Guest User!

You are not Sophos Staff.

This discussion has been locked.
You can no longer post new replies to this discussion. If you have a question you can start a new discussion

Devices connected to XG 125 cant ping each other

Hi all,

Am asking this question for the second time. I am new to Sophos and am finding it nagging that I can't get the basic functionality without doing a lot.

I am setting up a new firewall. By default, a bridge-pair (br0) was created, with Port 1,4, 5, 6,7,8 as members. DHCP is turned on and client computers can get IP addresses.

My problem is that non of the PCs can ping any other. I can't ping or browse into printers, etc. 

What is it that I haven't done? Its my first time to interface with a Sophos product.

Thanks



This thread was automatically locked due to age.
  • Hi Paul Gonzaga

    Please check firewall rule is created to allow Ping , you can check with drop packet capture console>drop-packet-capture 'host <destination IP address>and proto ICMP

    Make sure Ping is enable on Device access under System-->Admininstration-->Device access

    Thanks and regards

  • It might be helpful for you to review the basics. Setting up a bridge creates a mechanism by which traffic can flow. But it takes firewall rules to actually allow it to flow. DHCP, coming from the firewall itself, is of course allowed -- if you've enabled it in the appliance access panel.

  • You need a firewall policy to allow traffic on a bridge. Even though the logic says that on a bridge you are unifying traffic, they are physically different interfaces and you still need a policy. Do a lan to a lan or interfaces firewall policy.