Guest User!

You are not Sophos Staff.

This discussion has been locked.
You can no longer post new replies to this discussion. If you have a question you can start a new discussion

Setup XG to AWS VPN with IPSec and BGP?

For UTM, when creating a VPN with AWS, you can download and XML config file and use it to create the VPN definition in UTM, is there a similar feature for XG? I doesn't seem like XG has all of the same functionality to handle the BGP routing? I can't seem to get my Office to AWS IPSec VPN to work based on the instructions in AWS or the instructions in XG (which are extremely sparse).



This thread was automatically locked due to age.
Parents
  • Hi All,

    Have you solved vpn connection problem with AWS, I have resolved it, please find below routing configuraiton.

     

    Network background:

    on premise:10.10.0.0/16

    AWS VPC:192.168.1.0/24

     

    Policy routing on sophos:

    VPN incoming:

    Incoming interface:WAN ip address(WAN port)

    Source Networks:192.168.1.0/24

    Destination Network:10.10.0.0/16

    Service: any

    Gateway*:10.10.0.1(on premise inside gateway)

     

    VPN outcoming:

    Incoming interface:WAN ip address(WAN port)

    Source Networks:10.10.0.0/16192

    Destination Network:192.168.1.0/24

    Service: any

    Gateway*:10.10.0.1(on premise inside gateway)

     

     

     

Reply
  • Hi All,

    Have you solved vpn connection problem with AWS, I have resolved it, please find below routing configuraiton.

     

    Network background:

    on premise:10.10.0.0/16

    AWS VPC:192.168.1.0/24

     

    Policy routing on sophos:

    VPN incoming:

    Incoming interface:WAN ip address(WAN port)

    Source Networks:192.168.1.0/24

    Destination Network:10.10.0.0/16

    Service: any

    Gateway*:10.10.0.1(on premise inside gateway)

     

    VPN outcoming:

    Incoming interface:WAN ip address(WAN port)

    Source Networks:10.10.0.0/16192

    Destination Network:192.168.1.0/24

    Service: any

    Gateway*:10.10.0.1(on premise inside gateway)

     

     

     

Children
No Data