Guest User!

You are not Sophos Staff.

This discussion has been locked.
You can no longer post new replies to this discussion. If you have a question you can start a new discussion

RED-60 VLAN Question

Hi,

Trying to get my RED to passthrough a local VLAN but doesn't seem to be working.

Having the RED in switchport mode SWITCH obviously doesn't pass it through, however local network works perfectly.

However when i change the RED to switchport mode VLAN and set the below:

All local network access (on Port 1)  drops off, can no longer access the local untagged network - also the VLAN 173 does not come through to the XG on the other side.

I have this VLAN set on the RED interface port as below:

However there is no communication at all to the RED once the switchport mode is changed.

What am i doing wrong?



This thread was automatically locked due to age.
Parents
  • Hello Daniel,

    You are doing nothing wrong. A RED-Tunnel does not transport VLANs. That's another layer.

    Mit freundlichem Gruß, best regards from Germany,

    Philipp Rusch

    New Vision GmbH, Germany
    Sophos Silver-Partner

    If a post solves your question please use the 'Verify Answer' button.

  • Thanks for this.

    So i cannot have my XG control and police 2 different VLANs on the other side of my RED?

  • Hello Daniel,

    please tell us about your use case. Is it two IP networks you need to connect to your HQ?

    Mit freundlichem Gruß, best regards from Germany,

    Philipp Rusch

    New Vision GmbH, Germany
    Sophos Silver-Partner

    If a post solves your question please use the 'Verify Answer' button.

  • Essentially on the remote site there are 2 networks: Native (untagged VLAN 1) and Guest (tagged VLAN 173).
    The RED is setup in Standard/Unified mode.

    All traffic for the native VLAN traverses the VPN and is controlled by the HQ XG, this VLAN also receives DHCP assignments via the RED.
    I would also like the Guest VLAN to traverse the VPN and be controlled separately by different policies (also i would like the Guest VLAN to receive DHCP addresses from the XG, currently these are provided by a DHCP server at the remote site).

    Is what i want to accomplish possible?
    According to the below link, it should be:

    Sophos Firewall: Configure a RED 50 or RED 60 with VLANs

Reply
  • Essentially on the remote site there are 2 networks: Native (untagged VLAN 1) and Guest (tagged VLAN 173).
    The RED is setup in Standard/Unified mode.

    All traffic for the native VLAN traverses the VPN and is controlled by the HQ XG, this VLAN also receives DHCP assignments via the RED.
    I would also like the Guest VLAN to traverse the VPN and be controlled separately by different policies (also i would like the Guest VLAN to receive DHCP addresses from the XG, currently these are provided by a DHCP server at the remote site).

    Is what i want to accomplish possible?
    According to the below link, it should be:

    Sophos Firewall: Configure a RED 50 or RED 60 with VLANs

Children
No Data
Share Feedback
×

Submitted a Tech Support Case lately from the Support Portal?