Also german language is welcome ;-)
Envorionment:
Sophos XG210 / SFOS 17.5.10 MR-10
Setup:
LAN = LAG with two ports and multiple VLANs
VLAN70 = 10.10.70.0/24
Sophos Connect Client:
IP-Range 10.10.150.150 - 10.10.150.250
Firewall:
Source: VLAN_70/IP:10.10.70.20 | Dest: VPN/Any/Any
(there are of cource many more rules ...)
Situation:
The Sophos connect client can establish a VPN connection. It can reach all internal services permitted by firewall rules.
From VLAN_70/IP:10.10.70.20 i can't reach the a VPN-Client (for example 10.10.150.150) when it's connected. (Thinks like Client-FW and so on were disabled for the test)
From Sophos diagnostic i can ping the VPN-Client successful.
The "Policy test" said, the firewall rule described above, will match and accepted the traffic.
Question:
It should be possible to reach a Sophos connect client via VPN from internal VLANs as described above or?
What's the pitfall here? I need a hint.
If you need more information, let me know it.
Thx
This thread was automatically locked due to age.