Guest User!

You are not Sophos Staff.

This discussion has been locked.
You can no longer post new replies to this discussion. If you have a question you can start a new discussion

XGS Site-To-Site Red

I'm having an issue getting the Site-To-Site Red working. I have it all setup and it shows connected but I can't access the remote network. I can ping the remote gateway but nothing past that. Below are my settings for the Red Server....

RED IP: 192.168.a.1

RED netmask: /24(255.255.255.0)

Zone: LAN

No Tunnel Compression

RED MTU: 1500

Static Routes on Red Server:

Destination IP / Netmask: 192.168.b.0/24 - Remote Network

Gateway: 192.168.a.2

Interface: 192.168.a.1

Red Client Setup:

RED IP: 192.168.a.2

RED netmask: /24(255.255.255.0)

Zone: LAN

RED MTU: 1500

Static Routes on Red Server:

Destination IP / Netmask: 192.168.d.0/24 - Remote Network

Gateway: 192.168.a.1

Interface: 192.168.a.2

I have setup a firewall rule on both sides like below....

LAN,RED>ANY  LAN,RED>ANY  Any Service

No matter what I've tried and can't access the remote network either way. I can only ping the gateway from each side.



This thread was automatically locked due to age.
Parents
  • So I have found something that is interesting and weird. I setup a site-to-site SSL VPN between the 2 locations and it works perfectly fine. If I then disable the VPN on the branch side and leave it enabled on the server side then the site-to-site red tunnel works. If I disable the VPN on both sides then the tunnel is broken. I'm not sure why its working that way but it is. Maybe a bug in the latest software release?

  • Hello, You have to delete the site-to-site SSLVPN on both side and your red configuration will work properly.

    Viken

    XG Certified Architect

    Sophos Gold Partner - Reseller from Lyon, France

Reply Children
Share Feedback
×

Submitted a Tech Support Case lately from the Support Portal?