Guest User!

You are not Sophos Staff.

This discussion has been locked.
You can no longer post new replies to this discussion. If you have a question you can start a new discussion

Allowing a single host to send to another XG broadcast address

Hi All,


I have a single server on my DMZ that needs to send packets at a broadcast address on port 56700 on my LAN interface. The broadcast address is obviously in a different subnet.

I verified that the packet is leaving the server, but the XG isnt processing it I suspect due to the amplification nature.

In this instance, I need to ensure it is able to send. How can we acheve this?

I tried to create a business rule, where I send a packet to my local DG of the DMZ, and have it forward to the real broadcast address but this isnt work either.



This thread was automatically locked due to age.
Parents
  • Hi All,


    Any suggestions? This is causing me trouble and Id like to implement some kind of workaround here.

    Thanks

  • Hi JasonSalomons, 

    As you are connecting 2 different networks to the XG appliance , it must have been configured as a Layer3 or Gateway/Router setup.  For information on Broadcast packets, the first thing to understand to answer your questions is that limited broadcast frames are not routed. By default when a router receives a frame with a destination address that is broadcast at either layer 2 or layer 3, the router simply drops the frame. That's why routers are said to be the boundary of broadcast domains.

    You may configure Static Route  or Multicast Route on XG .  You may refer the article https://community.sophos.com/kb/en-us/123135 for configuration of Multicasting Routing.

    So if you wish to communicate through a Firewall. You may need to configure the same . 

    Thanks and Regards 

    Aditya Patel  | Network and Security Engineer.

Reply
  • Hi JasonSalomons, 

    As you are connecting 2 different networks to the XG appliance , it must have been configured as a Layer3 or Gateway/Router setup.  For information on Broadcast packets, the first thing to understand to answer your questions is that limited broadcast frames are not routed. By default when a router receives a frame with a destination address that is broadcast at either layer 2 or layer 3, the router simply drops the frame. That's why routers are said to be the boundary of broadcast domains.

    You may configure Static Route  or Multicast Route on XG .  You may refer the article https://community.sophos.com/kb/en-us/123135 for configuration of Multicasting Routing.

    So if you wish to communicate through a Firewall. You may need to configure the same . 

    Thanks and Regards 

    Aditya Patel  | Network and Security Engineer.

Children
No Data