This discussion has been locked.
You can no longer post new replies to this discussion. If you have a question you can start a new discussion

VPN site to site Azure / drop subnet connection

Hi

i have an IPsec VPN from XG to Azure (only LAN subnet) who is working fine,

since i added the User SSL vpn subnet to allow ssl vpn user to access to Azure (yet I have 2 subnet in my site to site setup Azure LAN + 10.81.234.0/24) the connection of the second subnet (10.81.234.0/24) drops intermittently.

Is this due to a timeout azure side for no trafic for this subnet ?

Thanks 



This thread was automatically locked due to age.
Parents
  • FormerMember
    0 FormerMember

    Hi ,

    Thank you for reaching out to Sophos Community.

    Is there a way to check IPsec events for 10.81.234.0/24 subnet at the Azure end?

    You can check IPsec events on Sophos Firewall with the below command.

    ==> Login to SSH > 5. Device Management > 3. Advanced Shell

    # tail -f /log/strongswan.log

    ==> You can filter strongswan.log with the tunnel name as well.

    # tail -f /log/strongswan.log | grep -i "Tunnle_Name"

    or

    # cat /log/strongswan.log | grep -i "Tunnle_Name"

Reply
  • FormerMember
    0 FormerMember

    Hi ,

    Thank you for reaching out to Sophos Community.

    Is there a way to check IPsec events for 10.81.234.0/24 subnet at the Azure end?

    You can check IPsec events on Sophos Firewall with the below command.

    ==> Login to SSH > 5. Device Management > 3. Advanced Shell

    # tail -f /log/strongswan.log

    ==> You can filter strongswan.log with the tunnel name as well.

    # tail -f /log/strongswan.log | grep -i "Tunnle_Name"

    or

    # cat /log/strongswan.log | grep -i "Tunnle_Name"

Children
No Data