Guest User!

You are not Sophos Staff.

This discussion has been locked.
You can no longer post new replies to this discussion. If you have a question you can start a new discussion

Sophos config for multipple WLAN and VPN

Hi all 

im about to configure my Sophos XG now it looks like this:

As i want a VPN i will set the Fritzbox Router to Bridge Mode so it will work like a modem.

But i also wonder if - and how - i can use the AP from the Fritzbox for WLAN and also the one from the Fw Router(it has a build in PCIe Modul)
My Goal is to have 2 diferent WLANs and a VPN.

Thank you guys in advance!



This thread was automatically locked due to age.
  • FormerMember
    +1 FormerMember

    Hi , Thanks for reaching out to Sophos Community.

    This depends. If you're putting firtzbox in bridge mode and directly add Public IP or configure ISP directly on the Firewall, then you won't be able to use Internet through Fritzbox's Access ID because the Internet is connected on the firewall and the fritzbox router sits transperatnly between the ISP and Firewall.

    From Firewall you can either connect Sophos AP and manage them through the firewall or connected any third party access-point, Configure it in the bridge and Fireawall can server DHCP requests to the wireless clients.

  • Maybe it would be better for you using the "Exposed Host" feature of the Fritzbox. When you configure it in bridge mode - as far as I remember - VoIP (if used) and WLAN features don't work anymore.

    In this scenario you should disable the default SNAT/MASQ rule so that your traffic is not NAT'ed two times.

    We played around with the Sophos UTM for a while and were able to use Fritzbox's WLAN over a DHCP server and firewall rules of the UTM. I will try to find the old thread. Never tested it on XG, but I think it should work.

    Edit: that's the old thread: community.sophos.com/.../eigenen-ap-raspberry-pi-3-durch-sophos-utm-schutzen-update-sophos-utm-und-fb-7490---so-gehts

  • Hi,

    what is your internet connection type? Maybe the XG will connect to it without the fritzbox in line?

    ian