Guest User!

You are not Sophos Staff.

This discussion has been locked.
You can no longer post new replies to this discussion. If you have a question you can start a new discussion

Issue with connecting 2 internal networks

Hello all,

I am a bit of a newbie when it comes to the sophos utm 9. I recently stood up sophos on my home network and pretty much got the initial setup running the way I want. The setup is as follows:

Cable modem - sophos - switch.  I have a wireless access point connected to the switch. The internal network is on 192.168.xxx. My internal to external traffic is getting filtered through the firewall just fine.

Recently we had an alarm system put in with cameras that run on there own network (172.16.xxx). The alarm system connects to my wireless ap and works for the most part.  The one piece that does not work is accessing the camera network via the alarm company app. This prevents me from being able to monitor the live camera views. I have bypassed the utm and proven that the app does work and that I can view the cameras without the sophos in place.

My understanding from the alarm company is that there apparently are 3 ports on the cameras that need to be open for the app to work.  In reading other posts I have tried to create static routes between the internal network and the camera network and have added corresponding firewall rules with no luck. My question is Is this the right direction or am I way off the mark? Is there a suggested reference i can look at for this type of issue that I just havnt found yet?

Thanks in advance,

Scott



This thread was automatically locked due to age.
Parents
  • Scott,

    what you can do is to create an additional interface on the UTM 172.16.x.x and make sure that the AP is using this interface as Default Gateway. That's all! You will manage all the traffic through UTM. Make sure to create the proper Firewall Rules to allow traffic and NAT rule of the new network 172.16.x.x.

  • Luk,

     

    Thank you for your response.  I have created the interface for the 172.16.x. network and have set the interface as the default gateway on the AP.    I then created a nat masq from the new interface to my external interface.   Finally I created a firewall rule from the new interface to the external interface allowing web surfing.    

     

    Unfortunately when I connect a device to the AP, I am not able to access the internet.   I briefly tried allowing any service through the new firewall rule, but was still unable to connect to the internet.  Not sure where to go from here.   Any more suggestions?

     

    Thank you,

     

    Scott

  • Scott,

    can you share the new Firewall you created?

    Also, you talked about a new NAT....can you share even the screenshot of that one? A nat is not needed however...

Reply Children
No Data