Guest User!

You are not Sophos Staff.

Interface / VLAN Migration via XML Import/Export

Disclaimer: This information is provided as-is for the benefit of the Community. Please contact Sophos Professional Services if you require assistance with your specific environment.


Hi, 

As some of you want to move the VLAN configuration or Interface configuration in XG from one interface to another, there is no way to do this in the GUI. So you could use the Import/Export feature in XG, to perform this operation.

Another use case would be to add as many VLANs as you want, with this approach. 

Cross reference: https://community.sophos.com/xg-firewall/f/recommended-reads/122450/creating-xml-objects-with-notepad-for-mass-import

How to

  1. My Interfaces

  2. Export of all interfaces via Import/Export:

  3. Using 7Zip to unzip the .tar file

  4. Using notepad++ to edit the Entities file

    1. Removing everything from the configuration except Port3 and VLAN. (You do not need to do that, but its way faster in the import process). 
  5. Only VLAN and Port3 left:

  6. Using "Find & Replace to replace Port3 with Port4

  7. Notepad++ will replace everything for you

  8. Opening the .tar File with 7zip 

  9. Using Drag&Drop and copy&replace the new Entities.xml within the .tar

    Note: Make sure, you saved the changes in notepad++!
     
  10. On XG, unbind the old Port3 and remove the configuration

  11. Import your new .tar on Import/Export

Note: This can take some time, as XG will add all VLANs to the interface. Depending on your appliance and the number of VLANs.


Updated Disclaimer
[edited by: Erick Jan at 10:18 AM (GMT -7) on 17 Apr 2023]
Parents
  • Almost similar situation. I want to transfer the VLAN from Port1 to PortF1 (due to connecting to glass fibre).

    Is it the right way to export the DHCP and Interface items (as otherwise the whole configuration from the VLAN Interface under DHCP will  be lost)

    Then delete the VLAN

    And upload the modified configuration. Or will this not work on a XGS126?

    Note: for some reason I can not enter images (file embedding not allowed)

Reply
  • Almost similar situation. I want to transfer the VLAN from Port1 to PortF1 (due to connecting to glass fibre).

    Is it the right way to export the DHCP and Interface items (as otherwise the whole configuration from the VLAN Interface under DHCP will  be lost)

    Then delete the VLAN

    And upload the modified configuration. Or will this not work on a XGS126?

    Note: for some reason I can not enter images (file embedding not allowed)

Children
No Data