This discussion has been locked.
You can no longer post new replies to this discussion. If you have a question you can start a new discussion

VPN SSL connection -> Azure and other remote connections

Hi all :),

We are having an issue with VPN SSL connections.

We have 3 main offices connected using IPsec connections. This 3 main offices are connected to a Azure BD using also a IPsec connection. Locally, all works fine: all the main offices have connection between them and with Azure.

When the users connect remotely to their office to work remotely, they have access to the their office range but not with another one. The pool of ranges are included in the tunnel specifications. The main problem is that they can't access to connect to the Azure BD and can't work 100% remotely.

Thanks!



This thread was automatically locked due to age.
Parents
  • Hello Jose,

    Thank you for contacting the Sophos Community!

    Can you confirm that the AZURE ranges are included in the SSL VPN Allowed Networks, also please add the SSL VPN subnet in the IPsec as Local Network and on Azure as remote Subnet.

    If you see the SA is up, and there is no traffic, make sure you have a VPN to VPN rule set with ANY.

    Also, confirm the traffic that is going to Azure, is arriving to the XG and then the XG is sending it to Azure via the IPsec tunnel, for this please use the packet capture in the GUI of the XG. (Monitor & Analyze >> Diagnostics >> Packet Capture >> Configure >> Enter BPF String = host x.x.x.x (where x.x.x.x = the IP of a host in Azure)

    Regards,

  • Hi emmosophos,

    The IP 192.168.11.200 is a SYNOLOGY where runs a program and demands the BD to Azure located in the IP 192.168.200.6

    Hope this information can help us.

    Thank you again emmosophos Slight smile

Reply Children