This discussion has been locked.
You can no longer post new replies to this discussion. If you have a question you can start a new discussion

v18 - Route based VPN between two Sophos Appliances, branch office with dynamic peer IP and NAT

Hi Sophos Community,

 

maybe you can help me to understand, if I am missing something, or if you think (like me) that this should work.

I try to setup route based vpn between head office (ho) and branch office (bo) both with Sophos Appliances SFOS v18.

- Ho has a public static IP on its WAN interface.

- Bo is behind a NAT router with dynamic IP.

 

I wont have an issue setting up a tunnel with policy based VPN, however I would like to use the benefits of a route based vpn since it is now supported in v18.

 

When I try to setup the vpn on ho with "respond only", it wont accept "*" for peer IP, like it would when I setup a policy based vpn. I use a remote ID to identify the request regardless of its source IP (like I would do with policy based vpn) I would like to avoid ddns stuff if possible and imho this should work anyway, should it not?

Am I missing a technical reason, why this can not work or is it a bug/missing feature in SFOS v18?

I appreciate your assistance!

 

Kind regards,

 

David



This thread was automatically locked due to age.
Parents Reply Children
No Data