Guest User!

You are not Sophos Staff.

This discussion has been locked.
You can no longer post new replies to this discussion. If you have a question you can start a new discussion

Why does this work or not work?

Recently I posted questions similar to these, but the post just vanished. Issue at my end.

So, here goes again

setup 2 vlans similar to my UTM.

1/. traffic from the VoIP phones on vlan 1.2 connect using host vlan 1.2

2/. traffic from PCs through two firewall rules using vlan 1.10 do not work when host selected is vlan 1.10 but work when any host is selected.

3/. I have a device providing secure tunnels to work on vlan 1.10 and the host network chosen is vlan 1.10 with a match a specific host.



This thread was automatically locked due to age.
Parents Reply Children
  • Hi

    Can you test on normal PC with two or more Intel NICs? I think there is problem compatibility with integrated NIC...

    I have got similar problem with VLAN and Realtek nics..

    I added a PCI (or PCI-e Intel NIC and ALL OK with VLAN and XG SFOS..

     

    Bye

     

     

  • I have a dual NIC card I can add. I will report back shortly.

    Currently using a UTM 9.5ga

  • I disabled the onboard NICs and used a dual i350, same issues.

    My RAP is connecting through rule 1 instead of rule 4, what is the use of having a rule that is bypassed because of a bug.

    My VoIP devices do not register.

    I disconnected the 3 devices after removing them from the network.

    There is no traffic in any log for the devices, so how are they connecting?

    I do have an older model dual NIC I can put in the XG while my wife is not using the internet.

  • Mmmm very strange... I don't know how I can help you, sorry

  • Tried a different dual nic, but one channel failed.

    I do note that the devices keep getting different IP addresses which do not show in the connection report.

    At this stage VLANs on my XG are a total failure, so back to one lan until v17 and try again.

    So in summary the XG is not as secure as the UTM

    1/, no ntp proxy

    2/. no DNS proxy

    3/. vlan connections left open after the device is disconnected.

    4/. IP addresses keep changing even when setup in the DHCP server, so it is difficult to keep track of what is actually using what rule.