What is router on a stick windows#
How are you using virtual box? Is it on a linux machine or a windows machine? Virtual Box is a client VM-Tool like VMware Workstation or not? Try to configure networks in virtual box (interface 1 = vlan tag 10, interface 2 = vlan tag 20)Īnd than you configure eth0 with marketing address and eth1 with sales address (no vlan tagging in Sophos UTM). I think your problem isn’t the Sophos UTM. If you want to tag vlan 1 you can change the native vlan to a number that doesn’t exist as a VLAN. If you have vlan 10 and 20 you need to configure the switch like this: I don’t know your VLAN numbers for marketing and sales. The Cisco Switch has the default native vlan 1. You can use this mostly in case your Sophos UTM device hasn’t enough network ports.
What is router on a stick how to#
I hope I could cleary explain how to configure interfaces running on VLANs. For accessing the internet you also need to configure NAT and secure them via Web Protection like this: This definition means, that the can go through every interface that has a default gateway (mostly your WAN line). Use the network definition “Internet IPv4” and/or “Internet IPv6”. To access the internet, I configured a rule that they can use Web Surfing protocolls to the internet. In our example I allowed Marketing and Sales network to use windows shares and make NTP and DNS lookups. Keep in mind that you need to add marketing, sales and your servernetwork in the DHCP relay networks, otherwise no DHCP broadcast message is directed via unicast to your selected DHCP server.Īfter this you can configure firewall rules like this:Īs the most firewalls, the Sophos UTM (based on a Linux OS using iptables) is working with top-down-first-match. You can configure a DHCP Server scope within the Sophos UTM or on your primary DHCP server with DHCP relay function at the “network services”. If there was a device where you ploted the brick wall (firewall) which would route between VLANs. And hEX in your chart being centere of a star-like topology is not router-on-a-stick. This will be the default gateways of those networks. Router-on-a-stick means that router uses only a single physical connection for all network connections (both WAN and VLAN). Now we can configure multiple “Ethernet VLAN” interfaces with a vlan tag like this (networks for marketing and sales):Īt the end of this you will see two new interfaces: Today I will show you to replace the Cisco Router with a Sophos UTM to route between different VLANs.įirst we will connect a Sophos UTM interface (in our example eth3) with our switch environment (switch config example ). In May I posted a tutorial for running a “router on a stick” with Cisco Router, Switch and HP Switch.