This discussion has been locked.
You can no longer post new replies to this discussion. If you have a question you can start a new discussion

XG210 to Sonicwall Site to Site IPSec - traffic only flows from XG to Sonicwall, can't ping from Sonicwall to XG

So I've setup a IPsec Site to Site VPN between a Sonicwall TZ300 and a Sophos XG210 - I've checked all the ACL stuff under administration in the XG, I've setup Firewall rules to allow VPN to Lan any/any, and I've tried every possible combination of Encryption/timeout/Etc for the profile settings of the VPN...I'm at a loss. The XG routes to the sonicwall and the sonicwall subnet fine, but, I can't seem to go from the sonicwall subnet to the xg subnet....

 

After a S2S Ipsec is up, and you can ping from one side to the other, what settings on the sophos are left that would prevent you from being able to ping it/ping in the subnet assigned to the vpn?

 



This thread was automatically locked due to age.
Parents
  • Ok - full disclosure. This was my fault. I was focusing on the Sophos when the Sonicwall was the problem - there was an old route in it that pointed to the subnet the vpn connected to, which, prevented traffic from flowing to the Sophos.

     

    Deleted that route, and boom, everything works great.

Reply
  • Ok - full disclosure. This was my fault. I was focusing on the Sophos when the Sonicwall was the problem - there was an old route in it that pointed to the subnet the vpn connected to, which, prevented traffic from flowing to the Sophos.

     

    Deleted that route, and boom, everything works great.

Children