Guest User!

You are not Sophos Staff.

This discussion has been locked.
You can no longer post new replies to this discussion. If you have a question you can start a new discussion

Change Interface Zone before Initial Setup via CLI

Hi,

i need to change the Sophos Interface Zone before Initial Setup of Firewall, because i only can access Port2 (WAN).

Actual: 

Port1 LAN - 172.16.16.16
Port2 WAN - 10.128.0.5

Windows Machine to Configure is in the WAN Network 10.128.0.2

I already tried searching for a config file, where i can change the Interface Zone manually and i also done this: 

Console: 

4. Console 

system appliance_access enable 

Then I'm able to access the userportal buut not the WebAdmin or Initialsetup.

Regards



This thread was automatically locked due to age.
  • Is your setup on a vm with a single interface?
    ian

    XG115W - v19.5.1 mr-1 - Home

    If a post solves your question please use the 'Verify Answer' button.

  • Hi
    Software Installer, VM, 2 NICs but Port1 is Inaccessible.

    I wan´t to configure the FW on Port 2, later I'm able to access Port1 as WAN port. 

    Port1 could be accessible with following config (but I`m not able to set the IP with Default GW):

    IP: Public IPv4

    SM: 255.255.255.255

    GW: 10.255.255.1


    Regards

  • hi,

    try switching the active port around using the vm console. 
    ian

    XG115W - v19.5.1 mr-1 - Home

    If a post solves your question please use the 'Verify Answer' button.

  • Hi ,

    I`m not able to make any VM changes, it has to be done in the OS. 

    Because its a cloud deployment. 

    Regards

  • Sounds like an installation issue. Because if the wizard is not reachable, it will show you an timeout. You see a HTTP error code, indicating something is wrong. 

    What is the hypervisor? Cloud component? Could it be an unsupported environment? 

    You can check the apache Logs on the firewall CLI to see, if there is actually access or not. 

    If you use the command above, it will simply activate the firewall for WAN as well. So you have access to the Webadmin from WAN. But this here sounds like a installation issue and the webadmin is not alive. 

    __________________________________________________________________________________________________________________

  • Hi ,

    thanks for you input. 

    It`s a VMware installation, but i can only use a .ISO for installation so i choosed Software Installer. 

    The Ports are fine and yes maybe its an unsupported environment, but i want to get it up and running. 

    Is it correct that the Initialize Process is accessible through the WAN interface when the firewall is not configured yet ? 

    I thought the WebAdmin is only accessible when the Startup Config is done? 

    So i try to start config on WAN interface. Or is there any other way to change ports ? 

    Maybe its possible to disable startup config process? 


    Regards

  • If you boot the firewall for the first time, only LAN (Port1) is accessible. But if you use the command above, wizard will be enabled for all ports. 

    So if you access the CLI, configure the WAN port with an IP, execute the IP, this should work. 

    __________________________________________________________________________________________________________________

  • Hi, 

    i tried the following right now:

    1. resetting firewall

    2. enable access

    3. change port2 IP
    ifconfig Port2 10.128.0.5 netmask 255.255.255.0 


    4. Open Userportal --> OK

    5. Open WebAdmin --> Failed (Access fobidden to the requested page) 

    ttomcat:

Share Feedback
×

Submitted a Tech Support Case lately from the Support Portal?