Hi there,
can someone please tell me where I can find the equivalent of Zyxel's Policy Route
This thread was automatically locked due to age.
Hi there,
can someone please tell me where I can find the equivalent of Zyxel's Policy Route
Just one question:
Should the method I chose work?
If so, I think the problem is on the other side. And they need to check their configuration
Correct, please inform the team check on the remote site !
Thanks & Regards,
_______________________________________________________________
Vivek Jagad | Team Lead, Global Support & Services
Sophos Community | Product Documentation | Sophos Techvids | SMS
If a post solves your question please use the 'Verify Answer' button.
Better asked question
Could I have 2 different Subnet in the remote subnet section
Of course, but whatever changes you make locally need to be reflected on the remote site !
Thanks & Regards,
_______________________________________________________________
Vivek Jagad | Team Lead, Global Support & Services
Sophos Community | Product Documentation | Sophos Techvids | SMS
If a post solves your question please use the 'Verify Answer' button.
as said the other side is a Zyxel
And on The Zyxel it is apparently not possible to define 2 subnets in the same site to site configuration
Alright, so this is the limitation of the remote site. Hence you'll have to continue using one subnet.
Thanks & Regards,
_______________________________________________________________
Vivek Jagad | Team Lead, Global Support & Services
Sophos Community | Product Documentation | Sophos Techvids | SMS
If a post solves your question please use the 'Verify Answer' button.
Hello everybody
We found a solution for this Site to Site Problem
On the other side we have now 2 sidetoside configuration
On the local side the LAN_Crans Subnet
And for the local side as said befoe i have 2 Remote subnet in my site2site configuration
The connection is OK but I can't ping any device on the other side
But no Problem to ping with the firewall diagnostic ping
Can you perform the packet capture for the ping traffic - https://support.sophos.com/support/s/article/KB-000035761?language=en_US
And validate that the traffic over the IPsec is going from correct rule and IPsec0 interface ?
Thanks & Regards,
_______________________________________________________________
Vivek Jagad | Team Lead, Global Support & Services
Sophos Community | Product Documentation | Sophos Techvids | SMS
If a post solves your question please use the 'Verify Answer' button.
Thank you for your answer
But no packet receive fronm otherside 172.16.60.100
Firewall log:
And no capture with filter on otherside IP 172.16.60.100
Firewall ping
It looks like it is not detecting the traffic rule, can you create a separate firewall rules:
1.) LAN to VPN
2.) VPN to LAN
The traffic should go out of the IPsec0 interface !
Route Sophos Firewall-initiated traffic through an IPSec VPN tunnel
Thanks & Regards,
_______________________________________________________________
Vivek Jagad | Team Lead, Global Support & Services
Sophos Community | Product Documentation | Sophos Techvids | SMS
If a post solves your question please use the 'Verify Answer' button.