I have two remote XG Firewalls, with identical configs, both firewalls are on dynamic IP internet connections which obviously keep changing. To get around this from a management point of view I want to connect to the inside interface of the firewall to manage them using the internal LAN gateway IP.
The first firewall I setup works, i can connect to https://172.16.x.x:4444, the second firewall wont let me in!
However on the second firewall i can ping the inside interface, and even SSH into the management (port 22) but https:4444 shows open port (with nmap scan) but no web browser can connect.
I have added the device access rule (pictured below), which is identical to the other firewall. (172.20.0.0/12 + outside IP of head office firewall)
Again both firewalls have identical configs, and if your wondering yes i can connect to the inside interface from a computer on the local subnet, its only when i try and access from head office over the VPN and only effects :4444, not SSH or Ping.
Checking head office side firewall logs its not blocking the packets, it can see them going out, so its the Sophos not responding.
what am i missing?
This thread was automatically locked due to age.