F5F Stay Refreshed Power Users Networks IPSec Tunnel Issues

IPSec Tunnel Issues

IPSec Tunnel Issues

R
Rebekaa
Member
167
02-23-2021, 03:13 AM
#1
I had some challenges with the IPSec tunnel at work. I thought about reaching out here. The main issue is a computer at one end of the tunnel. In short, the machine with IP 10.0.4.68 (Windows 11) struggles to reach 192.168.0.40 inside this tunnel. It fails to ping 192.168.0.40 when using the 4.68 address, but works when switched to 4.69. Placing a SSL VPN native to the 192.168.0.0 subnet on the 4.68 PC resolves the problem. I need the 4.68 PC to remain at that IP, but I can’t change it. Sophos XG firewalls are set up at both ends of the tunnel. The tunnel is configured to allow communication between 192.168.0.0/24 and 10.0.4.0/24 without restrictions. The switches are Ubiquity models. Both firewalls can ping their respective addresses, and other devices on either network can reach them. I’ve tried rebuilding the tunnel, performed a network reset on the 4.68 PC, rebooted both firewalls, but still can’t solve it. Any ideas?
R
Rebekaa
02-23-2021, 03:13 AM #1

I had some challenges with the IPSec tunnel at work. I thought about reaching out here. The main issue is a computer at one end of the tunnel. In short, the machine with IP 10.0.4.68 (Windows 11) struggles to reach 192.168.0.40 inside this tunnel. It fails to ping 192.168.0.40 when using the 4.68 address, but works when switched to 4.69. Placing a SSL VPN native to the 192.168.0.0 subnet on the 4.68 PC resolves the problem. I need the 4.68 PC to remain at that IP, but I can’t change it. Sophos XG firewalls are set up at both ends of the tunnel. The tunnel is configured to allow communication between 192.168.0.0/24 and 10.0.4.0/24 without restrictions. The switches are Ubiquity models. Both firewalls can ping their respective addresses, and other devices on either network can reach them. I’ve tried rebuilding the tunnel, performed a network reset on the 4.68 PC, rebooted both firewalls, but still can’t solve it. Any ideas?