I have 6 static public IP addresses accessible behind my ISP's edge device. I then want to set-up 5 networks behind a Sophos UTM each with their own public IP address while still providing some QoS and network isolation. Each LAN needs access to its own static public IP address, and outbound traffic should come from said IP as well. The plan is to set-up the WAN with one of the public IPs, then alias the 5 other IPs also to the WAN. I would then set-up 5 LAN networks and set-up DNAT & SNAT rules for each Public WAN alias to corresponding LAN. Then the typical firewall rules and DHCP, NTP, DNS (if needed).
Any suggestions for improvement? Would bridging of some sort provide a better mechanism (new to bridging).
Thank you!
This thread was automatically locked due to age.