Guest User!

You are not Sophos Staff.

This discussion has been locked.
You can no longer post new replies to this discussion. If you have a question you can start a new discussion

XGS 2100 | selectively allow (or not allow) communication between 2 VLANs?

In one of my previous posts, I set up several virtual interfaces on my primary F1 interface. 

They are both effectively a gateway IP in their respective VLANs. The rest of the devices on the network can safely reach their respective gateways(the virtual interfaces). 

I am wondering how I can achieve my Firewall (XGS2100) to selectively allow (or not allow) communication between the 2 VLANs?

 

I created simple static routes, and disabled all NAT rules. 

When I created the firewall rules, they don't seem to affect anything.

 Regardless wheter this is on or off. 

So for example, when I try to ping from 10.88.100.83 to 10.88.88.213, I get message "Destiantion net unreachable". 

This is my current setup. 

Any info will be greatly appreciated. Thank you. 



This thread was automatically locked due to age.
Parents
  • If I try pinging 10.88.100.1 from 10.88.100.83, I can see the frames hitting the XGS; 

    If I try pinging 10.88.88.1 from 10.88.100.83, I can not see anything hitting the XGS. 

    DOes this mean I need to set up some routes on my switches? 

Reply
  • If I try pinging 10.88.100.1 from 10.88.100.83, I can see the frames hitting the XGS; 

    If I try pinging 10.88.88.1 from 10.88.100.83, I can not see anything hitting the XGS. 

    DOes this mean I need to set up some routes on my switches? 

Children
Share Feedback
×

Submitted a Tech Support Case lately from the Support Portal?