Guest User!

You are not Sophos Staff.

This discussion has been locked.
You can no longer post new replies to this discussion. If you have a question you can start a new discussion

SSL VPN Can't See Network Devices

Hi Everyone, 

My team have been using SSL VPN successfully for some time, however, without the ability to actually "see" the network devices and properly access file shares. At the moment, users can ping and RDP into servers and other network devices while connected via SSL VPN, however, they cannot actually see the servers and other devices show up in the network and sharing center. 

I've confirmed that in Remote Access->SSL VPN--> Primary VPN the "internal network" is populated in the list. Automatic firewall rules are also turned on. 

I do not have any NAT or Masquerading rules, however, based on my review of other posts I should not require these?

Any ideas? Thanks!

-Steve


This thread was automatically locked due to age.
  • Steve, do you get any clues using #1 in Rulz?

    I'm signed on to my office via SSL VPN right now and can see and access the shares in Windows Explorer.  You are correct that no NAT rules are required when properly configured.

    Cheers - Bob
     
    Sophos UTM Community Moderator
    Sophos Certified Architect - UTM
    Sophos Certified Engineer - XG
    Gold Solution Partner since 2005
    MediaSoft, Inc. USA
  • Hi Bob,
    I appreciate your reply. I did turn off intrusion, web filtering and application control - to no success. I haven't exactly checked the logs, but will do that in a bit. I'm not 100% sure what to look for in terms of items being blocked, etc. in the firewall log to help resolve this issue. Thanks!

    -Steve
  • Attached of
    1) VPN Network Adapter Settings
    2) VPN Connection Log
    4) Firewall Ping settings


    I'm lost! haha
  • Ya gotta check those logs first, Steve.  No point in trying anything until after that.  Search in them for 10.242.2 to see if there's anything.

    Cheers - Bob
     
    Sophos UTM Community Moderator
    Sophos Certified Architect - UTM
    Sophos Certified Engineer - XG
    Gold Solution Partner since 2005
    MediaSoft, Inc. USA
  • I did some checking and did confirm that firewall rule 60001 is blocking packets from reaching the internal network, however, I did confirm that the default firewall rule for SSL VPN is in place (see attachment). Any ideas?
  • Steve, please copy and paste here the "60001" line from the Firewall log.

    Cheers - Bob
     
    Sophos UTM Community Moderator
    Sophos Certified Architect - UTM
    Sophos Certified Engineer - XG
    Gold Solution Partner since 2005
    MediaSoft, Inc. USA
  • For some reason I'm not seeing these errors anymore, but still have the same problem. I'm trying to dig through the firewall logs to track this down...