• Multiple outgoing IP's with single WAN port

    Hi, I have several web servers running behind a single Sophos UTM, with two interface: - eth0 > external (x.x.x.7/26) with default GW (x.x.x.1) > Additional addresses > x.x.x.8/26 > x.x.x.9/26 > x.x.x.10/26 > etc - eth1 > internal (10…
  • Routing specific traffic out through an additional address on an interface

    Hi, I need to set up a way to route specific traffic from one server out through or to show as an additional public address that we have set up but cannot seem to figure out where to set it. It always seems to show as the main IP address of the interface…
  • One seperate external Line for only one SSL VPN Power-User of many

    Hello Everyone, a customer of ours asked us a question about giving a Power-User a seperate DSL-Line with a static IP-Address for his home-office. So here is my question: Is it possible to give one single user an ssl-vpn profile that connects…
  • Error while trying to configure Source NAT for additional addresses

    Hello Sophos community, I am trying to configure a source NAT for an internal server. I want the server to be known on the outside as one of my additional addresses, like so: LAN_SRV --> Using Any Service --> Going anywhere Translate source…
  • Sophos UTM 9 double NAT

    I am new to this and just finding my way around setting up utm/firewalls i have a 2 firewall setup an internal sophos utm 9 ffirewall and an external firewall The internal firewall sophos utm 9 is setup where all computers and mobile devices are behind…
  • Masquerading and SNAT is not working with Additional addresses

    Hi, We have SG310 with latest updates installed. we have 5 public IP's from our ISP"X" and another 5 from ISP"Y", what i want to have is: Our production network (eth0) will get out through (eth1) ISP"X" with a public IP(1) Our Mail Exchange server…
  • Am I Missing Something? Firewall rule not blocking tracert

    UTM 9.3 Software version Onboard NIC - WAN Dual NIC Card - Internal Networks. I have just set up and activated the second internal network. I want to keep the two segmented and understood this was by default. However, when I tracert a device on network…