Guest User!

You are not Sophos Staff.

This discussion has been locked.
You can no longer post new replies to this discussion. If you have a question you can start a new discussion

DNAT host rule and VPN IPSec

Hi,

we have a setup where we have a headoffice with one AD controllers and a branchoffice with one AD controller. headoffice and branchoffice are connected via site-to-site VPN with two XG 135 firewalls.

I need to access the AD controller in the headoffice via RDC from remote locations. I created the rule for that and it works.

however, now the server cannot communicate with the branchoffice via the IPsec connection.

I guess this is because of the NAT rules associated with the server, because all other hosts in the headoffice can communicate with the branchoffice.

Can I have both? RDC to the AD controller in headoffice and communiocation via IPSec between the 2 AD controllers?

I tried with an exculsion on the DNAT rule but did not get anywhere so far.

Thanks for any tips and hints.

Have a great weekend.

b.



This thread was automatically locked due to age.
Parents Reply Children