Guest User!

You are not Sophos Staff.

This discussion has been locked.
You can no longer post new replies to this discussion. If you have a question you can start a new discussion

Sophos and XG are interfering with each other on network?

Hello All,

I hope someone can help me with this quite interesting technical issue I am running into. I setup Sophos XG on my physical server 2 days ago. In this network I have multiple vlans connected from Sophos XG via a truck port to my switch. All other vlans work except one. 172.30.111.0/24 which is my mgmt network. On this network xg is the default gateway which is 172.30.111.1, I also have other devices such at unfi controller, esxi(172.30.111.10) and some other management tools.  

When Sophos XG is plugged into the switch and esxi is not: from a workstation on that network I can access Sophos XG and all mgmt tools and ping everything except for esxi because it's unplugged.

Once I plug esxi in: my workstation can ping Sophos XG. But my workstation can ping esxi about half the time 50% packet drop. Esxi  can't.ping anything on the network except for it self. If I do a trace route on esxi to Sophos XG the first hop is 172.30.111.10 which is the mgmt ip of esxi and then fails.

When Sophos XG is unplugged and esxi is plugged in: Sophos XG is unreachable of course. Esxi is now accessible from my workstation with no packet drops. Esxi can also now ping everything on the network and can now traceroute.

Before Sophos XG everything was working perfectly. I was using Sophos utm and has no issues on the network. I can even think about would could be causing this weird issues

Things I have tried:

Change the whole subnet, once esxi and Sophos where back on same network things broke again.

Changed the IP.of Sophos XG and of esxi to see if maybe there was something interfering. This did nothing



This thread was automatically locked due to age.
Parents Reply
  • Hello Everyone,

     

    So I got this working but I have no idea why it wouldnt work like it should. I had to change Sophos XG to use a physical port instead of a vlan for the mangement network and instead of going via the trunk port I had to create a new port on switch that was untagged.

Children
No Data