This discussion has been locked.
You can no longer post new replies to this discussion. If you have a question you can start a new discussion

Is IPSec site to site VPN possible when you connect a router behind the firewall?

On this particular branch, IP addresses are leased by the router. I want to make SOPHOS XG the EDGE device without removing the router. 

 

The IP address of the SOPHOS box obviously is on a different subnet.

 

My tunnels are up, but I can not PING.

 

My XG device is 192.168.4.1

The LAN is 192.168.1.0

 

Is IPSec site to site VPN feasible? If so, what do I need to change in my Firewall rules to enable traffic?

 

 



This thread was automatically locked due to age.
Parents Reply
  • So, is the IPsec tunnel between an external device and the router behind the XG?  Or, is the XG the tunnel endpoint and you want the other site to be able to reach the subnet behind the router?

    Cheers - Bob

     
    Sophos UTM Community Moderator
    Sophos Certified Architect - UTM
    Sophos Certified Engineer - XG
    Gold Solution Partner since 2005
    MediaSoft, Inc. USA
Children
No Data