This discussion has been locked.
You can no longer post new replies to this discussion. If you have a question you can start a new discussion

XG - Unable to access Admin from routed subnet with bypass enabled

Hi there, we have a fairly simple setup. We have a XG firewall, it has two subnets (LAN) one physical, one virtual interface. We have an external subnet which is routed to another router on the physical network. I added in a bypass-stateful-firewall-config to allow the LAN traffic to talk (between that routed subnet, and the XG). 

Everything is working fine, the issue is when I am on the routed subnet I am unable to access the administration portal (on port 4444). In the log it is showing up as "Invalid Traffic" - "Could not associate packet to any connection". Yes, that is correct, there is no physical interface that has an IP on the external subnet. But I figured the bypass rule would allow it.

Does anyone have any idea how to allow access to this? 

I have a standard NAT LAN->WAN rule, and above that a LAN->LAN rule to allow internal access on the LAN interface. 



This thread was automatically locked due to age.
Parents
  • Hello Jack,

    Thank you for contacting the Sophos Community.

    If you bypassed a network on the XG, this network would not be able to access the GUI of the XG, as the XG is not intercepting this traffic, it just strictly route the traffic.

    Regards,

Reply
  • Hello Jack,

    Thank you for contacting the Sophos Community.

    If you bypassed a network on the XG, this network would not be able to access the GUI of the XG, as the XG is not intercepting this traffic, it just strictly route the traffic.

    Regards,

Children
No Data