Hi,
I like to replace my ZyWall USG 100 with a Sophos XG 105w or 115w and wondering if i can get finally also rid of some issue i've since years:
Currently i've a WAN router in place (which gets a DHCP address from provider and holds my own public IP Subnet), as two of my servers need to have the public IP directly assigned i couldn't put them in DMZ (behind Zywall) and can just use software firewall on the system itself.
I'm wondering if it's possible with bridge ports to have all systems behind Sophos XG, using one of the public IP's for the client subnet behind and use the rest of the public IP's from the same subnet directly for servers in DMZ.
Attached also some attempt of a drawing - currently the 2 systems with the mandatory public ip's are on the WAN router directly and i'd like to get them somehow behind the Sophos XG too if possible. I know that splitting up the WAN subnet in two subnet's would be the clean way but thats actually not possible.
This thread was automatically locked due to age.