• Sophos UTM additional addresses.

    Hi, Tony here (sorry the temporary maintenance seems to have created me a new user and not offering me a login!) I am trying to add an additional IP range to my Sophos UTM. 9.413-4 (Virtual appliance) I have 6 physical interfaces. 2 of them are…
  • load balancing

    We are adding 2 WAN connections next week I have reviewed as much documentation as I can but I cannot determine the best and correct configuration to achieve this. both new WAN lines are working 1st mainline microwave and the 2nd fiber we want to creat…
  • load balancing

    We are adding 2 WAN connections next week I have reviewed as much documentation as I can but I cannot determine the best and correct configuration to achieve this. both new WAN lines are working 1st mainline microwave and the 2nd fiber we want to creat…
  • Cannot add additional LAN interface

    Hi, I have an SG230 with a couple LANs: Staff and Guest. They work fine and can get out to the internet. I'm trying to add a third LAN. I seem to have all the settings the same as the other two (different subnet of course) but for some reason at cannot…
  • One seperate external Line for only one SSL VPN Power-User of many

    Hello Everyone, a customer of ours asked us a question about giving a Power-User a seperate DSL-Line with a static IP-Address for his home-office. So here is my question: Is it possible to give one single user an ssl-vpn profile that connects…
  • DNAT black hole/null routing not working

    I have been reading through Rulz and this earlier post trying to get my blackhole/null route working with DNAT since my firewall rules were not (as explained by Rulz). From the latter link, BAlfson said the following is a valid DNAT configuration: …
  • IPv6 not recognized in web interface

    Hi I can see an IPv6 added, and the default gateway has been set dynamically. I can ping6 to the internet from SSH. However, the UI does not recognize the address, and I cannot do anything on the Prefix advertisement page (it complains about the interface…
  • Odd DMZ behavior?

    I setup a DMZ on a separate physical interface on a SG330; however, I can still ping hosts on all our internal networks. The only way for me to get this to stop is to disable both "Global ICMP Settings" and "Traceroute Settings" under the Network Protection…
  • QOS definem values and limit aplications

    Hello all! O would aprecciate some help from the comunity concerning UTM 9 for home. My setup at home is a ISP internet line with 14MB download and 1MB upload, we have a couple of computers where the kids play, a Apple TV for media streming like netflix…
  • Unwanted traffic originating at UTM

    Hi all, since a few days I have a problem with unwanted traffic originating at the external interface of my UTM. It's destination addresses are from 17.0.0.0/8 (Apple?), the traffic seems to be HTTP (port 80), the application is classified as "doof…
  • Different firewall rules per WAN link

    We have a Sophos UTM SG 125. We have two WAN links, our main one through our ISP and a 4G modem link setup in an active / standby configuration. (Uplink Balancing and Uplink Monitoring) When our main ISP connection fails, it fails over to the 4G cell…
  • Internet access for only one host in Production Vlan through UTM SG330

    Hi Guys, I have a small issue regarding Providing to One Specific Host Internet Access for Temporary Time. I Have One Production Vlan which doesn't have have Internet access. For a short time I need to Provide the Internet access to One Particular Host…
  • Sophos UTM 9 double NAT

    I am new to this and just finding my way around setting up utm/firewalls i have a 2 firewall setup an internal sophos utm 9 ffirewall and an external firewall The internal firewall sophos utm 9 is setup where all computers and mobile devices are behind…
  • RDP of a Windows computer through UTM 9.3 between multiple subnets?

    I have published several RDP targets through my UTMs over the years, but this particular one seems to have me stumped. So, here is my layout. Internet -->Router (Subnet 1)-->UTM--(Subnet 2) Subnet 1 houses all of my General use items (WiFi TVs, Game…
  • Masquerading and SNAT is not working with Additional addresses

    Hi, We have SG310 with latest updates installed. we have 5 public IP's from our ISP"X" and another 5 from ISP"Y", what i want to have is: Our production network (eth0) will get out through (eth1) ISP"X" with a public IP(1) Our Mail Exchange server…
  • Am I Missing Something? Firewall rule not blocking tracert

    UTM 9.3 Software version Onboard NIC - WAN Dual NIC Card - Internal Networks. I have just set up and activated the second internal network. I want to keep the two segmented and understood this was by default. However, when I tracert a device on network…
  • DMZ to Internal

    Hi Have been trying to get some of our DMZ servers to work with the UTM for services etc WEB proxy NTP with no luck UTM has .. Internal interface External Interface DMZ interface and all sit behind a Juniper DMZ hosts have access to Internal…