Guest User!

You are not Sophos Staff.

This discussion has been locked.
You can no longer post new replies to this discussion. If you have a question you can start a new discussion

Outgoing SSL VPN connection dropping

UTM 9.702-1

A new customer provided an outgoing SSL VPN connection for our company to connect to theirs.  The connection goes out through the UTM. We can establish the connection but after 4 or 5 minutes the connection is dropped. Examining the tcpdump, it seems our client, behind the UTM, is sending TCP resets. If we are outside the UTM, i.e. Home, there is no problem, connection stays up.  The problem appears to be going out the UTM. Any ideas appreciated.



This thread was automatically locked due to age.
Parents
  • FormerMember
    0 FormerMember

    Hi  

    Thank you for reaching out to the community!

    When you say connection outside the UTM works fine, did you mean you connect to that internal host via DNAT rule? 

    Is it site to site SSL VPN or remote access SSL VPN that you are experiencing the issue? If the client behind the UTM is sending reset packets, I would advise investigating the reason why it resets the connection. 

    Thanks,

  • Scenario A - I'm at my office connecting to my customer's ssl vpn (outgoing), communication goes through UTM, result connection drops after 4-5 minutes.

    Scenario B - I'm at home connecting to my customer's ssl vpn (outgoing), communication goes through ISP's router, result connection stay up, no problems.

    This is not site to site vpn. I go to a webpage and log in and an ssl connection is established and subsequently an RDP connection is tunneled through it.

Reply
  • Scenario A - I'm at my office connecting to my customer's ssl vpn (outgoing), communication goes through UTM, result connection drops after 4-5 minutes.

    Scenario B - I'm at home connecting to my customer's ssl vpn (outgoing), communication goes through ISP's router, result connection stay up, no problems.

    This is not site to site vpn. I go to a webpage and log in and an ssl connection is established and subsequently an RDP connection is tunneled through it.

Children