This discussion has been locked.
You can no longer post new replies to this discussion. If you have a question you can start a new discussion

IPMIView Blocked on one VLAN but not on VPN?

Hi there. I seem to be having a rather odd problem. I have my local network set up with several VLANs. Two of them are the Management VLAN (VLAN 10) and Users VLAN (VLAN 20). They are on 10.0.10.0/24 and 10.0.20.0/24 respectively. I also have VPN set up. Generally, all seems to work fine.

In order to allow me to manage servers and the like, I created a firewall rule that allows authenticated users access to VLAN 10, either from VLAN 20 or the VPN. When I'm on VLAN 20, I use the network authentication agent, and when I use VPN that's taken care of when I login to the VPN client software.

Generally speaking, everything seems to work just fine. I can access VLAN 10 when I need to. With one exception: Supermicro IPMIView. The odd part about this is that IPMIView works just fine when I'm accessing remotely through the VPN, but cannot see the server when I authenticate on VLAN 20. When I try scanning the IP range in 10.0.20.0 for the server in IPMI, it finds nothing. However, I can otherwise access the server just fine. I can ping the management UI IP address, access other admin stuff (that is only available on VLAN 10), etc. It's only IPMIView that doesn't work. Web access to the IPMI WebGUI on the server works just fine from VLAN 20. When I check the firewall log, nothing seems to be blocked that is originating from the PC on VLAN 20 on which I'm attempting to access VLAN 10.

I'm not necessarily sure this is a Sophos problem - maybe IPMIview has a problem with a server being on a different subnet, though for the life of me I'm not sure why it would when everything else works. But I thought I'd perhaps check here to see if maybe I've misconfigured something on the firewall. Any suggestions would be most appreciated.

Also FWIW the reason I need IPMIview instead of the IPMI WebGUI is because console functionality is broken on the latter but not the former.



This thread was automatically locked due to age.
Parents Reply Children
  • Thank you Eren. That may be true for the search function, but it also doesn't work when I input the IP address of the server directly. Given the packet sniffing tests I've tried, it looks like nothing is hitting XG at all, so appears not to be a broadcast issue. Do appreciate the suggestion though - thank you for that.

    Eren Ertas said:

    It seems a broadcast issue, IPMIview finds the server by broadcasting its network but your server is in another network, so you cannot broadcast different networks by default. You can try Multicast Forwarding. https://community.sophos.com/kb/en-us/123135