Guest User!

You are not Sophos Staff.

This discussion has been locked.
You can no longer post new replies to this discussion. If you have a question you can start a new discussion

Simple 1:1 NAT

Just started using XG so very simple question. Have 2 networks on the XG (plus WAN), want to enable access to a single device on one of the networks from the other, not the whole network.

Network A: 172.31.0.0/22, XG Interface: 172.31.0.1

Network B: 192.168.2.0/24, Device IP: 192.168.2.2, XG Interface: 192.168.2.1

I want to from Network A access 192.168.2.2 only, network A not to access any other device on network B and no devices form network B to access network A.

 

As I am new not the XG, not sure what I need to set in terms of static route, NAT and/or firewall rules ect

Thanks



This thread was automatically locked due to age.
Parents
  • Hi BenjaminMiller,

    welcome to Sophos Community.

    By default all traffic is denied so if you do not create a proper Policy Rule, data will not flow. In your case you need to create a Network Rule where you allow LAN to LAN where the source network is the Network A and destination network is 192.168.2.2. Also restrict only the needed ports.

    Thanks

Reply
  • Hi BenjaminMiller,

    welcome to Sophos Community.

    By default all traffic is denied so if you do not create a proper Policy Rule, data will not flow. In your case you need to create a Network Rule where you allow LAN to LAN where the source network is the Network A and destination network is 192.168.2.2. Also restrict only the needed ports.

    Thanks

Children
No Data