Guest User!

You are not Sophos Staff.

This discussion has been locked.
You can no longer post new replies to this discussion. If you have a question you can start a new discussion

Sophos XG SFOS 17.5.15 : Moving WAN from one interface to another

hello 

I want to move my WAN from interface to another without manually reconfigure firewall rules.

is that possible?

thanks



This thread was automatically locked due to age.
Parents
  • I think Firewall rules should continue to work as long as they are mainly driven by Source and Destination Zones. And it's easy to switch ports between zones.

    The real complication and editing will come from elsewhere: DHCP is per-interface not zone, Gateways are per-interface not zone, etc. I think if you work through all of the things you'll have to change, you could perhaps use the Gateways settings to bring up the other Gateway and turn off the current Gateway (as long as the physical connections are either Gateways or unplugged, so you don't treat one of your LANs as a gateway).

    I'm not an expert though. Just my off-the-cuff thinking to keep the thread going. I assume you're switching to a SFP+ port, or otherwise higher-capacity port?

Reply
  • I think Firewall rules should continue to work as long as they are mainly driven by Source and Destination Zones. And it's easy to switch ports between zones.

    The real complication and editing will come from elsewhere: DHCP is per-interface not zone, Gateways are per-interface not zone, etc. I think if you work through all of the things you'll have to change, you could perhaps use the Gateways settings to bring up the other Gateway and turn off the current Gateway (as long as the physical connections are either Gateways or unplugged, so you don't treat one of your LANs as a gateway).

    I'm not an expert though. Just my off-the-cuff thinking to keep the thread going. I assume you're switching to a SFP+ port, or otherwise higher-capacity port?

Children
No Data