Guest User!

You are not Sophos Staff.

This discussion has been locked.
You can no longer post new replies to this discussion. If you have a question you can start a new discussion

SNAT and SD WAN for one specific LAN

hi all,

we have quite a few LANS on LAN/DMZ zones and two WANS

i want one specific LAN (dmz zone) to go out WAN2, obviously i know i need to create an SD WAN, SNAT MASQ and firewall lan to wan rule for this (below)

https://community.sophos.com/sophos-xg-firewall/f/recommended-reads/121919/how-to-configure-firewall-rule-and-nat-rule-on-sophos-xg-v18

The one specific lan I want to go out wan2 I'm going to specify the source zone network and inbound/outbound ports ie lan2 Int and wan2 int

All the others il specify any zones any networks and the other inbound/outbound ports ie lan1 Int and wan1 int

Do I need to specify the order of the nats

thanks,

rob



This thread was automatically locked due to age.
Parents Reply
  • Thank you

    Under

    Nat > interface matching criteria > inbound interface

    You can select multiple ones, so I can select all my other lan1s wanting to go out wan 1

    But under

    SD wan policy routing > incoming interface

    In the drop down you can only select one from the drop down list

    So I persume I need to create multiple sd wans for my other lan1s as i have multiple lan1 interfaces wanting to go out wan1

Children
No Data
Share Feedback
×

Submitted a Tech Support Case lately from the Support Portal?