Hi,
all. I have a Site2Site IPsec Tunnel (both are Sophos XG with actual version).
Both sites have 1 LAN on their adapter.Working so far. One site 172.30.1.0/24, other site 10.10.10.0/29 (Sophos 10.10.10.1).
Now I added a new small LAN to the one adapter (2nd IP on that NW). So "right side" has now 10.10.10.0/29 and a 2nd Range 10.10.11.0/29 (Sophos 10.10.11.1).
My server behind that new IP (10.10.11.2) can use internet as expected.
But now I extend the Site2Site network range that 10.10.11.0/29 should be able to access my 172.30.1.0 netwkrok on other Site of my tunnel.
Does NOT work. Surely a corresponding access rule is in place.
What I wonder: The server 10.10.11.2 hat 10.10.11. as the default GW. But a traceroute shows the 10.10.10.1 as GW.
So it seams that Sophos get a request on 10.10.11.1 but is answering on 10.10.10.1...
I don't understand... Any hints what is wrong?
Thanks Gernot
This thread was automatically locked due to age.