Guest User!

You are not Sophos Staff.

This discussion has been locked.
You can no longer post new replies to this discussion. If you have a question you can start a new discussion

UTM as VPN "Client"

Hey Guys!

I recently signed up for a VPN service. I want to have all the traffic from the device to go through the tunnel The service has .ovpn config files, as well as all the info I could need to set up a VPN connection, which I have downloaded. Now I have a bunch of .ovpn config files which are utterly useless.

On a side note, the #1 VPN feature request is something to convert the .ovpn to the (seemingly) proprietary .apc (or .epc) files:
UTM (Formerly ASG) Feature Requests: VPN (172 ideas)

There are a few posts indicating a script may be able to do so. I have downloaded it and run it. It never coimpletes properly, and the .apc file it spits out is always corrupted (or so say Sophos when I try to import it).

Now, I tried creating an SSL VPN Server, save the config file, and then tried to edit it; I couldn't seem to get it top open to be edited... If this is possible, please let me know how.

So... How do I set up this UTM to be an Open VPN client to another server whose settings I have no control over? All the Sophos guides I could find only mentioned creating the VPN server on one device, saving the config file, and using THAT on the "client" device. How can I just config the client device?

Is this even possible with the UTM 9 devices?


This thread was automatically locked due to age.
  • Did anyone get this working?

    I have installed DDWRT on a router and patched it to the new WAN i created but for some reason i am not getting internet access on the DDWRT router, i have not setup any VPN as yet.

    I get it working if i patch it on the current network via a switch but not when i patch it newly created wan interface. 

  • pFsense works great for this. I have a virtual pFsense which connects to IPVanish.

    Used in combo with my UTM, I can choose what traffic goes where.

  • Could you please be a hero and provide some info about how to set up pfsense in front of the utm. Like is there a way around double NAT and is there anything specific to configure in pfsense (aside from the vpn)? All I want is a simple os to encrypt all traffic between my utm and the WAN with expressvpn but I'm not particularly knowledgeable about networking. The vpn config I could probably muddle through but I don't know what to tell pfsense to do to just pass all other functions to the utm.