Guest User!

You are not Sophos Staff.

This discussion has been locked.
You can no longer post new replies to this discussion. If you have a question you can start a new discussion

IPSEC Tunnel Webservers with port 80 and 443 do not pass thru, but everything else does.

Hello ppl.

We are trying to replace our Main Office SG330 with a XG330, during the test replace this weekend, we hit a snag:

The IPSEC tunnel to our remote branch XG210 connected properly.  We could ping to the other side both ways.  We can rdp each side no problem so does FileShare, SQL and other services.  The only thing that failed was to connect to web servers one way or the other, but only those that uses port 80 and 443 (that include switches web consoles and printer web consoles).  Web server that don't use the standard port like 8080, 8088, 4444 works perfectly.  

When I put my SG330 back in, I don't have the problem, so I suspect that the problem is with the XG330. 

I've upgraded both XG to latest 18.5 firmware (as time of this writing), didn't fix the issue. 

The logs don't help me much, because it's not showing me anything. 

Searching on the forum, I've seen the MTU fix, I've put the WAN MTUs to 1464 instead of 1500. And that still didn't fix the issue. 

I suspect the Web Filter to do something, but I don't have logs in it... so I don't know.   Is there a way make the remote Web Filter skip whole remote network? I don't know.



This thread was automatically locked due to age.
Share Feedback
×

Submitted a Tech Support Case lately from the Support Portal?