Guest User!

You are not Sophos Staff.

This discussion has been locked.
You can no longer post new replies to this discussion. If you have a question you can start a new discussion

Site to Site on it's own Interface

I have a UTM SG330 running as the main firewall for our company at it's only site, then at another location for offsite backups I have a UTM 220. I am trying to setup a site to site VPN between these two locations. The offsite location is using the firewall for it's own network protection and I want the Site-to-SIte VPN to be a separate network where my offsite backup servers will connect to separate from the network that already exists on the UTM 220. How do I apply the site to site VPN to it's own interface/NIC on the 220 as to not interfere or combine with the existing network? Thank for any help here, I haven't stumbled across anything online to help with this and not sure what settings/setup needs to be configured for this.



This thread was automatically locked due to age.
Parents Reply Children
  • Your question is too general, Brian.  Please say specifically which IP/subnets should be able to reach which IP/subnets.  You can use coherent example addresses instead of using your real ones.

    Cheers - Bob

  • Sorry, I didn't realize what you were asking for. I think I have gotten it working now.

    I created a new interface on port 7 of the ethernet switch on the UTM220 and assigned it a range outside of the network scope on the SG330. I then created a site to site gateway on SG330 and a connection on the SG330 from that ip range. I then created the gateway on the UTM220 and the connection on the UTM220 to the public ip of the SG330. The key for me to have the site to site vpn work only on the Interface I setup on port 7 was assigning it under the Local Networks of the connection on the UTM220. I turned both sides on and watched them connect. Thanks for your help.