Guest User!

You are not Sophos Staff.

This discussion has been locked.
You can no longer post new replies to this discussion. If you have a question you can start a new discussion

Install a sophos XG behind XG firewall

 Hi,

 

We have XG230 with 32 public IP address for multiple clients, now we want to install another XG230 for a client and want to user few public IP address from same 32 IP pool.

I now we can install XG firewall behind XG firewall with a single public IP address(assign on WAN interface).

Can we install  XG firewall behind XG firewall with multiple  public IP address( one Public IP assign to WAN and different Public IP assign on LAN data,Voip and web servers)?

How it work? how we configure NAT and routing on 2nd XG firwall for their LAN Public IP address.

appreciate if someone guide me.

 

Thanks

Iffi



This thread was automatically locked due to age.
  • Hi and welcome,

    I think you would need to put two of the interfaces in bridge mode to connect the second XG to it and assign one of your IP addresses to the external interface of the second XG. You would set the rules up as normal for that device.

    You would then setup the rules for the first XG without NAT rules for outgoing, but I suspect this is not correct and you would need to create another bridge for your servers etc.

    These are my thoughts to give you some food to think about.

  • Ahmed,

    you have a strange question.

    As wrote, you should configure the first XG in bridge mode but you will lose some functionality:

    https://community.sophos.com/kb/en-us/123276

    The second option is to put the other XG in parallel with the first XG and connect it to the same Public Gateway and take other Public Ips.

    The third option is to ask to your ISP to split the public IPs into 2 portion and assign one portion to first XG and the second portion to XG210.

    Of course it depends on what you need to do and what are your goals.

    Regards

  • Third option works in my case

    Thanks for help