Jump to content

IPSec Tunnel Issues

TubsAlwaysWins

Having some issues at work with an IPSec tunnel and thought Id ask here. Its specifically an issue with a computer at one end of the tunnel. 

The TL;DR is a computer 10.0.4.68 (Windows 11) needs to connect to 192.168.0.40 across this IPSec tunnel. It cant ping 192.168.0.40 when it has the 4.68 address, but changing to a 4.69 address works. If I put a SSL VPN native to the 192.168.0.0 subnet on the 4.68 PC, it works correctly. 

I need the 4.68 PC to stay as 4.68, I cant change the IP unfortunately. 

 

Using Sophos XG firewalls at both ends of the tunnel. The Tunnel is set to allow 192.168.0.0/24 and 10.0.4.0/24 to talk to each other with no restrictions. Switches are a variety of Ubiquity switches. 

Both firewalls can ping the respective 0.40 and 4.68 addresses, and other computers on either network can ping either address. 

 

So far I have:

  • Rebuilt the IPSec Tunnel
  • Tested from other computers
  • Preformed a network reset on the 4.68 PC
  • Rebooted both firewalls

Im stumped. Thoughts? 

 

Breaking things 1 day at a time

Link to comment
Share on other sites

Link to post
Share on other sites

Create an account or sign in to comment

You need to be a member in order to leave a comment

Create an account

Sign up for a new account in our community. It's easy!

Register a new account

Sign in

Already have an account? Sign in here.

Sign In Now

×