This discussion has been locked.
You can no longer post new replies to this discussion. If you have a question you can start a new discussion

RED Netze verbinden

Hallo,

ich betreibe zwei REDs und eine UTM220 

UTM 172.30.0.0/16
RED1 192.168.0.0/24
RED2 192.168.10.0/24

Ping von RED1  UTM geht in beide Richtungen
Ping von RED2  UTM geht in beide Richtungen
Ping von RED1  RED2 geht nicht

Beide REDs Standard/Getrennt Netz der UTM und der jeweiligen anderen RED angegeben.
Firewall Any Any Any

Was habe ich vergessen? Warum verbinden sich die Netze der REDs nicht?

Vielen Dank für Eure Hilfe


This thread was automatically locked due to age.
Parents
  • Sorry for my English since I don't write German that well...

    any -> any any should be avoided since you really give anyone access anywhere.

    What you should do is in both RED configurations the Internal (Network) and the REDx (Network) have to be added to the split tunnel list (I believe you have this already but check that you added REDx (Network) and not REDx (Address).

    In the Firewall you should add:

    RED1 -> RED2 any
    RED2 -> RED1 any

    Off course you can be more restrictive than any, that's always more safe, but a little more work in setting everything up.

    Managing several Sophos UTMs and Sophos XGs both at work and at some home locations, dedicated to continuously improve IT-security and feeling well helping others with their IT-security challenges.

    Sometimes I post some useful tips on my blog, see blog.pijnappels.eu/category/sophos/ for Sophos related posts.

Reply
  • Sorry for my English since I don't write German that well...

    any -> any any should be avoided since you really give anyone access anywhere.

    What you should do is in both RED configurations the Internal (Network) and the REDx (Network) have to be added to the split tunnel list (I believe you have this already but check that you added REDx (Network) and not REDx (Address).

    In the Firewall you should add:

    RED1 -> RED2 any
    RED2 -> RED1 any

    Off course you can be more restrictive than any, that's always more safe, but a little more work in setting everything up.

    Managing several Sophos UTMs and Sophos XGs both at work and at some home locations, dedicated to continuously improve IT-security and feeling well helping others with their IT-security challenges.

    Sometimes I post some useful tips on my blog, see blog.pijnappels.eu/category/sophos/ for Sophos related posts.

Children
No Data