This discussion has been locked.
You can no longer post new replies to this discussion. If you have a question you can start a new discussion

Allow traffic from external vpn server

greetings,

I have just started with sophos xg, need help with allowing external vpn server to private network. Below is my config

ISP router (with VPN ) --> WAN interface --> LAN interface

VPN subnet is 10.8.0.0/24

Need to allow vpn traffic to LAN 192.168.2.0/24 network so users can connect to internal servers

Any help with precise steps will be great as i have applied all possible scenarios

Thanks



This thread was automatically locked due to age.
  • FormerMember
    0 FormerMember

    Hi  

    Thank you for reaching out to the Community! 

    In your current setup, VPN is terminated at your ISP router? Are you not using site to site or remote VPN with an XG firewall? Do you any route configured on your ISP router to forward this traffic to XG? You might have to create a static route for the VPN network and a matching firewall rule.

    Could you please provide the screenshot of your network interface configuration via PM? 

    Thanks,

  • Hi Patel,

    VPN service is provided by isp router and terminated on it. I have added sophos right after isp router.

    No can't use sophos vpn as isp vpn is openvpn. And sophos doesn't have openvpn.

    Network interface configuration is as below, I'll PM you screenshot as well.

    ISP Router public IP with openvpn --> sophos wan interface (192.168.3.0/24) --> sophos lan