This discussion has been locked.
You can no longer post new replies to this discussion. If you have a question you can start a new discussion

Red Device and UTM on same subnet

Hi Folks,

I want to use the same subnet on a remote site as I have in my Headquarters.
Clients on the remote site should get IP-adresses from the UTM via DHCP
I have connected a Red 10-device to my UTM (V9.310-11) without further configuration. I converted the Internal Interface of the UTM to "Ethernet Bridge" and added the Red-Interface to the bridge.

On the remote site I connected a computer to the Red Device and everything seems to work, the computer gets an ip-address through DHCP from the Headquarters. Even Internet-Surfing does work. 
But: I cannot connect to another machine on the HQ-Subnet.
The only machine I can ping through the bridge is the UTM.
Are there any firewall rules / filters I have to set up?
I have checked the firewall rules but nothing seems to be a problem.
But because the Red-Device is bridged I can´t see it in the network-definitions so I am not able to set up special rules like "Any from RED to Any ->allow"...
Any suggestions? Thx!
Andre


This thread was automatically locked due to age.
Parents
  • Yes, you will have to create a firewall rule to allow the traffic over the bridge like this:

    Internal -> Internal -> any -> allow

    Managing several Sophos firewalls both at work and at some home locations, dedicated to continuously improve IT-security and feeling well helping others with their IT-security challenges.

Reply
  • Yes, you will have to create a firewall rule to allow the traffic over the bridge like this:

    Internal -> Internal -> any -> allow

    Managing several Sophos firewalls both at work and at some home locations, dedicated to continuously improve IT-security and feeling well helping others with their IT-security challenges.

Children
  • Thx for the suggestion, but it does not work.
    Interesting thing is that all other VPN´s beside can ping the Machine behind the Red Device, only traffic between machines on the UTM´s subnet and the computers behind the Red cannot connect.
    And even worse: a ping from the computer behind the Red to a machine in the UTM´s subnet does not show up in the firewall log.

    Andre