Guest User!

You are not Sophos Staff.

This discussion has been locked.
You can no longer post new replies to this discussion. If you have a question you can start a new discussion

Route all external traffic via site 2 site ipsec

Hi,

I tried to google and to search the forum, but haven't really found a solution...

I have an UTM 9.3 (192.168.2.1) in the US with a stable site 2 site ipsec tunnel to a remote fritz box (192.168.1.101) in Germany. I can reach all devices in the remote network very well.

What I would like to achieve is:

Route traffic to certain external hosts / networks or even all external traffic through the VPN tunnel ("Full Tunnel").

I followed the how-to https://www.sophos.com/en-us/support/knowledgebase/115661.aspx, but with no success.

I also tried a policy route: Gateway Route, Source Interface: internal, Source Network: internal network, Service: any, Destination Network: External Network, Gateway: fritz box (192.168.1.101).

In my findings the configuration on the fritz box side should not cause the issues so far, since traffic is not even directed to the tunnel so far. (Or are some crucial routes negotiated in the background already, when the tunnel is established?)

Any tips / recommendations would be appreciated. :)



This thread was automatically locked due to age.
Parents
  • i never had much success with policy routes. I use a vServer (5,- €/ Month) that acts as a seperate WAN on my Home UTM which i can than apply multipath rules on. I posted a (german) manual in the astaro -> german Subforum.

    ---

    Sophos UTM 9.3 Certified Engineer

Reply
  • i never had much success with policy routes. I use a vServer (5,- €/ Month) that acts as a seperate WAN on my Home UTM which i can than apply multipath rules on. I posted a (german) manual in the astaro -> german Subforum.

    ---

    Sophos UTM 9.3 Certified Engineer

Children
No Data