This discussion has been locked.
You can no longer post new replies to this discussion. If you have a question you can start a new discussion

[Fresh From the Press: Latest KB's] Sophos XG Firewall: How to configure BGP

Hi All,

Border Gateway Protocol (BGP) is a path vector protocol that contains path information, enabling the routers to share routing information between autonomous systems (AS) so that loop-free routes can be created. This protocol is generally used by ISPs.

This article describes how to configure BGP in the Sophos XG Firewall.



This thread was automatically locked due to age.
Parents
  • Hi,

    We're looking to replace our existing Juniper routers ( a pair, one per fibre circuit/ISP ) and firewalls ( an HA pair ) and are considering the Sophos XG. 

    The documentation on BGP seems light - not much more than an explanation of what each of the UI configuration boxes do.

    In an ideal world we'd replace the Junipers routers and and firewalls with an HA pair of Sophos XGs. We're already using our own AS number and PI IP address space with the Junipers.

     

    Is there any documentation on the BGP capabilities of the XG?

    The fibre circuits are delivered as Ethernet and we'd switches/VLANs to enable both XG's to have access to both fibre circuits and only one XG would be active at any time.

    Is it simply a matter of creating the BGP peer on the XG and setting up the peering relationship with the two ISPs and letting the XG get on with it?

Reply
  • Hi,

    We're looking to replace our existing Juniper routers ( a pair, one per fibre circuit/ISP ) and firewalls ( an HA pair ) and are considering the Sophos XG. 

    The documentation on BGP seems light - not much more than an explanation of what each of the UI configuration boxes do.

    In an ideal world we'd replace the Junipers routers and and firewalls with an HA pair of Sophos XGs. We're already using our own AS number and PI IP address space with the Junipers.

     

    Is there any documentation on the BGP capabilities of the XG?

    The fibre circuits are delivered as Ethernet and we'd switches/VLANs to enable both XG's to have access to both fibre circuits and only one XG would be active at any time.

    Is it simply a matter of creating the BGP peer on the XG and setting up the peering relationship with the two ISPs and letting the XG get on with it?

Children