Router on the edge

Good morning everyone! Today I want to explain a configuration for routing internal networks with a layer 3 routing switch and a router for accessing the internet. I call it “router on the edge”. The definition “edge router” is typically a router running EBGP (External Border Gateway Protocol) so I invent a new definition 🙂 … Read more

Sophos UTM 9.1 Final Release is here!

After the soft-release here comes the final release of Sophos UTM 9.1: ftp.astaro.de You can update from 9.006-05 to 9.100-16. People which installed the soft-release 9.100-8 will get an email some days ago like me to update from 9.100-8 to 9.100-16:   here are the official changelogs for 9.100-16: Official Up2Date Description: Remarks * System … Read more

Updating Sophos UTM via shell

Some of my customers have problems uploading big files via WebAdmin to update to the newest version. For myself I always download the files directly via shell to the update-folder like this: Activate shell access and configure a root and a loginuser password:   after this u can use PuTTY to connect to your UTM … Read more

Sophos UTM 9.1 available!

You can download the update from 9.006005 to 9.100008 here: ftp.astaro.de Up2Date-Informations News Major Features Endpoint: Web Protection for UTM Endpoint Network/RED/Wifi: Support for MAC Address Filtering RED: Offline Provisioning VPN: SSL VPN Support for iOS and Android Wifi: Wireless Repeating and Bridging for AP50   Other Features WebAdmin: Replace “Traffic Lights” with Toggle-Switch Design WebAdmin: … Read more

Site2Site VPN Tunnel with ClientVPN @ Cisco IOS

Good Morning everyone! I want to describe several VPN configurations on a Cisco router, ASA firewall and Sophos UTM. I will start with Cisco IOS on a Cisco router. In this example you will learn to configure a site2site VPN tunnel with a coincident client VPN access. First we will configure the basic IPsec VPN settings. … Read more

The problems with asymmetric routing

Happy Saturday to all of you! I made some thoughts about the topic asymmetric routing. When I make network audits to new customers I often see multiple gateways in a single subnet (for example for site2site VPNs). They tell me about some weird problems with some intercommunications between those subnets. To better understand the wrong topology … Read more

Using a VDSL line with Sophos UTM

In this example I will show you how to use VDSL on a Sophos UTM from Deutsche Telekom. It works with home and business lines.  To use PPPoE for VDSL, the network traffic needs to be tagged with VLAN tag 7 in the Deutsche Telekom infrastucture. We will use the ALLNET ALL126AS2 as the external modem. … Read more