This discussion has been locked.
You can no longer post new replies to this discussion. If you have a question you can start a new discussion

COMMUNICATION BETWEEN VLANs and INTERNET

Hi all, am using CR750iNG-XP (SFOS 17.5.9 MR-9) - the OS has been replaced with a SOPHOS OS, so it's SOPHOS XG FIREWALL- at my internet gateway. I also have a CISCO Catalyst Layer 3 (4507R-E)switch as the core switch on my LAN with other layer 2 cisco switches. I have setup VLANs on my CISCO core switch, inter-vlan routing was successful, communication between the vlans and the interface of the XG Firewall was also successful.But communication between vlans and the internet is giving me issues.Anyone with an idea should kindly help please. Thank you



This thread was automatically locked due to age.
Parents Reply Children
  • YES.I CREATED LAN TO WAN FIREWALL RULE TO ALLOW ACCESS TO THE INTERNET. I ALSO CREATED STATIC ROUTES FOR ALL THE VLANs ON SOPHOS XG.I WAS ABLE TO PING THE XG INTERFACE, BUT UNABLE TO GO OUT TO THE INTERNET.

    I NEED FURTHER GUIDE TO GET THIS RIGHT PLEASE. 

    THANK YOU

  • Hello Ezekiel,

    you know that you have to do NAT/MASQerading on the gateway between private and public IP-networks?

    That means a separate  MASQ-Rule for every VLAN "inside" that should be able to reach ressources on the internet.

    Mit freundlichem Gruß, best regards from Germany,

    Philipp Rusch

    New Vision GmbH, Germany
    Sophos Silver-Partner

    If a post solves your question please use the 'Verify Answer' button.

  • Hi Ezekiel,

    1) Please share the snapshot of Network > Interface that shows entire interface configuration including VLAN's.

    2) Snapshot of Routing > Static Route, where you have added static route

    3) Get output of below command from the system :

    cmd > tracert -d 103.23.140.55

    Regards,
    Resolution 24x7