Guest User!

You are not Sophos Staff.

This discussion has been locked.
You can no longer post new replies to this discussion. If you have a question you can start a new discussion

Sophos UTM 9.4 site to site ipsec ping out show only from certain local hosts in the firewall live log?

I have a site to site IPSec tunnel, which was established a week ago but we were having routing issues which was semi-resolved yesterday.

My local hosts are

10.10.10.156

10.10.10.98

10.10.10.16

The remote hosts are

10.15.1.50

10.15.1.51

10.15.1.52

ICMP is allowed

I can ping the 3 remote hosts from 10.10.10.156

and they my local host 10.10.10.156 from the 3 remote host with no problem.

The activity is also visible in the firewall live log.

Here is my problem:

I can see the ICMP requests from the remote hosts to all 3 of my local hosts, firewall allows the requests 

the remote hosts get time out when pinging 10.10.10.98 and 10.10.10.16 , as I mentioned before 10.10.10.156 works fine and replies the ping.

I can't ping any of the remote hosts from 10.10.10.98 and 10.10.10.16 (Time out), as I mentioned before 10.10.10.156 works fine and get reply from the 3 remote hosts

When I look for any reference of the ping coming from 10.10.10.16 and 10.10.10.98 I can't find anything in the live log, nor the full firewall log.

Other than that .16 and .98 are regular hosts, windows firewall are off, they can ping to each other in the LAN and all 3 of them are using the firewall ip as default gateway.

I'm very confused at this point. any help will be appreciated

Thanks

Gaston



This thread was automatically locked due to age.
Parents
  • I agree with Sachin, Gaston - you have a routing or firewall issue in the remote location.

    Cheers - Bob

     
    Sophos UTM Community Moderator
    Sophos Certified Architect - UTM
    Sophos Certified Engineer - XG
    Gold Solution Partner since 2005
    MediaSoft, Inc. USA
Reply
  • I agree with Sachin, Gaston - you have a routing or firewall issue in the remote location.

    Cheers - Bob

     
    Sophos UTM Community Moderator
    Sophos Certified Architect - UTM
    Sophos Certified Engineer - XG
    Gold Solution Partner since 2005
    MediaSoft, Inc. USA
Children
No Data
Share Feedback
×

Submitted a Tech Support Case lately from the Support Portal?