This discussion has been locked.
You can no longer post new replies to this discussion. If you have a question you can start a new discussion

Avaya 9600 IPSec VPN to SFOS XG 17.5

Hello,

  I am trying to connect an IP SEC phone to an XG firewall.  I was give these article by Richard ( Thank you )

https://community.sophos.com/kb/en-us/131471

I have a few questions:

   1. In the VPN menu on 17.5 : is this created as a IPSEC Connection ( Top left in the VPN menu bar ) or as a Sophos Connect Connection ( Center of VPN menu )?

  • The screen grab looks like Sophos connect is the reason for my question.

  2. The IKE ID ( Group Name ) ,  does this need to be defined as an IP Sec Policy , with matching Phase 1 and Phase 2 ? 

  3. Where are the VPN Logs for the Firewall the ( Logs icon at the top right ) is very brief and only show successful authentication.  Where the good stuff,  key exchange details, MTU negotiation?

All input welcome ,  thank you all in advance..

 



This thread was automatically locked due to age.
Parents Reply Children
  • Thank you for the tip, 

     

    This is the final working rule set,  I had to create a Firewall rule in bound an another out bound

     .

  • Follow up question.

    Everything has been working well between the phone system and sophos, my wife's vpn phone can talk to all the local phones and to the outside world;

    but recently we had to put another remote phone.  VPN connected phones can not talk to each other.

    VPN subnet is 192.168.1.1-192.168.1.10 / 32

    When I VPN in from a client I get an address in that range and can reach/ping the Data subnet 192.168.16.* and the voice subnet 192.168.42.*

    But I am unable to ping any other VPN 192.168.1.* devices.

    What would I need to enable /change on the Sophos?

     

    Thanks