This discussion has been locked.
You can no longer post new replies to this discussion. If you have a question you can start a new discussion

Override hostname Option

Hi,
I would like to know: If I use the Option Override hostname and DynDNS wildcards can I use a port twice?. I have a normal IPv4 NAT with one IP.

Like this for example:

sslvpn.myUTM.dyndns.org Port 443 for the SSL VPN
vpn.myUTM.dyndns.org Port 443 for the Cisco VPN  

Or for what is the option Override hostname otherwise and the dynDNS wildcards?

The wildcard gives me the option to add a additional suffix to the name right?

Like this: widlcard.myUTM.dyndns.org

or do I need multiple IPs for DynDNS Wildcards?


This thread was automatically locked due to age.
  • I'm afraid it doesn't work like that, keamas.  Normally, I recommend configuring the SSL VPN with a different port number using UDP instead of using TCP 443.  The Cisco uses the standard IPsec ports, not 443.

    What is it that you want to accomplish?

    Cheers - Bob
     
    Sophos UTM Community Moderator
    Sophos Certified Architect - UTM
    Sophos Certified Engineer - XG
    Gold Solution Partner since 2005
    MediaSoft, Inc. USA
  • I just would like to know if I can abuse the Option Override hostname for double port allocation when I have just one WAN IP.

    So it is correct that you need multiple WAN IPs to get the advantages of Override hostname and DynDNS wildcards.
  • You are correct, DNS has nothing to do with ports. You can have multiple FQDNs pointing to the same IP. 

    Cheers - Bob

    Sorry for any short responses.  Posted from my iPhone.
     
    Sophos UTM Community Moderator
    Sophos Certified Architect - UTM
    Sophos Certified Engineer - XG
    Gold Solution Partner since 2005
    MediaSoft, Inc. USA
  • It's true that you can have multiple DNS hostnames on 1 IP.
    But you cannot have the same port forwarded to different internal Hosts on 1 external IP. For this you will need more than 1 public IP.

    ----------
    Sophos user, admin and reseller.
    Private Setup:

    • XG: HPE DL20 Gen9 (Core i3-7300, 8GB RAM, 120GB SSD) | XG 18.0 (Home License) with: Web Protection, Site-to-Site-VPN (IPSec, RED-Tunnel), Remote Access (SSL, HTML5)
    • UTM: 2 vCPUs, 2GB RAM, 50GB vHDD, 2 vNICs on vServer (KVM) | UTM 9.7 (Home License) with: Email Protection, Webserver Protection, RED-Tunnel (server)