Guest User!

You are not Sophos Staff.

This discussion has been locked.
You can no longer post new replies to this discussion. If you have a question you can start a new discussion

Adding another NIC totally breaks XG Firewall and all dependent rules

Hi.  I have been running XG firewall with 2 NICs - LAN and WAN.  I decided to add another for DMZ and it totally breaks the firewall.  All NICs get reassigned.  Port 1 LAN becomes DMZ, Port 2 WAN becomes LAN, and the newly added Port 2 becomes LAN instead of the unassigned DMZ.  This is crazy.  It wouldn't be so bad if it didn't break all of my rules the depend on Port 2 being WAN, which means when I reassign the new Port 3 to WAN the interface name changes and all business rules that depended on Port2_GW_DHCP get abandoned since this interface no longer exists.

Is this expected?  Is there a simple way to rename ports and reassign them to their old name, role, and position?  This seems like a major bug.



This thread was automatically locked due to age.
Parents
  • hi i am also having this problems in addition i am passing a whole nic trough and i cant change the pci address order so xg totally crashes when i am adding on vSwitch port via ESX interface any ideas if it is possible to change the assigned NIC's to the PortX like it is in UTM via editing this file:  /etc/udev/rules.d/70-persistent-net.rules ?


    I am really hoping there is a solution, because i have WAN and LAN on my passtrough pci and WLAN and DMZ i would like to add via zwo vSwitch Port

Reply
  • hi i am also having this problems in addition i am passing a whole nic trough and i cant change the pci address order so xg totally crashes when i am adding on vSwitch port via ESX interface any ideas if it is possible to change the assigned NIC's to the PortX like it is in UTM via editing this file:  /etc/udev/rules.d/70-persistent-net.rules ?


    I am really hoping there is a solution, because i have WAN and LAN on my passtrough pci and WLAN and DMZ i would like to add via zwo vSwitch Port

Children
No Data