This discussion has been locked.
You can no longer post new replies to this discussion. If you have a question you can start a new discussion

IPSec Tunnel on XG 135W behind a FritzBox

Hello,

I have the following configuration for doing some tests:

 

Fritz Box connected to 1&1 DSL. 

XG 135W connected to internal LAN (192.168.178.0/24 of Fritzbox via DHCP. 

The external Address of FritzBox is forwarded to the XG 135 WAN address (which is an DHCP Address of the Fritz Box LAN)


Now I like to establish an IPSec Tunnel from a remote site to the XG 135 behind the FritzBox (which unfortunately doesn't run out of the box). The tunnel is between the external address of the remote site and the external address of the FritzBox which is forwarded to the external address of the XG 135W. 

Is this possible?

If not is it possible to use the XG 135 as an replacement for the Fritz Box (I think that would be connecting the WAN interface to the 1&1 DSL directly (via PPoE??).




This thread was automatically locked due to age.
Parents
  • Hello Bernd,

    Thank you for contacting the Sophos community!

    To clarify, the XG has the Public IP assigned to it?

    If the XG has a Private IP assigned on the WAN if you are able to forward traffic from Port 500 and 4500 you should be able to configure the IPsec tunnel as long as the XG is the tunnel initiator. 

    If the XG has the Public IP assigned on its WAN interface and your FritzBox is in bridge mode or forwarding the ports mentioned above you should be able to configure the IPsec.

    Also yes the XG supports PPPoE if you want to remove your FritzBox out of the equation. 

    Regards,

Reply
  • Hello Bernd,

    Thank you for contacting the Sophos community!

    To clarify, the XG has the Public IP assigned to it?

    If the XG has a Private IP assigned on the WAN if you are able to forward traffic from Port 500 and 4500 you should be able to configure the IPsec tunnel as long as the XG is the tunnel initiator. 

    If the XG has the Public IP assigned on its WAN interface and your FritzBox is in bridge mode or forwarding the ports mentioned above you should be able to configure the IPsec.

    Also yes the XG supports PPPoE if you want to remove your FritzBox out of the equation. 

    Regards,

Children
No Data