Guest User!

You are not Sophos Staff.

This discussion has been locked.
You can no longer post new replies to this discussion. If you have a question you can start a new discussion

No L2TP connection (server not responding), no information in the logs.

Hi, 

We have since may the XGS2100, now with XG 18.5 MR 1.

Since 2 days we can't connect with L2TP (we only have Mac's so I can's test it on Windows 10), not 1 Mac, nobody can connect. 
Notting changes on the firewall. 

SSL VPN is working perfectly, IPSEC (site-to-site, 2x) is working perfectly. 
I've read a couple topics about the logs (enable debug), but there is no information (on the XG) when I try to connect from the Mac. 

PKA is right, I remake the L2TP general settings, still nothing. 

We do I start for the fix?



This thread was automatically locked due to age.
Parents
  • Hello there,

    Thank you for contacting the Sophos Community.

    The logs for the L2TP are under the Charon log, after the tunnel is created then you’ll see the L2TP log filling up.

    In this case, I would check first with a tcpdump if you see traffic arriving from the Public IP of one of the computers to the XG.

    # tcpdump -eni Port2 host x.x.x.x (substitute the x.x.x.x for the Public IP where one of the computers is connecting from)

    See if you see traffic arriving from this Public IP on ports 500 and 4500 and 1701

    If you see traffic, then check the charon.log at the time the connection is attempted.

    Regards,

Reply
  • Hello there,

    Thank you for contacting the Sophos Community.

    The logs for the L2TP are under the Charon log, after the tunnel is created then you’ll see the L2TP log filling up.

    In this case, I would check first with a tcpdump if you see traffic arriving from the Public IP of one of the computers to the XG.

    # tcpdump -eni Port2 host x.x.x.x (substitute the x.x.x.x for the Public IP where one of the computers is connecting from)

    See if you see traffic arriving from this Public IP on ports 500 and 4500 and 1701

    If you see traffic, then check the charon.log at the time the connection is attempted.

    Regards,

Children
No Data