This discussion has been locked.
You can no longer post new replies to this discussion. If you have a question you can start a new discussion

IPSEC Site to site no ping on one way

hello,

i am working on connecting my two main company sites.

But i'm starting to have no idea, i would like to get some help :)

 

Site A with a cyberoam CR35wiNG and site B with a Sophos XG125W.

 

I have successfully create an IPsec tunnel between A and B.

So far, i can ping and access without trouble to site B from site A.

but, from site B, i am not able to ping site A.

 

There are the same Firewall rule on both side.

 

i likely missed somethnig easy, but i don't see....

 

Thanks for your help,

 

Best regards,



This thread was automatically locked due to age.
Parents Reply Children
  • I am actually connected on remote to the server that is on the LAN on site B.

    From there, i try to ping the server in Site A.

     

    To give you an idea :

    site B = LAN (10.0.100.X) - gateway LAN (10.0.100.1) - gateway WAN  (192.168.1.1) - modem router with optic fiber

    site A = LAN (192.168.0.X) - gateway LAN (192.168.0.1) - gateway WAN (192.168.1.1) - moden router with optic fiber

     

    Now, from site A when i try Tracert outside of my internal network (GW site A or LAN Site A) , i am stuck at 10.0.100.1

  • If it could help, and be more clear :

    i am on the site A (192.168.0.X), connected by RDP using the VPN site to site, to the server in Site B (10.0.100.X)

    So, it works well, but only from one side

  • alright, I understand your question, but the rule for VPN access and any for services it's ok.

     

    The ISP on the Sites are the same.

     

    I say this because i had this same problem but was Rule on firewal.

    Att,

     

    Guilherme Figueiredo

     Engeener Sophos UTM & Sophos XG,

    Certified SonicWall Security Administrator.

  • Thanks a lot for your help.

    i fixed the issue. (that was a weird in fact).

     

    Since yesterday, i was modifying the rule, instead of delete and create a new one.

    So, i create a new Firewall rule, with only the server address as host, and by miracle it works....

     

    Thanks,

     

    Best regards,