This discussion has been locked.
You can no longer post new replies to this discussion. If you have a question you can start a new discussion

Moving from one to another Sophos XG device

Hi Everyone,

I'm trying to see if anyone here have experience or best practices to follow when moving from one sophos XG to another device. To give you guys a bit of a background, we have been using a XG310 device which was provided by our service provider. Recently we have moved to new WAN provider and have purchased a new XG310 to setup. Currently we have about 15 RED devices and quite a few business/firewall rules on the existing firewall. 

My questions is, can I take a backup and restore the config to new device? I understand that WAN IP details would require updating as we are using new links. However not quite sure if this is the best way? I would really appreciate your help.

Thank you.



This thread was automatically locked due to age.
Parents
  • Hi,

    should work without any issues except as you pointed out for your external interface.

    Ian

  • Hi Ian,

    Thank you for your reply. What about the REDs? In order to migrate them I will possibly need to update 2nd WAN port to have the new public IP then move them across? when restoring backups, RED configuration will be carried across to new device including the unlock code etc...?

    Also with the restore process, do both XG310 needs to have same firmware? reason being, current XG I'm yet to migrate to the latest firmware. And the new XG has the latest.

    Regards,
    Posh

  • Hi Posh,

    based on the fact that the backup is for use on a rebuild of a dead machine I would assume after registration and synchronisation that the backup restoration would have all the required details.

    Firmware should be the same, I have had problems in restoring and older backup on a new release. Had to find an old copy of the software, build, restore then upgrade.

    Ian

  • Hi Ian,

    Thank you again for your valuable input. In my case given the public firewall IP change, I would need to update 2nd WAN interface on the WAN to new firewall IP then do the restore? so that when the new firewall comes online, REDs can talk to it? Also with regards to restore, I assume it only restores the configs? not the license as I'm using a new license on the new device.

    Regards,
    Posh

  • Hi Posh,

    there are two things not stored in the backup, one is the licence and I can't remember the other but it is also to do with the physical component.

    So, your current WAN interface will be disabled after you do a restore, so be careful with your gateways.

    Ian

  • Hi Ian,

    I have been trying to do the restore but nothing seems to have worked so far. I thought initially this was due to the different firmware that is running on the devices. Upgraded to match firmware, however, the restore process still fails. Then I was told that the new XG is rev2 whereas my current is rev1 and restore is not possible. Is this true?

     

    Thank you.

  • Hi Posh,

    for that sort of information you would need to check with your reseller or maybe one of the forum mods might help?

    Ian

Reply Children
No Data