Guest User!

You are not Sophos Staff.

This discussion has been locked.
You can no longer post new replies to this discussion. If you have a question you can start a new discussion

Restricting services to certain group of WAN

Hello,

 

Coming from PFsense here. After going through documentation and many hours on this forum and trying to apply some solutions to our case, it turns out to be that we have no solid answer.

This is our setup:

- 4 WANS of multiple 4G routers and one DSL.

- Sophos UTM home version latest.

 

What we are trying to achieve:

 

- Restrict certain heavy services (Web Surfing - File transfer - P2P traffic) to only 2 WANs.

- Push everything else to the other 2 available WANs.

 

We did try Policy Routing Interface routing but we only had to choose one interface, we need to pick two in our case. We did try the uplink balance but the whole traffic was distributed among all 4 WANs.

 

Any help please?

Thank in advance



This thread was automatically locked due to age.
  • Hi and welcome to the UTM Community!

    Uplink Balancing either balances traffic between all interfaces or binds traffic to one interface, so your current solution is not possible with only the UTM.  You could add a Peplink Load Balancer.

    Cheers - Bob

     
    Sophos UTM Community Moderator
    Sophos Certified Architect - UTM
    Sophos Certified Engineer - XG
    Gold Solution Partner since 2005
    MediaSoft, Inc. USA
  • Thanks for your reply BAlfson.

     

    The funny thing is, we ditched our Peplink Balance 380 for Sophos since we can no longer update the firmware :). On a second thought, how can the Policy Routing serve us in this situation? is there ANY WAY to assign one WAN to any specific service and block anything else?

  • Funny that I picked the Peplink! [;)]

    I wouldn't use Policy Routes as Multipathing is easier to use, plus, it's more easily understood by other WebAdmin users.  You can make Multipath rules that bind specific traffic (Source -> Service -> Destination) to specific Interfaces.

    Cheers - Bob

     
    Sophos UTM Community Moderator
    Sophos Certified Architect - UTM
    Sophos Certified Engineer - XG
    Gold Solution Partner since 2005
    MediaSoft, Inc. USA