This discussion has been locked.
You can no longer post new replies to this discussion. If you have a question you can start a new discussion

Sophos XG Home VLAN

I am clearly missing something so I'm hoping someone here can help me out.

 

Here is the Sophos XG config (ignore GuestAP interface, it isn't in use):

Single VLAN interface using Port3.

This is the VLAN interface setup:

Here is the DHCP setup:

I am connecting a laptop directly into the physical port on the XG firewall for Port3 and manually assigning an IP address of 10.10.10.5. For some reason, I cannot ping Sophos XG firewall and have no access to the outside world.

Both Port3 and Port3.10 are in the LAN Zone and here is the Zone config:

When I leave the laptop in DHCP mode, it is assigned an IP in the 192.168.200.1/24 range and everything works as expected. But when manually assigned, nothing seems to work.

Here is my firewall rule:

What am I missing? This should work, correct?



This thread was automatically locked due to age.
Parents
  • Very simple, you do not have a VLAN configured on your PC. You would need a managed switch with tagged and untagged ports.

    Ian

    XG115W - v19.5.1 mr-1 - Home

    If a post solves your question please use the 'Verify Answer' button.

  • Sorry, should have seen that. Been trying to get this VLAN to work for over a day now.

    Here is the Ubiquiti switch config:

    Switch Port 3 = Sophos XG

    Switch Port 8 = Laptop

    Still no traffic allowed and no DHCP assignment.

  • I should mention, I've used XG setup for VLAN 20 instead of 30 now including DHCP and INterface.

  • Hi Nash,

    I don't see a gateway assigned, but that doesn't affect the DHCP requests. Does the switch have any protocol functions?

    If you plug the PC into say port 8 which should be part of vlan 1 what do you get for an IP address?

    Ian

    added info

    Your configuration shows 3.10, should now be 3.20

    XG115W - v19.5.1 mr-1 - Home

    If a post solves your question please use the 'Verify Answer' button.

  • The laptop is currently plugged into Switch Port 8.

    When I change the switch settings to this, I get assigned an IP in the 192.168.100.X range which is correct for the standard default DHCP server for Port 1 on Sophos.

    As soon as I exclude Switch Port 8 from VLAN1, DHCP fails to assign an IP for the 10.10.10.X range. Since the port is tagged for VLAN20, I expect it to assign an IP in the 10.10.10.X range but even with a manual IP assignment, no internet connectivity.

  • rfcat_vk said:

    I don't see a gateway assigned

    By the way, the DHCP setup uses Static IP range that I've assigned during setup and Gateway is disabled by default in that setup. When creating the VLAN20, I selected to use the interface IP as Gateway. This is how all instructions I've seen so far indicated setup should be.

  • Laptop should connected to untagged port and XG to tagged port vlan20.

    I know this is the simple solution but please try restarting the XG.

    Ian

    XG115W - v19.5.1 mr-1 - Home

    If a post solves your question please use the 'Verify Answer' button.

  • rfcat_vk said:

    added info

    Your configuration shows 3.10, should now be 3.20

     
    Yeah sorry, I had to change my config a bit because Port 3 is normally assigned to my teenaged son. While he's asleep I can use it to test but now thet he's using the computer, had to revert to...
     
    - Port 1.20 VLAN
    - DHCP changed accordingly as well
Reply
  • rfcat_vk said:

    added info

    Your configuration shows 3.10, should now be 3.20

     
    Yeah sorry, I had to change my config a bit because Port 3 is normally assigned to my teenaged son. While he's asleep I can use it to test but now thet he's using the computer, had to revert to...
     
    - Port 1.20 VLAN
    - DHCP changed accordingly as well
Children