This discussion has been locked.
You can no longer post new replies to this discussion. If you have a question you can start a new discussion

VPN Site-to-site nat site not reachable

Hello,

A couple of months ago i followed the guide (https://support.sophos.com/support/s/article/KB-000035717?language=en_US) to create a site-to-site vpn.

Because the NAT on FW1 with i was not able to bring up the tunnel. With help from emmosophos i set up the local and remote id. So the tunnel was up.

But i cant reach (ping)  the NAT site (FW1) to the other site FW2. The other direction ping working.

Traceroute cant find the direction.

Please help?



This thread was automatically locked due to age.

Top Replies

  • FormerMember
    FormerMember +1

    Hi Rijsbol,

    Thank you for reaching out to Sophos Community.

    Ensure that you have LAN to VPN and VPN to LAN firewall rules set up at both locations.

    Please check the packet capture for ping requests at both ends.

    Monitor traffic using Packet Capture Utility

    Use BPF string host xx.xx.xx.xx and proto ICMP (replace the x with the IP you're pinging)

    eg. host 192.168.4.193 and proto ICMP

    Jump to answer
Parents Reply Children
No Data