This discussion has been locked.
You can no longer post new replies to this discussion. If you have a question you can start a new discussion

Sophos XG failover VPN to AWS VPC

Hi All,

I recently made a video on how to configure a failover VPN between a Sophos XG firewall and an Amazon AWS VPC. Here's the link to the video - https://www.youtube.com/watch?v=iwj8V8CeeUo

Please feel free to ask questions about this topic and I'll be happy to answer.



This thread was automatically locked due to age.
Parents
  • Hi, How to route to AWS when I have RED devices, and several LANs etc.

     

    AWS told me, configuring them at tunnel is not a good idea and should use routing policy.

     

    Any idea?

     

     

    regards

  •    I don't see why not. A RED device is, in general, a secure bridge or stretched LAN extension (with a VPN). That is similar to an IPsec tunnel that connects to the VPC. The tunnel traffic is encrypted-that's a good thing. Not sure why AWS would steer someone away from a link like that. Also, a routing policy would just force the traffic via a pre-defined interface, the VPC.

       The difference between one or the other would be subtle. Perhaps one method is pricier or faster?
    PatrickAZ

Reply
  •    I don't see why not. A RED device is, in general, a secure bridge or stretched LAN extension (with a VPN). That is similar to an IPsec tunnel that connects to the VPC. The tunnel traffic is encrypted-that's a good thing. Not sure why AWS would steer someone away from a link like that. Also, a routing policy would just force the traffic via a pre-defined interface, the VPC.

       The difference between one or the other would be subtle. Perhaps one method is pricier or faster?
    PatrickAZ

Children