Hi Guys,
I'm struggling with my LAB environment to test Sopshos XG firewall (Home license) with only partial success.
Short LAB description :
1. Qnap as hypervisor (Qemu/KVM);
2. Virtual Machine - Sophos XG ( 4 cores , 6 GB RAM - SFOS 17.5.4 MR-4-1) ;
3. Network cards for sophos XG defined in QNAP(KVM ) as “VirtIO”;
4. Cisco SG300 switch;
5. Unifi AP with two SSID configured.
The configuration of VM Sophos XG is default
But additionally :
I've defined Port4 as normal physical interface with IP 10.0.60.1 connected to switch on port1.
I've defined Vlan with ID:61 and attached it to Sophos Port4 as Port4.61
I've created new Zone Name it: “Port4_61ZONE” and bound Port4 and Port4.61 to this zone.
I've created Firewall rule to get access to Internet for new zone.
I've created two dhcp pools
For Port4 - dhcp pool 10.0.60.100-200
For Port4.61 - pool 10.0.61.100-200
Physical connection
Simple connection schema
SOPHOS<Port4> --trunk--<port1>SWITCH<port2>--trunk-- AP
Sophos Port4 is connected physically to switch on port1(trunk mode on switch port)
Switch port2 is connected to Unifi AP (trunk mode on switch port )
Unifi AP broadcasts to SSID: SSID name ”T60” and SSID name “T61”
SSID ”T60” on AP is configured as native vlan id:1 so clients can get ip addresses from sophos dhcp pool 10.0.60.100-200
SSID “T61” on AP is configured as vlan id:61 so clients can get ip addresses from sophos dhcp pool 10.0.61.100-200
The main problem
As far I could test everything seems to work fine except bandwidth on Port4.61(vlan id: 61) so SSID ”T61”
The bandwidth in “T60” is ~79 Mb/s download , 10Mb/s upload
The bandwidth in “T61” is only ~10 Mb/s download, 10Mb/s upload
I attach also graphical representation of network infrastructure and screenshots from SOPHOS XG
Alternatively checked on UTM 9
I've also configured alternatively on the same QNAP VM(Sophos UTM 9) with configuration respectively to this on Sophos XG to check if the problem belongs to qnap and virtualization
Bandwidth on vlan port works smoothly ~79 Mb/s download , 10Mb/s upload on UTM 9
Any ideas what is the cause of this problem ?
This thread was automatically locked due to age.