This discussion has been locked.
You can no longer post new replies to this discussion. If you have a question you can start a new discussion

UTM IPsec VPN question. I am able to make a connection between the two sites but no data passes through?

Here is a picture to illustrate



This thread was automatically locked due to age.
Parents Reply Children
  • Is DPD selected in both UTMs?  How about NAT-T?  Is the Respond only UTM (home) behind a NAT, or does it have a public IP on its External interface?

    Cheers - Bob

     
    Sophos UTM Community Moderator
    Sophos Certified Architect - UTM
    Sophos Certified Engineer - XG
    Gold Solution Partner since 2005
    MediaSoft, Inc. USA
  • Yes and Yes. The respond only has an external IP on its external interface

  • Let's look at whether there's any traffic in the tunnel when you attempt to communicate with a device at home.

    First, we need the REF_ of the tunnel:

    cc get_object_by_name ipsec_connection site_to_site 'Dorm\-to\-Home'|grep \'ref

    Let's say we discovered REF_IpsSitDormToHome, we can watch traffic in the tunnel with:

    espdump -n --conn REF_IpsSitDormToHome -vv

    What do you see?

    Cheers - Bob

     
    Sophos UTM Community Moderator
    Sophos Certified Architect - UTM
    Sophos Certified Engineer - XG
    Gold Solution Partner since 2005
    MediaSoft, Inc. USA