Guest User!

You are not Sophos Staff.

This discussion has been locked.
You can no longer post new replies to this discussion. If you have a question you can start a new discussion

Network newbie, need help with a VPN tunnel

I am not very well versed with the specifics in networking, but I do IT and can conceptualize things if someone runs it through with me once.


Here's my problem: I have two offices on a Sophos XG 135 that need a VPN tunnel.

They are both configured (i know it's bad, but I inherited this configuration) with 192.168.1.0 subnets.

The Main Office has a terminal server at 192.168.1.2 which the Remote Office needs to access via RDP. They also need to be able to print to the physical network printers at the remote office from the Terminal Server.

There is a VPN tunnel set up and configured now which allows the Remote Office to hit the Main Office, but as soon as they try to print or anything besides the direct RDP, the Remote office's LAN dies, and I need to cycle the VPN tunnel to bring it back up.

I believe NATing is set up, otherwise there wouldn't be a connection.

To add to this; the Main office's Remote Access (which is configured and working) sometimes loses connectivity to the terminal server. So if a user is at home, he sometimes can or cannot hit the terminal server, depending on what time of day it is.

In addition, some of the workstations have team viewer configured, and they will intermittently go in and out throughout the day. My guess is this is probably because something isn't setup correctly on the VPN or the policies or the NAT.

I am upgrading from 15.01 (I think it is) to 16.1 tonight.

 

My question is, could someone step by step walk me through/show me how they would configure the two offices from scratch? Using the fields and menu terminology from the firewall with examples of the IP addresses and such?

This would help me learn it greatly so I can finally understand and am able to apply it. I grasp the concept of NATing, policies, VPN tunnels, etc. I just learn (I think like most IT people do) more hands on.


Thank you.



This thread was automatically locked due to age.
Parents Reply Children
No Data