This discussion has been locked.
You can no longer post new replies to this discussion. If you have a question you can start a new discussion

eoIP Sophos XG alternative

Hi Folks, 

Currently we have some customers that need extend the HeadOffice LAN network to Banch Office over internet, and currently they use Mikrotik with EOIP protocol.

Is there any wayt to do it with XG ?

 

Eg.

 

HO LAN 192.168.0.0/24    ---- Sophos XG  ------- Internet   -------- Sophos XG ------ BO LAN 192.168.0.0/24

 

Regards,

Carlos



This thread was automatically locked due to age.
Parents
  • Sophos could actually build this with RED Site to Site or IPsec.

    https://community.sophos.com/kb/en-us/125101

    It is like a Cable between both appliances. 

    __________________________________________________________________________________________________________________

  • Hi  thank you by your reply.

    When you say "RED", is it the Hardware or Software (embedded into XG appliances), or both? 

     

    Regards,

    Carlos

  • Hi Carlos, 

     

    Sophos Remote Ethernet Device (RED) is a small network appliance, designed to be as simple to deploy as possible. Its main purpose is to provide a secure tunnel from its deployment location to a Sophos XG Firewall.

    There is no user interface on the RED appliance. It is designed to be fully configured and managed from a Sophos Firewall. RED devices can be shipped to a remote site, connected to any DHCP connection to the internet, and be fully configured by a remote administrator with no prior knowledge of the site, and no need to walk local personnel through technical setup steps. 

     

    From Sophos Guide: https://community.sophos.com/kb/en-us/126454

     

    Best, 

     

    BadRobot

    Respectfully, 

     

    Badrobot

     

  • Hi  

    Yes I know abouot RED device. When I aked abou software I meant about RED Interface in sophos XG. Because My customers already has XG devices and not RED devices.

    Did you understood!?

     

    This config

     

    Cheers,

    Carlos

  • Actually XG is capable of doing the same mechanism like RED.

    You will simply follow my KBA and one XG acts as Server and one as a RED "Client".

    Basically that only matters in Case of multiple WAN Connections. 

    But most likely the tunnel will be up and you will have a "direct" connection between both XGs.

    So you have to setup everything like a direct connection - Routing, Firewalling etc. 

    __________________________________________________________________________________________________________________

Reply
  • Actually XG is capable of doing the same mechanism like RED.

    You will simply follow my KBA and one XG acts as Server and one as a RED "Client".

    Basically that only matters in Case of multiple WAN Connections. 

    But most likely the tunnel will be up and you will have a "direct" connection between both XGs.

    So you have to setup everything like a direct connection - Routing, Firewalling etc. 

    __________________________________________________________________________________________________________________

Children