This discussion has been locked.
You can no longer post new replies to this discussion. If you have a question you can start a new discussion

No route after connecting to SSL Client VPN

Hi,

 

We have setup a SSL Client VPN with AD authentication on XG firewall. The client can connect to VPN, however, the route to LAN cannot get added is the reason behind not getting remote LAN access. It works well after adding routes via ROUTE ADD command.

 

At the client end, we are using Windows 10 Pro OS with TAP adapter instead of Sophos because it was giving error while installing.

 

Regards,

Khushnood



This thread was automatically locked due to age.
Parents
  • Hi Kushnood,

    You can download and install the OpenVPN client and add the configuration file from the Firewall download page. That solved my erratic route add problems with the Sophos SSL VPN Client. AD user and password + Multi Factor Authentication with the Sophos Authentiocator also works with OpenVPN Client. 

    Is the VPN connection used as default gateway or split in the firewall?

    What do you mean with Windows 10 Pro OS with TAP adapter instead of SSL VPN Client?  Are you using the OpenVPN Tap adapter?

    Fred

     

     

     

     

     

     

     

  • Hi Fred,

     

    VPN connection is using split tunnel for internet access and I have installed Sophos VPN client, however, usign OpenVPN Tap Adapter instead of Sophos VPN Adapter.

     

    I will try uninstalling Sophos VPN client and install OpenVPN and update the status.

     

    Thanks.

     

    Regards,

    Khushnood

Reply
  • Hi Fred,

     

    VPN connection is using split tunnel for internet access and I have installed Sophos VPN client, however, usign OpenVPN Tap Adapter instead of Sophos VPN Adapter.

     

    I will try uninstalling Sophos VPN client and install OpenVPN and update the status.

     

    Thanks.

     

    Regards,

    Khushnood

Children
  • We are currently testing with default gateway set on the XG so not similar.

    With windows cmd route print you can check the routing table. If you made the route persistent than it will always show even when VPN is not connected. 

    How did you get the XG VPN configuration to load with Windows10 and OpenVPN TAP adapter?

    With a split tunnel you have to check which Gateway / DNS is resolving. While researching our case I also read a case with split tunnel in which setting the metric manually of the adapters solved the issue they had. So giving the tap adapter a lower DNS metric as the normal gateway DNS metric. In their case routes added but going out the wrong end.

    Regards,

    Fred