Guest User!

You are not Sophos Staff.

This discussion has been locked.
You can no longer post new replies to this discussion. If you have a question you can start a new discussion

Remote STAS in bridge mode

Remote STAS in bridge mode

Hello guys.

I'm approving an environment where we have sophos in bridge mode.

The following scenario being evaluated.

Office:

router <-> sophos fw(l2) <-> switches

Inside this office we have an AD with STAS, running and working.

Branch:
router <-> sophos fw(l2) <-> switches

This branch does not have an AD, so authentication will take place through the STAS installed in the office's AD.

What is the problem:

As it is configured in bridge mode the incoming connection hits the WAN zone and is denied by local_acl.

Unfortunately in the "Device Access" settings there is no way to allow it in the WAN zone. How could I release?



This thread was automatically locked due to age.
Parents Reply
  • I haven't opened a case yet because it's under approval\test.
    Also prefer to bring the community to add knowledge.

    I'm not using mixed mode, the settings for bridge operation are correct. It does not need to participate in a network routing decision. I am aware of the STAS limit in the WAN zone. Exactly what I want to win.

    I'll wait a little longer, see if anyone in the community knows or has something similar. I'm waiting for something via console to solve.
    If not, I'll go to support and post the solution here.

    Thank you very much Bharat.

Children
No Data