Guest User!

You are not Sophos Staff.

This discussion has been locked.
You can no longer post new replies to this discussion. If you have a question you can start a new discussion

Branches office cannot communicate thought Ipsec of head office

 Hi,

We are 2 branches office and one Headquarter.

 

BO1-------Ipsec------HQ------Ipec-----BO2

 

Connexions between BOs and HQ are fine ( ping/share...ect) but I cannot ping any computer from BO1 to BO2 or BO2 to BO1. 

On Ipsec setup of HQ, Network from each BO are in local subnet. And each place have Firewall rules : VPN to Lan and Lan to VPN

Do I missing something?

 

thanks for your help,

 

 



This thread was automatically locked due to age.
Parents
  • Samps,

    use a traceroute from each branch office to understand where the traffic goes. If it go through internet, you have to add a static route on each branch office that uses the IPSec as gateway or interface.

    Regards

  • Hi Lferrara,

     

    I thought that add appropriate lan to Ipsec HQ and BOs on local network or Remote network would assign static route.

    I remove ''Rewrite source address (Masquerading)' on Firewall rule VPN to Lan in HQ and it's working. I can communicate between BOs

     

    But doing that I lost the possibility to route SSL Vpn traffic (internet) thought my HQ. Is there any option to fix that?

     

    Thanks, 

    Regards,

Reply
  • Hi Lferrara,

     

    I thought that add appropriate lan to Ipsec HQ and BOs on local network or Remote network would assign static route.

    I remove ''Rewrite source address (Masquerading)' on Firewall rule VPN to Lan in HQ and it's working. I can communicate between BOs

     

    But doing that I lost the possibility to route SSL Vpn traffic (internet) thought my HQ. Is there any option to fix that?

     

    Thanks, 

    Regards,

Children