I'd like to connect server with vmware to sophos firewall (XGS126w) using two interfaces for speed up and redundancy, What should be done?
This thread was automatically locked due to age.
I'd like to connect server with vmware to sophos firewall (XGS126w) using two interfaces for speed up and redundancy, What should be done?
Have a look here: https://www.vviking.nl/vmware/lacp-and-vsphere-esxi-hosts-not-a-very-good-marriage/
And I must say, I fully agree to the author of that text.
Mit freundlichem Gruß, best regards from Germany,
Philipp Rusch
New Vision GmbH, Germany
Sophos Silver-Partner
If a post solves your question please use the 'Verify Answer' button.
Can this thread be moved to the "Sophos firewall" section?
This is not UTM related.
Mit freundlichem Gruß, best regards from Germany,
Philipp Rusch
New Vision GmbH, Germany
Sophos Silver-Partner
If a post solves your question please use the 'Verify Answer' button.
As far as I know LACP is Cisco Proprietary protocol and it only connect betwen esxi and cisco switch. In my case I want to connect vmware with sophos direct by two cables . So my question is :how should I configure sophos interfaces ?
As far as I know LACP is Cisco Proprietary protocol and it only connect betwen esxi and cisco switch. In my case I want to connect vmware with sophos direct by two cables . So my question is :how should I configure sophos interfaces ?
You've probably mistaken LACP for CDP (the Cisco Discovery Protocol which is in fact proprietary and other vendors are forced to pay a license or implement alternatives like LLDP).
LACP is IEEE standard 802.3ad. Cisco's private beast in this branch is called Etherchannel.
I've try to set up bridge port on sophos for this two interfaces from vmware and one for lan , but iin this case sophos was hanging from time to time (without ans advanced options).
Hello Tomasz,
have you read and understood what I sent you as a link?
So why do you expect this to work? This is complete bricolage, what you are doing there.
Best thing you *could* do, put a managed switch between the ports of your ESXi and the firewall which is able to build a LAG/LACP from the Sophos firewall to the switch-ports (see here: https://docs.sophos.com/nsg/sophos-firewall/18.5/Help/en-us/webhelp/onlinehelp/AdministratorHelp/Network/Interfaces/NetworkLinkAggregationGroupAdd/index.html )
And on the ESXi-side you just put the two ports into switch and configure NOTHING like a LAG or so. VMware vswitch does it for you.
Mit freundlichem Gruß, best regards from Germany,
Philipp Rusch
New Vision GmbH, Germany
Sophos Silver-Partner
If a post solves your question please use the 'Verify Answer' button.