Guest User!

You are not Sophos Staff.

This discussion has been locked.
You can no longer post new replies to this discussion. If you have a question you can start a new discussion

VLAN ROUTING IMPLEMETATION

Am a new babie in SOPHOR firewall. I have a new XG210. I want to achive multiple DMZ, WAN and LAN.

I have my core switch connected to the firewall which had two vlan one Management and the second one SERVER. I want to have two ISP connection which would be in Active standby mode. The i want to have two provider connected to my DMZ. Which should be able to access the SERVER vlan only.

LAN IP address:- 192.168.10.x

SERVER : 192.168.20.x

DMZ-1: 172.16.10.2

DMZ-2: 172.17.10.2

 

Can someone HELP



This thread was automatically locked due to age.
Parents Reply
  • Hi,

     

    You need to configure a static route for your server farm on your core switch that if they want to reach DMZ next hop is Sophos XG.

     

    And in Sophos XG, you need to configure a static route back to the server with the interface of your core switch as next hop. 

     

    You need to create a firewall rule in XG as well, depending on what zone you configured your server farm (eg. LAN, WAN) that allows traffic from specified zone and network details

    going to your DMZ and vice versa.

     

     

    Hope it helps, give it a shot, let us know how it goes.

     

     

    Regards,

    Rap

Children