Hello guys
I got an strange issue. I needed a long time to complete a configuration between my Sophos UTM9 and my ShrewSoft Client to bring up a tunnel with an X509 certificate. A preshared key is unwanted. Now this is completed with 99%. The problem is now, the touchy UTM9 firewall assignes my client an IP address, without assigning itself one.
How to understand this?
IPsec VPN uses its own network. (Like an SSL VPN does it too.) But there is only one host in this network, the client. The route configuration is completed correctly. But now the routing wants to route the package over the client instead over the firewall. This is unacceptable. In SSL VPN configuration this works better. Client and UTM has an IP address. Networking works.
My Logs
This thread was automatically locked due to age.