Guest User!

You are not Sophos Staff.

This discussion has been locked.
You can no longer post new replies to this discussion. If you have a question you can start a new discussion

VPN SSL no tengo acceso a los equipos de la red Internat (LAN)

Hola buenos días, una vez hecha la conexión con VPN SSL Cliente de Sophos no puedo ver los equipos de la LAN.

la VPN me asigna este rango 10.81.234.6, la LAN está en este rango 10.10.10.x

he creado en el Cortafuegos una regla VPN TO LAN 

No sé qué más hacer.

 

gracias.



This thread was automatically locked due to age.
Parents
  • Rafael,

    Remove the match know users check on the firewall rule shared and try again.

    Regards

  • Hola, he hecho lo que me propones y sigue sin funcionar, no veo los ordenadores que están en la Red Interna (LAN)

    ¿Qué más puedo probar?

     

    saludos y gracias.

  • HI Rafael, 

    You may need to create two Rules LAN to VPN and VPN to LAN , No NAT applied. Ensure that the packets are incoming on XG appliance. 

    On console, you may check the dumps via command 

    Console> tcpdump ' net 10.81.234 

    Once you see the traffic you may check if its forwarded to your LAN network as desired. 

    Also if there is no incoming traffic,  you may need to check the routes on your remote PC via command on cmd "route print" when the SSL VPN is connected. This would let you know if the metric value of the desired route took place or not . 

    If not you may need to check your system for this issue and may test on another remote PC.

  • Hello, nothing I do not see the computers on the LAN, I need to get an ip from the LAN interface, since I have applications running on that network and I need to communicate them with each other. I see that the vpn gives you an ip of the range 10.81.234.x, but I need you to use the range 10.10.10.x that is the one of my internal lan.
    Greetings and thank you.

  • hello, I attached a route print from the client pc with the vpn raised.

    Rutas activas:
    Destino de red Máscara de red Puerta de enlace Interfaz Métrica
    0.0.0.0 0.0.0.0 25.0.0.1 10 9256
    0.0.0.0 0.0.0.0 192.168.1.1 192.168.1.235 35
    0.0.0.0 128.0.0.0 10.81.234.5 10.81.234.6 257
    10.81.234.0 255.255.255.0 En vínculo 10.81.234.6 257
    10.81.234.6 255.255.255.255 En vínculo 10.81.234.6 257
    10.81.234.255 255.255.255.255 En vínculo 10.81.234.6 257
    ip public 255.255.255.255 192.168.1.1 192.168.1.235 291
    127.0.0.0 255.0.0.0 En vínculo 127.0.0.1 331
    127.0.0.1 255.255.255.255 En vínculo 127.0.0.1 331
    127.255.255.255 255.255.255.255 En vínculo 127.0.0.1 331
    128.0.0.0 128.0.0.0 10.81.234.5 10.81.234.6 257
    192.168.1.0 255.255.255.0 En vínculo 192.168.1.235 291
    192.168.1.235 255.255.255.255 En vínculo 192.168.1.235 291
    192.168.1.255 255.255.255.255 En vínculo 192.168.1.235 291
    224.0.0.0 240.0.0.0 En vínculo 127.0.0.1 331
    224.0.0.0 240.0.0.0 En vínculo 192.168.1.235 291
    224.0.0.0 240.0.0.0 En vínculo 10 9256
    224.0.0.0 240.0.0.0 En vínculo 10.81.234.6 257
    255.255.255.255 255.255.255.255 En vínculo 127.0.0.1 331
    255.255.255.255 255.255.255.255 En vínculo 192.168.1.235 291
    255.255.255.255 255.255.255.255 En vínculo 10 9256
    255.255.255.255 255.255.255.255 En vínculo 10.81.234.6 257
    ===========================================================================
    Rutas persistentes:
    Dirección de red Máscara de red Dirección de puerta de enlace Métrica
    0.0.0.0 0.0.0.0 25.0.0.1 Predeterminada

  • Rafael,

    send me a PM and I will have a look at your XG.

    Regards

  • hello Iferrara, Tell me what you need to look at my XG, I do not understand what PM means :)

    thanks.

Reply Children