Guest User!

You are not Sophos Staff.

This discussion has been locked.
You can no longer post new replies to this discussion. If you have a question you can start a new discussion

IPsec VPN Multipath Gateway Config

Just added a second external interface to home site. I have configured Uplink Balancing to use both interfaces (Immediately found out I had to change internal DNS servers to use public DNS forwarders!) I have 3 branch offices connected via site to site vpn. I want them to stay connected if one of the home office wans goes down. From the forum here I see that I need a multipath rule at home office (Uplink Primary Addresses -> IPSEC -> Any -> WAN1) and on the remote offices I put an Availability Group in the Gateway field of the Remote Gateway def.
In my Remote Gateway definitions I have VPN ID TYPE as IP Address and the IP Address is entered in the optional field. Do I need to change this?
If the primary WAN goes down the IP Address would no longer be valid.


This thread was automatically locked due to age.
Parents
  • You're right, "VPN ID TYPE as IP Address" won't work.  Use "Hostname" instead.

    Did you have better luck with that?

    Cheers - Bob
     
    Sophos UTM Community Moderator
    Sophos Certified Architect - UTM
    Sophos Certified Engineer - XG
    Gold Solution Partner since 2005
    MediaSoft, Inc. USA
Reply
  • You're right, "VPN ID TYPE as IP Address" won't work.  Use "Hostname" instead.

    Did you have better luck with that?

    Cheers - Bob
     
    Sophos UTM Community Moderator
    Sophos Certified Architect - UTM
    Sophos Certified Engineer - XG
    Gold Solution Partner since 2005
    MediaSoft, Inc. USA
Children
No Data
Share Feedback
×

Submitted a Tech Support Case lately from the Support Portal?