This discussion has been locked.
You can no longer post new replies to this discussion. If you have a question you can start a new discussion

Connection may fail because IKE UDP Port seems to be blocked

Hi,

I've upgraded to 17.5 and I am trying to use the new Sophos VPN Client and I get the above message when logging on. No connection can be created. Please help. I've tried turning off the firewall on my PC and my local router. Is there something else I need to enable on the Sophos XG?

Cheers,

Max



This thread was automatically locked due to age.
Parents
  • Any luck on this? In the client log it sends the packets to x.x.x.x:500 and after about 5 attempts it gives up.

     

    I have in the firewall rule both UDP 4500 and UDP 500 to be allowed but still it is blocked. Is one of the device access check boxes needed to enable this?

     

    Log viewer shows its being blocked with no firewall rules matching it.

  • Please post screen shot of your rule that is supposed to pass the IE connections.

    Ian

    XG115W - v19.5.1 mr-1 - Home

    If a post solves your question please use the 'Verify Answer' button.

  • Hello Ian,

     

    It would help to troubleshoot this problem if your firewall admin can ssh to the XG device. In the main menu select option 4. There you can use tcp dump and see if you are get any IKE packets from your client after you enable the connection.

     

     tcpdump "port 500 or port 4500"

     

    Ramesh

  • Hi Ramesh,

    I have asked for information from the various posters in this thread who are complaining about IKE not working but no-one posts the requested information.

    I know IKE works I have had equipment setup on my network in the past which required IKE and associated ports.

    Ian

    XG115W - v19.5.1 mr-1 - Home

    If a post solves your question please use the 'Verify Answer' button.

  • Screenshot of my firewall rule. IKE services are UDP 500 and UDP 4500

     

Reply Children
No Data