Guest User!

You are not Sophos Staff.

This discussion has been locked.
You can no longer post new replies to this discussion. If you have a question you can start a new discussion

XG106 Backup WAN v18.5

Hi all

I'm still a bit new to Sophos XG, so apologies in advance if I'm not using the right terminology etc. Am running the latest firmware (SFOS 18.5.1 MR-1-Build326) and the current WAN uses DMZ to enable me to add VLAN tagging as required by the ISP (as it appears a static WAN connection doesn't have a VLAN field).

Port 2 is where the WAN comes in and Port 1 connects to the LAN (a switch). There is also the default Bridge (br0) that has ports 1, 3 and 4 as Member Interfaces. I wish to plug a backup WAN into Port 4, so I remove Port 4 from the Bridge (br0) so that I can set it up as an Interface. As soon as I do this and save the change, ALL internal traffic drops (eg. no devices can see the internet and I can't even access the XG106 on it's own LAN IP). I would expect problems if I was to remove Port 1, as that's the internal LAN port, however, I'm removing Port 4, which has (currently) nothing connected to it.

Anyone got any ideas? Is this a bug or is there some sort of logic here that I'm missing and I'm just a fool?

Any help greatly appreciated!



This thread was automatically locked due to age.
Parents
  • FormerMember
    +1 FormerMember

    Hi ,

    Thank you for reaching out to Sophos Community.

    Follow the steps below to configure the WAN interface with a VLAN ID.

    ==> As mentioned you've connected the ISP link on interface Port2.

    ==> First, configure the Port2 interface with a fake IP address.

    ==> After that, add a VLAN interface on Port2 with the required IP configuration.

    ==> Interface configuration may look as below.

    I wish to plug a backup WAN into Port 4, so I remove Port 4 from the Bridge (br0) so that I can set it up as an Interface. As soon as I do this and save the change, ALL internal traffic drops (eg. no devices can see the internet and I can't even access the XG106 on it's own LAN IP). I would expect problems if I was to remove Port 1, as that's the internal LAN port, however, I'm removing Port 4, which has (currently) nothing connected to it.

    Removing the Port4 interface from a bridge pair should not affect other interface traffic.

    If this is a fresh configuration and if you want to use all interfaces separately, then I'd suggest taking firewall GUI access over WAN, delete the bridge pair and configure required LAN/WAN interface.

    Note: Deleting bridge pair will remove all dependent configurations(DHCP, device access, interface-based hosts, gateways, static routes) of member interfaces(Port1, Port3 & Port4).

    Please ensure to take a configuration backup before making any configuration changes.

    Let me know if you've any questions with regards.

  • Thanks Yash, will book in with my client and give this a try!

    Cheers

    Steve

  • FormerMember
    0 FormerMember in reply to Steve West

    Alright, let me know if you come across any issues while performing the suggested steps.

  • Just wanted to say a quick thank you, this has worked perfectly for me! After fixing the Port 2 Interface, I didn't have issues after removing Port 4 from the Bridge.

    Warm regards

    Steve

  • FormerMember
    0 FormerMember in reply to Steve West

    Hi ,

    Glad to know that an issue is resolved now.

Reply Children
No Data