This discussion has been locked.
You can no longer post new replies to this discussion. If you have a question you can start a new discussion

VPN - Allow 2 or more PC connect same Public IP

Hi,

It's my firts Question...

I've XG330 (SFOS 17.0.8 MR-8).

I have multiple sites with 2 or 3 computers each headquarters, there is 1 Public IP in each location, and this PC's are connecting via L2TP, at the moment of connect first PC no problem, but second PC don't connect inclusive if the second PC have a user distinct.

The logviewer shows Traffic invalid, Bad UDP Checksum:

messageid="01001" log_type="Firewall" log_component="Invalid Traffic" log_subtype="Denied" status="Deny" con_duration="0" fw_rule_id="0" policy_type="0" user="" user_group="" web_policy_id="0" ips_policy_id="0" appfilter_policy_id="0" app_name="" app_risk="0" app_technology="" app_category="" in_interface="" out_interface="" src_mac="" src_ip="x.x.x.x" src_country="" dst_ip="x.x.x.x" dst_country="" protocol="UDP" src_port="49161" dst_port="4500" packets_sent="0" packets_received="0" bytes_sent="0" bytes_received="0" src_trans_ip="" src_trans_port="0" dst_trans_ip="" dst_trans_port="0" src_zone_type="" src_zone="" dst_zone_type="" dst_zone="" con_direction="" con_id="" virt_con_id="" hb_status="No Heartbeat" message="Bad UDP checksum." appresolvedby="Signature"

I had been Search for any solution, but only I had find this:
https://community.sophos.com/products/unified-threat-management/f/vpn-site-to-site-and-remote-access/55031/allow-multiple-users-connect-to-vpn-at-the-same-time-from-same-public-ip

I need that 2 or more PC are connected with L2TP.

How I make to the XG allow 2 or more PC connections L2TP with the same Public IP?

Please Help me, Thanks... regards...



This thread was automatically locked due to age.
Parents
  • Hi  

    For troubleshooting and confirmation purposes, have you verified that those other PC's are able to successfully connect via L2TP (as long as they are the only connection)?

    On your logviewer, is it showing the same source port for all of your attempted L2TP connections?

    You could also try using SSL VPN for remote access (if that's an option for you).

    Regards,

  • Hi  

    Yes, The PC's connect good, if only is connected 1, I has been conecting one by one, and without concurrent, and the conection is sucessfull.

    I can't determinate the source port, but if connection is L2TP the active user is logoff and the user that try connect is loged on. But if is PPTP, the connection is refused by the XG.

    The SSL connection isn't used because no everytime connect to internal LAN, and then is disconnected and reconnect to that the connection to internal servers is sucesfull. (This was with UTM 230).

    Thanks...

Reply
  • Hi  

    Yes, The PC's connect good, if only is connected 1, I has been conecting one by one, and without concurrent, and the conection is sucessfull.

    I can't determinate the source port, but if connection is L2TP the active user is logoff and the user that try connect is loged on. But if is PPTP, the connection is refused by the XG.

    The SSL connection isn't used because no everytime connect to internal LAN, and then is disconnected and reconnect to that the connection to internal servers is sucesfull. (This was with UTM 230).

    Thanks...

Children