Guest User!

You are not Sophos Staff.

This discussion has been locked.
You can no longer post new replies to this discussion. If you have a question you can start a new discussion

Why does this work or not work?

Recently I posted questions similar to these, but the post just vanished. Issue at my end.

So, here goes again

setup 2 vlans similar to my UTM.

1/. traffic from the VoIP phones on vlan 1.2 connect using host vlan 1.2

2/. traffic from PCs through two firewall rules using vlan 1.10 do not work when host selected is vlan 1.10 but work when any host is selected.

3/. I have a device providing secure tunnels to work on vlan 1.10 and the host network chosen is vlan 1.10 with a match a specific host.



This thread was automatically locked due to age.
Parents
  • More fiddling.

    I can get the individual matched rule to work with a vlan host network, but none other works with the vlan chosen as the host network.

    Secondly I cannot see any traffic from my VoIP phones in any log file. The VoIP phones have their own address range in vlan1.2

    Next experiment is to setup identities for my VoIP phones and use them rather than a group.

     

    //update. Failed, had to take the VLAN1.2 out and put any back.

  • All of the above testing was a waste of time due to a series of bugs in the XG.

    1/. if you use the connection disconnect function, the disconnected device never reconnects even after the device is restarted.

    2/. changing a firewall rule does not drop or stop the connection

    3/. connections are maintained over an XG restart

    4/. The only way to drop all connections and open new ones is to power the XG off and then on.

    5/. powering a connected device off does not drop the connections.

  • If I don't get any sensible answers within 24 hrs the UTM wil be back inplace of the XG.

    To me the issue looks like major security holes left in the XG. but that could be just me and my not complete understanding of network security.

Reply Children