Guest User!

You are not Sophos Staff.

This discussion has been locked.
You can no longer post new replies to this discussion. If you have a question you can start a new discussion

Branch office wireless - no guest network

Hello all,

We have an XG at our main site which is working well.  It has a normal, bridged user network and a guest wireless network on a separate zone..  This all works fine.

We deployed an AP at a branch office according to https://support.sophos.com/support/s/article/KB-000036475?language=en_US . The bridged network works fine, the guest network is visible and clients can connect, but when they do they do not receive in IP address. 

I have tried adding a 'fixed' IP address with the correct default gateway to the wireless connection, but cannot ping the head office network or even the gateway. 

I have looked at a Wireshark trace of the AP traffic and cannot see any obvious errors, but am not sure what I am looking for.

Any help would be appreaciated.

thanks

Adrian



This thread was automatically locked due to age.
Parents
  • Hi,

    is it possible, you're working with DHCP static MAC reservation and dynamic addresses?

    We've had a similar issue and solved it by:

    https://support.sophos.com/support/s/article/KB-000036032?language=en_US&c__displayLanguage=en_US

    • Sign in to the command-line interface (CLI).
    • Select option 4. Device Console.
    • Run the following command:
      system dhcp static-entry-scope global

    You can perform this command at any time without any interruption.

  • an other thing: is this a Central managed AP?

    It does also need an IP address. Maybe you have a reservation for the AP in a management LAN but it also needs an dynamic IP in the user guest LAN. this is mostly noticable by using a Hotspot with password and terms of use form.

    It can be solved by the same command as above.

  • Hi LHerzog,

    Thanks for your reply.

    Were not using reservations etc but I will read the article in case it gives me a clue.

    No its not central managed - it is managed by the head office XG. 

    It boots OK and contacts the XG OK  (I can see this in the logs).  It downloads the configuration and broadcasts the wireless networks.  At the branch office, from a PC, I can connect to the bridged network, which works perfectly. 

    It is the guest network which is a separate non-bridged zone that does not work.  I can connect to it, but do not get allocated an IP.  I am wondering how it works at the head office - does the AP establish some kind of VPN to the XG over which the guest network operates?  If so, this is the bit that is not working.

    Thanks

    Adrian

  • Hello Adrian,

    you need a second DHCP Server for the network serving the Guest SSID.

    Mit freundlichem Gruß, best regards from Germany,

    Philipp Rusch

    New Vision GmbH, Germany
    Sophos Silver-Partner

    If a post solves your question please use the 'Verify Answer' button.

  • Thanks Phillipp

    I'll investigate and let you know.

    Adrian

Reply Children
No Data
Share Feedback
×

Submitted a Tech Support Case lately from the Support Portal?