Guest User!

You are not Sophos Staff.

This discussion has been locked.
You can no longer post new replies to this discussion. If you have a question you can start a new discussion

IPSec VPN over Interface without a default gateway

Hello Community,

I need to create an IPsec Tunnel over a routed Network. For the Firewall it is a normal Interface without a default gateway. So, I can't select this interface as local gateway in the IPsec configuration. We have a MPLS line between to Sophos XG firewalls and want to secure this Connection with an IPsec Tunnel. 

In the past we used a RED-Tunnel over the MPLS line, but the Tunnel and OSPF become very unstable, and we are not able to work over this line.

Has anybody an idea how to configure the IPsec Tunnel?

Thanks,

Ben



This thread was automatically locked due to age.
Parents Reply
  • Hi Ben, Another way is to terminate both the side MPLS line over XG as in WAN Interface with WAN type backup. So it will not serve Internet traffic and your Internet traffic will be routed via an actual WAN ISP over the respective XG.

    Once you will set the MPLS as in WAN you will get the same in the local interface in IPsec configuration settings and as both the side XG is already reachable with each other via this MPLS, you may be able to establish IPSec.

    Regards,

    Vishal Ranpariya
    Technical Account Manager | Sophos Technical Support

    Sophos Support Videos | Knowledge Base  |  @SophosSupport | Sign up for SMS Alerts |
    If a post solves your question use the 'This helped me' link.

Children
Share Feedback
×

Submitted a Tech Support Case lately from the Support Portal?