Guest User!

You are not Sophos Staff.

This discussion has been locked.
You can no longer post new replies to this discussion. If you have a question you can start a new discussion

XG - cant ping/access the hosts from outside

Hey guys,

 

i have an issue with accessing to one of our public ip+directed domains from outside. We have 2 ISP behind of XG and one of them is working without problem (Port 4). Other one (Port 2) is an ISP router and  interface set as DHCP. Somehow i can not ping/access to Port2.

 

I tried to find a solution online and did a few tests but was not successful. 

 

I will be so happy if you can help me to figure it out.

 

Cheers,

 

Cenk



This thread was automatically locked due to age.
Parents Reply
  • Cenk,

    For the ping problem: in the log viewer, add a filter "protocol is ICMP". Here you should be able to confirm if the ping-requests reach your Sophos XG or not. Don't forget that the ping-reply has to get back to your machine that sent the ping-request. Maybe that's blocked by the ISP router.

    You can also try a tracert / trace route command. Maybe it's a routing issue...

    Good luck

Children
  • Hi,

    i can confirm that i see ICMP requests for my public ip which error message says "message="ICMP packets with invalid ICMP type/code."

    What is wondering me is that i can ping my public ip from my LAN without problem. Since we can see the ping requests at XG, can it be that XG is not answering to the requests because of one missing route or something?

    Thanks a lot guys!

  • Hi Cenk,

    You have 2 WAN interfaces. Are both set to Active? Both have the same weight? (Configure > Network > WAN Link Manager)

    Secondly, can you go to Monitor&Analyze > Tools > Traceroute and tracert 8.8.8.8 once via Interface 2 and then via Interface 4
    Can you paste a screenshot of both results? Or you can PM me the screenshots

    Thanks