Guest User!

You are not Sophos Staff.

This discussion has been locked.
You can no longer post new replies to this discussion. If you have a question you can start a new discussion

Sophos RED-SD - connection / user experience

Hi..

I'm trying to solve some issues with a remote office that is growing and remote ssl is not suitable anymore. Therefore, I'm checking on the RED appliances... Could you please help be to understand few things here?

  • does the RED device needs to be connected right behind ISP device? As the remote office is a shared building that has their own VLAN and switch... but do not have access to ISP devices. Could RED be visible when connected to access switch? If so, is there anything extra that needs to be configured allowed on the remote office main FW to allow communication between RED and Sophos XG?
  • I need the remote users to be able to access resources that are accessible from main office in Azure via S2S VPN (like DC, etc). Is that something that would be doable with RED? So users do not to be logged into windows and run a vpn client (like for SSL remote VPN).... and they will be able to reach the DC via path RED-SD->Main Sophos XG->S2S VPN to Azure
  • the users are experiencing quite slow speed when connected via Remote SSL VPN... Is RED-SD tunnel to XG faster then SSL Remote VPN to XG in general?

thank you in advance for your advise.... Hope to get familiar with RED-SD soon ;)



This thread was automatically locked due to age.
Parents
  • Hello  ,

    Thank you for reaching out to the community, 
    1.) does the RED device needs to be connected right behind ISP device
    > RED appliances can have internet access via a plain LAN to WAN FW rule.

    2.)  Is that something that would be doable with RED?
    > Yes, please RED operation modes overview

    3.) Is RED-SD tunnel to XG faster then SSL Remote VPN to XG in general ?
    > Well, that strictly depends on your environment !

    Thanks & Regards,
    _______________________________________________________________

    Vivek Jagad | Team Lead, Global Support & Services 


    Sophos Community | Product Documentation | Sophos Techvids | SMS
    If a post solves your question please use the 'Verify Answer' button.

  • Hi   ... thanks for helping me to understand RED better... Would just like to confirm the point 1 to make sure I understand it properly

    1. So on remote site, lets say there is an ASA or another FW and the RED will be connected behind that FW to an ACCESS SWITCH. So as long as the LAN can reach Internet (LAN-WAN traffic allowed), I'll just configure remote site public IP for that RED device (plus all what is required as per the guide) and all should be connecting/working fine with XG at main office. Am I right?
    2. Transparent/Split mode seems to be fine for my scenario
    3. understand... will test it once up and running
Reply
  • Hi   ... thanks for helping me to understand RED better... Would just like to confirm the point 1 to make sure I understand it properly

    1. So on remote site, lets say there is an ASA or another FW and the RED will be connected behind that FW to an ACCESS SWITCH. So as long as the LAN can reach Internet (LAN-WAN traffic allowed), I'll just configure remote site public IP for that RED device (plus all what is required as per the guide) and all should be connecting/working fine with XG at main office. Am I right?
    2. Transparent/Split mode seems to be fine for my scenario
    3. understand... will test it once up and running
Children