This discussion has been locked.
You can no longer post new replies to this discussion. If you have a question you can start a new discussion

Cisco router and switch behind sophos firewall

HI TEAM,

I would like to ask something regarding on my setup, I will have this kind of setup ISP>SOPHOS FIREWALL> CISCO ROUTER> CISCO CORE SWITCH> DISTRO SWITCH> ACCESS SWITCH. The router and switches will not be a problem for me on routing them to each other however I don't know how to make the firewall route the router and switches or does the firewall needs to route them.?



This thread was automatically locked due to age.
  • Hi Michael and welcome to the UTM Community!

    I would work on eliminating the Cisco router to have the UTM connected directly to your core switch.  WebAdmin automatically creates routes between all "(Network)" objects defined on Interfaces - you only need to create firewall rules to allow the traffic you want.  If there are subnets behind the other switches that are otherwise unknown to the UTM, you will need to create Static Routes for them.

    Cheers - Bob

  • what if the Cisco router is required for the routing, sir? let's say the company wants only Sophos XG to act only as firewall and let the Cisco router do the routing works. As for them, cisco is much better on routing, and it will only give the firewall a heavy workload if the firewall will also act as a router.