Guest User!

You are not Sophos Staff.

This discussion has been locked.
You can no longer post new replies to this discussion. If you have a question you can start a new discussion

Sophos xg85 WLAN - separate zone issues

Hi,

with our new xg85 for our Branch Office we have a Problem with the guest WLAN with separate zone. Most Websites are hanging and some doesn't come up completeley.

With a test WLAN with bridge to ap-lan everything works fine.

This are normal wlans with wpa2 personal/AES Security. For the guest WLAN the policy ist set from  this LAN-segment  with any services to wan is allowed. Same rule for bridge-to LAN works perfect.

Any hints?

Thanks you,

best regards,

Markus



This thread was automatically locked due to age.
Parents
  • We are having the same issue with an XG105 and MR3.

    We may be nearing a solution, though. It appears that it has to do with the policy for the outgoing connection to the internet.

    In the policy, if "WAN" is the target zone, then an option appears, where one can choose through which WAN connection to send the traffic.

    Standard is "Load-Balancing". In our case our customer has two WAN lines, therefore we choose the first one as primary with the secondary as failback.

    And in this case it doesn't work. While writing my support case to Sophos I detailed also this fact. And while writing I thought that perhaps this option might be the cause of the problem.

    And after setting it back to the standard setting, we can now open all webpages.

    Still an android device still doesn't connect automatically with this network because it says, it doesn't have an internet connection. But if connected manually it can actually open all the webpages, we couldn't open before.

    The problem seem therefore to lie in the policy settings for the masquerading.

    Will report it to Sophos and see what they tell us.

Reply
  • We are having the same issue with an XG105 and MR3.

    We may be nearing a solution, though. It appears that it has to do with the policy for the outgoing connection to the internet.

    In the policy, if "WAN" is the target zone, then an option appears, where one can choose through which WAN connection to send the traffic.

    Standard is "Load-Balancing". In our case our customer has two WAN lines, therefore we choose the first one as primary with the secondary as failback.

    And in this case it doesn't work. While writing my support case to Sophos I detailed also this fact. And while writing I thought that perhaps this option might be the cause of the problem.

    And after setting it back to the standard setting, we can now open all webpages.

    Still an android device still doesn't connect automatically with this network because it says, it doesn't have an internet connection. But if connected manually it can actually open all the webpages, we couldn't open before.

    The problem seem therefore to lie in the policy settings for the masquerading.

    Will report it to Sophos and see what they tell us.

Children
No Data