Guest User!

You are not Sophos Staff.

This discussion has been locked.
You can no longer post new replies to this discussion. If you have a question you can start a new discussion

making new gateway for DMZ traffic

hi all,

want to make WIFI traffic go out a new WAN interface, i think im going to do it like this, what you think

network > interfaces
network zone WAN, add ipv4 details and give it a gateway ip

rules and policies > nat rules
"default SNAT IPv4" change "outbound interface" from WAN1 to WAN1 and WAN2 or ANY?

routing > sd wan routes
shall i create 2

main one
ANY "source networks" and "primary gateway" will be WAN1

for DMZ
add the WIFI subnet to "source networks" and "primary gateway" will be WAN2

thanks,

rob



This thread was automatically locked due to age.
Parents Reply
  • Based on your requirement i.e. you want LAN1 to go out from ISP1 and LAN2 to go out from ISP2.

    You can use SD-WAN, you can refer the doc Gateways and Add a gateway

    Assuming you have 2 ISP and 2 LAN already, you can define it under the SD-WAN policy routing by creating two separate SD-WAN rules

    SD-WAN rule 1
    Source network as LAN1
    Primary gateway as ISP1

    SD-WAN rule2
    Source network as LAN2
    Primary gateway ISP2


     

    Thanks & Regards,
    _______________________________________________________________

    Vivek Jagad | Team Lead, Global Support & Services 


    Sophos Community | Product Documentation | Sophos Techvids | SMS
    If a post solves your question please use the 'Verify Answer' button.

Children