I think what Barry is saying is that a DNAT and a VPN Tunnel are two different solutions and don't work well together. In general, your IPsec endpoint will not be visible to an IP in the tunnel on the other side.
Please explain what you wnat to accomplish - I think it's a lot easier with the UTM than you expect.
Cheers - Bob
Sophos UTM Community Moderator Sophos Certified Architect - UTM Sophos Certified Engineer - XG Gold Solution Partner since 2005
I think what Barry is saying is that a DNAT and a VPN Tunnel are two different solutions and don't work well together. In general, your IPsec endpoint will not be visible to an IP in the tunnel on the other side.
Please explain what you wnat to accomplish - I think it's a lot easier with the UTM than you expect.
Cheers - Bob
Sophos UTM Community Moderator Sophos Certified Architect - UTM Sophos Certified Engineer - XG Gold Solution Partner since 2005