Sophos Firewall S Public Ip Address
Hi i m trying to install the sophos server client on a server within a pci environment.
Sophos firewall s public ip address. All external access is blocked so i was trying to see which ip addresses the client needs access to to download the software and for updates. Note if you haven t configured the wan interface of xg firewall with its public ip address you must modify the configuration file in sophos connect admin. Select the correct subnet mask. Select the wan interface.
Cause when i try to connect with the vpn client i see this in the logs. In the definitions the intern ipv4 entry is connected to this interface. Sophos connect client is vpn software that runs on microsoft windows 7 sp2 and later and mac os 10 12 and later. Enter the private ip address that you made note of earlier.
The esxi is connected with one interface directly to the internet with the single public ip mentioned above. An ssl vpn can connect from locations where ipsec encounters problems due to network address translation and firewall rules. In this case it is port b. What you will get is the ip address which is perceived by the astaro up2date server as the remote host for an https request originating from the gateway.
Eth0 the sophos has 3 virtual lan interfaces. Configure the target host as the public ip address or fqdn of xg firewall. Creating a site to site red tunnel set up a site to site red tunnel between two sophos xg firewall devices without deploying a red device. Using ddns the public dns name will always point to the correct ip address.
The astaro is connected to an isp managed cisco firewall router so has only 1 packet filter rule in place which is any any any to effectively disable the astaro firewall. In the alias interface window configure the following. This ip addresses are assinged to 1 interface i call it interface1 for now 1 address isthe default interface address and the others are addtional adresses. From my isp i have 1 static public ip and also a 28 public network 13 ip s usable one is the gateway which has been assigned by the isp the sophos is set up on a virtual machine on a esxi.
Vpn public ip address needed in. Click on configure network interfaces add interface add alias. What ip addresses do clients with sophos server protection need access to. Do i need to add here my public ip from my internet isp.
Configure the new ip on the sophos xg firewall. This interfaces also contains the default gateway. This address actually might be the external ip of the gateway itself but can also be the address of the last masquerading firewall or http proxy in between your gateway and the up2date server. We using the utm on a public ip address block of 4 adresses.