-125, as additional addresses.

    I have a VPN, VOIP phones, 4 VLANS, and a Wireless Access Point.

    I have ordered my Edge Router, and should have it in a couple of days.

    George