Guest User!

You are not Sophos Staff.

This discussion has been locked.
You can no longer post new replies to this discussion. If you have a question you can start a new discussion

Nail RED-Tunnel to specific WAN interfaces

Hi,

I have a question about something I think it should be possible somehow....

We have a head office and two branch office, each of them with a Sophos XG firewall. All of them have two WAN interfaces (1. Fiber and 2. DSL). I would like to use *only* the Fiber-WANs for my RED-tunnels. For the RED server site, I can define which WAN-IF is used by setting the public IP of this WAN-IF as RED-Server in the branch offices.

But can't I force the RED clients to use Fiber-WAN-IF to establish the RED connection (ISP1 and ISP3 as example in the picture)? I cannot find an option to do this. Now, sometimes the Fiber-WAN and sometimes the DSL-WAN is used, one sees it in Network > Interfaces > RED on the RED server by looking at the IPs listed at "Online From...".

We already tried with SD-WAN-rules with Fiber-WAN as primary WAN-IF, but that did not work. The DSL-IFs are less fast, less reliable and has higher latency, which is not good as datatransfers via SMB and SIP-services go past the RED tunnels, for example.

Any hints how to solve this are appreciated Slight smile



This thread was automatically locked due to age.