Guest User!

You are not Sophos Staff.

This discussion has been locked.
You can no longer post new replies to this discussion. If you have a question you can start a new discussion

Static Route invalid traffic

Hi There, 

i started today with the XG on virtual environment (ESXi7).

I set up a statc route for external additional Network using by a health service.

I add an rule who allows to forward the traffic to this specific network via an internal router placed also in the lan segment.

So i am able to ping the destination host. But the Webconnection will break every view minutes. 

In the log i figured out, that the connection will be blocket reasonly by "invald Traffic"

Any idea how to fix that?

Thanks for Help!



This thread was automatically locked due to age.
  • It is odd to me: PortA and PortA is the In and Outbound interface? How so? 

    __________________________________________________________________________________________________________________

  • Hi Toni,

    it’s inbound. But it seems that there is a conflict, if I activate on port a an additional vlan, which I was putting in place for a guest wlan, than this error was coming up I guess. So I deleted th vlan-if again an for first it looks like the issue is gone. I will double check tomorrow and give feedback.

    thank you taking in my problem.

    regards adamo

  • Essentially a VLAn would be reflected as PortA.2 or something. But it looks like you did a alias interface. Which is essentially a bad take of "doing VLAN" segmentation. The Invalid traffic likely occur due the routing. The firewall will not know, why it is involved in this traffic, as the route is on the same interface. 

    __________________________________________________________________________________________________________________