Sophos(Cyberoam) Configuration in Gateway Mode

Sophos(Cyberoam) Configuration in Gateway Mode

Xoldier

JF-Expert Member
Joined
Mar 27, 2017
Posts
424
Reaction score
153
Habari wakuu,
Mi ni mgeni kidogo kwenye configurations za Sophos routers, my ISP provided me with an IP, netmask, gateway, dns, and VPN ID kupata internet. Challenge ni kwamba nawezaje ku apply VPN given by ISP ili LAN yangu iweze negotiate na WAN ?.
Nisaidieni wakuu.
Nimefanikiwa kui set as a bridge where nina small D link router ambayo nimeweza kuweka setting. But my goal ni iweze kuweka VPN from WAN ili iwe in Gateway mode.

Msaada tafadhari.
Natanguliza shukrani za dhati kwenu
 
Weka Network diagram yako hapa na unachotaka ku-achieve.

Sent from my SM-G610F using Tapatalk
 
Weka Network diagram yako hapa na unachotaka ku-achieve.

Sent from my SM-G610F using Tapatalk
ISP cable connect direct in WAN Port, then Users connect from LAN A and DMZ ports.

Nahitaji users wapate internet kutoka ISP via Cyberoam as a main router that should direct connect ISP cable. Main aim ni ku apply VLAN ID ili iweze ku negotiates my LAN to WAN
 
Ooohh! Couple of things you need..
1: I assume LAN, DMZ, and WAN are 3 different Security Zones.
2: Create 2 Security Policies ( Firewall Rules ) to Permit traffic from LAN to WAN, and DMZ to WAN.
3: Create a NAT Policy ( Source-NAT/ PAT) for LAN and DMZ Subnets, Translate them against the IP assigned on WAN Port
4: Create a default route (Static route ) pointing from your internal zones ( LAN, DMZ ) to WAN, point it to your ISP gateway ( I assume this info was provided by ISP )

Let me know if this won't work.
 
Ooohh! Couple of things you need..
1: I assume LAN, DMZ, and WAN are 3 different Security Zones.
2: Create 2 Security Policies ( Firewall Rules ) to Permit traffic from LAN to WAN, and DMZ to WAN.
3: Create a NAT Policy ( Source-NAT/ PAT) for LAN and DMZ Subnets, Translate them against the IP assigned on WAN Port
4: Create a default route (Static route ) pointing from your internal zones ( LAN, DMZ ) to WAN, point it to your ISP gateway ( I assume this info was provided by ISP )

Let me know if this won't work.
Only challenge is with VLAN ID given, above configuration been made on device.
How can I apply that VLAN ID given by ISP ?.
 
Only challenge is with VLAN ID given, above configuration been made on device.
How can I apply that VLAN ID given by ISP ?.
ISP kakupa IP, gateway na VLAN ID kama part ya link setup? Angalia namna ya kuifanya WAN Port kwenye Sophos iwe Tagged port, then tengeneza Subinterface, weka VLAN ID na IP kwenye Subinterface (VLAN interface ), then treat hiyo Subinterface kama WAN Port..
Will put a YouTube link below to assist you

Sent from my SM-G610F using Tapatalk
 

Similar Discussions

Back
Top Bottom