Guest User!

You are not Sophos Staff.

This discussion has been locked.
You can no longer post new replies to this discussion. If you have a question you can start a new discussion

Route from one IPSec VPN with NAT to another IPSec VPN without NAT

Hello,

since Friday weve changed from our Sonicwall NSA2650 to our new Sophos XGS2100. 

Everything works fine, expect one thing. 

Weve got 2 VPN Tunnels:

Tunnel 1 (Sidebranch): Local Networks: 10.226.208.0/24, 10.226.211.0, 10.0.3.0/24 (Network from another tunnel) | Remote Networks: 10.226.209.0/24

Tunnel 2 (3rd Party provider (Time): Local Networks: 10.224.26.0/24 (need to use NAT) | Remote Networks: 10.0.3.0/24

Weve got two clients who need to use Tunnel 2, Client 1 (located on our Main Network): 10.226.208.176 (NAT: 10.224.26.176) and Client 2 (located on Tunnel 1): 10.226.209.1 (NAT: 10.224.26.1)

Client 1 works well, NAT is working and the client is online. 

Client 2 doenst work and is shown as offline. 

NAT rules seems to working, but somehow, after the NAT SNAT takes places and translate the Host 10.224.26.1 to 10.226.209.1, the Packet seems not to reach Tunnel 2. 

Any recomendations? 



This thread was automatically locked due to age.
Parents Reply Children
No Data