This discussion has been locked.
You can no longer post new replies to this discussion. If you have a question you can start a new discussion

RED access to XG configuration page

I'm new to Sophos XG and RED, so pardon if the answer to this is buried somewhere in the documentation (I can't find it though).  I've established a Red SD-20 tunnel from my home office back to an XG firewall at my primary office.  It's my own company (so no security issues - I physically control both sites and I am the only IT person).

Everything works on either end of the tunnel except being able to access the XG appliance's config page via a PC plugged into the RED.  I'd like to do this to manage the configuration when I'm at home. 

In the office I can reach the XG by its address (http://10.100.1.1:4444).  From my home I can ping that address, but if I type it into a browser I can't get to the XG. I have located the settings under Administration then Device Access, and have given the RED all permissions across the row.  Since it's a new setup I haven't yet installed any fine-tuning on the firewall rules. 

For the time being I can ping any segment of the office LAN from the RED.  I can access web pages on other devices in the 10.100.1.x VLAN (like our switches and access points).  I just can't figure out how to manage the XG.  Any help is appreciated.  Thanks!



This thread was automatically locked due to age.
Parents
  • FormerMember
    0 FormerMember

    Hi ,

    Thank you for reaching out to the Community! 

    What is the current firmware version on your firewall? 

    If you already selected HTTPS under Administration > Device Access > Admin Services for the zone that your RED device is configured, then it might be the issue with the MTU. The traffic might be fragmented before it arrives at the XG firewall. 

    If you run a packet capture on the source IP address on the XG firewall, do you see any traffic on port 4444? 

    Check out the following KBA on how to run packet capture from the GUI: 

    Monitor traffic using Packet Capture Utility in the Sophos XG Firewall GUI

    Thanks,

Reply
  • FormerMember
    0 FormerMember

    Hi ,

    Thank you for reaching out to the Community! 

    What is the current firmware version on your firewall? 

    If you already selected HTTPS under Administration > Device Access > Admin Services for the zone that your RED device is configured, then it might be the issue with the MTU. The traffic might be fragmented before it arrives at the XG firewall. 

    If you run a packet capture on the source IP address on the XG firewall, do you see any traffic on port 4444? 

    Check out the following KBA on how to run packet capture from the GUI: 

    Monitor traffic using Packet Capture Utility in the Sophos XG Firewall GUI

    Thanks,

Children
No Data