Guest User!

You are not Sophos Staff.

This discussion has been locked.
You can no longer post new replies to this discussion. If you have a question you can start a new discussion

RED SD20 Transparent/Split geht nur in eine Richtung

Hallo,

ich habe ein Problem. Ich habe bei einem Kunden eine Sophos XG125 stehen. In einer Aussenstelle steht eine RED SD20. Ich habe sie im dStandard/Split konfiguriert. Heißt ja der "normale" Internetverkehr geht direkt raus und der Rest über die RED in den Hauptsitz.

Ich hatte jetzt den Fall dass im Hauptsitz das Internet weg war. Ich war jetzt der falschen Ansicht dass im Standard/Split der "normale" Internetverkehr dann trotzdem geht. Dem war allerdings nicht so.

Nun wollte ich die RED in den Transparent/Split Modus umkonfigurieren. Das hat auch alles anstandslos funktioniert. Allerdings geht meine Verbindung nur in eine Richtung. Und zwar vom Hauptsitz in Richtung Aussenstelle. In dieser Richtung funktioniert Ping usw. Also ich erhhalte von der Aussenstelle eine Antwort. Komme ich von der Aussenstelle geht nichts durch. 

Ich habe jetzt gelesen, dass man wohl eine Route auf dem eigentlichen Gateway der Aussenstelle setzen muss!?

Ich habe es zum testen auf dem Client gesetzt ( also die Route) aber es ging trotzdem nicht.

Ich weiß nicht woran es liegt.

Kann mir da jemand helfen?



This thread was automatically locked due to age.
Parents
  • How did you integrate the RED in the Network flow in the location? Is the RED inplace or just a client in the network? 

  • Hi,

    The RED is just a Client i think.

    I have a DSL Modem/Router. I gave the Router the Gateway-Adress of the Network. I Connected the LAN Port to the WAN Port on the RED. I Connected the RED to the Network.

    When the RED comes Up everything is Green. I can also access the Werbinterface of the Modem/Router.

    I thought that the RED goes in Bridge-Like Mode when Transparent/Split is enabled, thats why i connected it this way

    On the Sophos I configured Transparent/Split

    I set Uplink to DHCP

    I configured the SplitDNS to the DNS of the Main-Site and the Network of the Main-Site and the Domain

    By the way if it is necessary to set static routes i would be a little bit tricky because i can not set static routes the gateway device.

Reply
  • Hi,

    The RED is just a Client i think.

    I have a DSL Modem/Router. I gave the Router the Gateway-Adress of the Network. I Connected the LAN Port to the WAN Port on the RED. I Connected the RED to the Network.

    When the RED comes Up everything is Green. I can also access the Werbinterface of the Modem/Router.

    I thought that the RED goes in Bridge-Like Mode when Transparent/Split is enabled, thats why i connected it this way

    On the Sophos I configured Transparent/Split

    I set Uplink to DHCP

    I configured the SplitDNS to the DNS of the Main-Site and the Network of the Main-Site and the Domain

    By the way if it is necessary to set static routes i would be a little bit tricky because i can not set static routes the gateway device.

Children
  • Basically RED in Transparent / Split mode will act on packets regarding the current configured interface in the config of XG. 

    If you setup a network like 192.168.1.0/24 on the config, RED will send all packets coming to 192.168.1.1 through the tunnel to the XG. 

    But the RED is simply a client in the network. Therefore "somebody" has to send the request first to the RED. Most likely this is be done by a static route on the default gateway. 

  • OK. That is strange

    Ich tried to add a static route on my laptop for testing and i didn't get a connection. If it would work i could say the customer that he has to change the Router.

    Do i understand right, ich have to set a route on the remote-site with destination network on main-site and the gateway the IP of the RED