Guest User!

You are not Sophos Staff.

This discussion has been locked.
You can no longer post new replies to this discussion. If you have a question you can start a new discussion

VPN Routing Probleme

Hi,

ich bin ein Anfänger in Sachen Sophos. Vielleicht könnt Ihr mir helfen.

Folgende Konstellation:

Fritz!Box 7490
mit interner IP 192.168.2.254
Portweiterleitung auf die Sophos UTM IP 192.168.2.1 via UDP 1194
Rückroute eingerichtet nach 192.168.1.0/24 via 192.168.2.1

Sophos UTM9
Interfaces:
etho (192.168.1.1/24, internal)
eth1 (192.168.2.1/24, WAN)

VPN ist soweit eingerichtet, IP 10.242.2.2 bekommt mein Testclient zugewiesen.

Ping ins 192.168.1.0/24-Netz funktioniert.
Leider nicht ins 192.168.2.0/24-Netz.

Unter Remote Access/SSL habe ich ein VPN Profil angelegt, welches
beide Netze 192.168.1.0 und 192.168.2.0 enthält (Automatic firewall rules).

Vielleicht könnt Ihr mir bei der Fehlereingrenzung helfen!

Liebe Grüße,
c64in1983

 

 

 



This thread was automatically locked due to age.
  • Sorry for replying in English.

    The 192.168.2.0/24 doesn't know how to route to 10.242.2.0. Two possible solutions:

    1. In Fritzbox create a static route for 10.242.2.0 255.255.255.0 to 192.168.2.1 router 
      Possibly you also need a static route for 192.168.1.0 255.255.255.0 also to 192.168.2.1
      And you need firewall rules to allow traffic from 192.168.2.0 net to 192.168.1.0 and vice/versa
    2. Create a SNAT rule in Sophos UTM to NAT source from VPN client to an internal IP (192.168.1.0/24 range)
      You will most likely still need a static route in Fritzbox for 192.168.1.0 network

    If you need more explanation on 1 of those options then let us know.


    Managing several Sophos UTMs and Sophos XGs both at work and at some home locations, dedicated to continuously improve IT-security and feeling well helping others with their IT-security challenges.

    Sometimes I post some useful tips on my blog, see blog.pijnappels.eu/category/sophos/ for Sophos related posts.