This discussion has been locked.
You can no longer post new replies to this discussion. If you have a question you can start a new discussion

Sophos XG Second Gateway

Dear All,

I'm Looking for help as I can't configure a second Gateway on my XG. 

My Scenario:

I have one Sophos UTM and one Sophos XG which both Uplink via WAN/NAT to the same ISP Router.

Both protect local LANs with their Firewalls and are interconnected. Everything works fine. I can reach all subnets with corresponsing rules.

As the XG has a WAN interface towards the ISP Router, it can route the Guest LAN Traffic directly to the Uplink router.

 

Now to my Problem:

I want to router the traffic from LAN2 via the UTM towards the ISP Router, in order to have only one set of Firewall rules for "friendly" traffic.

To my understanding this should by possible via Policy Based Routing.

In order to Setup the Policy based routing I need to add a second Gateway (192.168.10.1 via 192.168.10.2).

But this Fails with "Gateway Host xxx can not be added". 

I have no clue why.

 

A hint would be greatly appreciated.

Best wishes & you all stay healthy 

Mike



This thread was automatically locked due to age.
  • Hi rfcat_vk,

    thanks for the hint.

    Back on (SFOS 17.5.11 MR-11).

     

    P.S.: For everybody moving back and forth make shure to Upload the new Firmware again. Otherwise the config won't get migrated from the previous version.

    Might cause some nasty suprises if you changed config on the old image in the meantime.

  • Hi Guys, somehow I managed to solve it by accident.

    I was able to create the Gateway by supplying a NAT Rule (MASQ).

    Once the Gateway was created I was able to switch it to no NAT Rule.

    Works now. Thanks for your help.

    Have a great easter holiday & stay safe