Guest User!

You are not Sophos Staff.

This discussion has been locked.
You can no longer post new replies to this discussion. If you have a question you can start a new discussion

Client Authentication Agent

Hi

Sophos XG 105 with latest firmware.

We do remote support to customers via vpn.

 

I have my laptop connected to the LAN with the CAA connected. I can see the internet.

I then connect a vpn to a customer and open an RDP session to a machine.

About 10 seconds later the CAA disconnects the RDP session, disconnects me from the internet. The vpn connection is still connected but i can't get to it.

 

Is there a setting somewhere that will stop this behavior, we need the vpn's to work properly.

Thanks



This thread was automatically locked due to age.
Parents
  • Jon,

    CAA uses a technology called "ping pong" in order that CAA continuosly ping XG IP (1.2.3.4 on port 9922). Once you get connected on VPN, all traffic will go through the tunnel so even 1.2.3.4 and so you are not connected anymore.

    If you are using a split tunnel, where only certain traffic goes through the tunnel, then your 1.2.3.4 will still go to XG lan interface and you keep the CAA connected.

    Most of the time, VPN are full tunnel (which makes sense, because all traffic goes through the tunnel and this is more secure).

    Regards

Reply
  • Jon,

    CAA uses a technology called "ping pong" in order that CAA continuosly ping XG IP (1.2.3.4 on port 9922). Once you get connected on VPN, all traffic will go through the tunnel so even 1.2.3.4 and so you are not connected anymore.

    If you are using a split tunnel, where only certain traffic goes through the tunnel, then your 1.2.3.4 will still go to XG lan interface and you keep the CAA connected.

    Most of the time, VPN are full tunnel (which makes sense, because all traffic goes through the tunnel and this is more secure).

    Regards

Children