Guest User!

You are not Sophos Staff.

This discussion has been locked.
You can no longer post new replies to this discussion. If you have a question you can start a new discussion

XG to XG RED with multiple WAN: Uplink n/a?

Hi!

I'm facing a strange problem using a XG-to-XG RED tunnel (both XGs are on SFOS 16.05.1 MR-1).

My RED server is directly connected to the internet (public static IP, without NAT) and my RED client is using two different WAN interfaces:

1st one is using PPPoE to connect to the internet (also static IP, without NAT) and
2nd one is using an existing internet connection (behind an OpenWRT router, NAT, dynamic IP)

The regular internet connection is working fine, regardless on how I configure the WAN balancing (Active/Backup or Active/Active; both interfaces can access the internet without problems).

But the RED tunnel only works using the 2nd (no typo) connection. Whenever I disable the 2nd interface or configure it as "backup" only, the RED interface seems to keep connecting/disconnecting every few seconds and on my RED server, I see the green note "Uplink: N/A" besides the interface. The RED client then says "Remote IP: x.x.x.x".

Whenever I switch back to load balancing (or 2nd interface exclusively), the tunnel gets established and the server writes the correct IP address besides the RED interface ("Uplink: x.x.x.x) and the client only writes "online" (without any IP). Please see the following pictures:

Client using OpenWRT WAN (RED is working)

Server (when client is using OpenWRT WAN)

Client using PPPoE WAN (RED is not working)

Server (when client is using PPPoE WAN)

So you see that the RED tunnel is somehow "different", depending on the gateway, my client's XG uses.

The log files don't show any interesting things, just a permanent "disconnected" / "reconnected after 5000ms" loop.



This thread was automatically locked due to age.
Parents Reply Children
No Data