Guest User!

You are not Sophos Staff.

This discussion has been locked.
You can no longer post new replies to this discussion. If you have a question you can start a new discussion

SD-WAN Connection Groups and DHCP-Relay

Hi all,

currently i am struggeling with the concept for a customer with more then 20 sites/branch offices.

Current setup is with RED-Devices, but the performance and stability is really bad, so we are thinking about using firewalls instead of red devices.

VPN-Orchestration with sd-wan connection groups seems to be a simple way to achieve our goals, without complex dynamic routing over ipsec. Currently i have two potential show stopper for using sd-wan connection groups.

1. DHCP-Relay is not supported on tunnel-interfaces, which are used by sd-wan groups. So no central dhcp-server is possible. Is there an ETA for this feature?
2. Is there the possibility for an Hub and Spoke setup? Because of dynamic IPs/NAT in the branch offices.

Thank you very much.

Kind Regards,

Ole



This thread was automatically locked due to age.
  • Hello there,

    Thank you for contacting the Sophos Community.

    1. There is no ETA on the DHCP Relay over Tunnel Interfaces, but a co-worker mentioned it in one big release, so usually v20 or v21.

    2. You can create a Hub and Spoke setup on Central. I, however, highly recommend you reach out to your Sales Engineer or Professional Services to assist you with your setup if you decide to take this path.

    Regards,


     
    Emmanuel (EmmoSophos)
    Technical Team Lead, Global Community Support
    Sophos Support VideosProduct Documentation  |  @SophosSupport  | Sign up for SMS Alerts
    If a post solves your question use the 'Verify Answer' link.