Guest User!

You are not Sophos Staff.

This discussion has been locked.
You can no longer post new replies to this discussion. If you have a question you can start a new discussion

Outlook and Exchange 2016 with DNAT rules

Hello,

support told me that I have to use DNAT Rules for Outlook 2016 in my Branch, so that it will connect to the Exchange Server 2016in HQ.

Branch and HQ are connected via Site-to-Site VPN Sophos XG 105 to Sophos UTM 9. Everything works except Outlook.

Ive created different DNAT rules FQDN and IP, Ports 80 and 443, hostname, owa and autodiscover but nothing will do the thing. Does someone face the same issues?



This thread was automatically locked due to age.
Parents
  • Vincent,

    if you have a site to site and Exchange is at your HQ, you need to make sure that VPN to LAN and LAN to VPN firewall rules exist. Use firewall logs to check what is blocked.

    You can also use a tcpdump on XG console to check where the traffic is going.

    Try also to reach the Exchange server using IP instead of FQDN.

    Regards

Reply
  • Vincent,

    if you have a site to site and Exchange is at your HQ, you need to make sure that VPN to LAN and LAN to VPN firewall rules exist. Use firewall logs to check what is blocked.

    You can also use a tcpdump on XG console to check where the traffic is going.

    Try also to reach the Exchange server using IP instead of FQDN.

    Regards

Children