Important note about SSL VPN compatibility for 20.0 MR1 with EoL SFOS versions and UTM9 OS. Learn more in the release notes.

This discussion has been locked.
You can no longer post new replies to this discussion. If you have a question you can start a new discussion

Multicast traffic over SSL VPN with relay to l2l vpn

Hello Community,

Anyone here have configured SSL VPN that would allow multicast traffic thru the SSL VPN?

1. We have a ROIP (Radio over IP) Receiver on one of our remote network, this ROIP receiver listens on a multicast IP. the operator radio console is on the main office and the operator console reaches the receiver over the l2l vpn on the 2 sophos FW in our Main office and on the Remote network. This works fine we have the mroute setup in where we statically include the source port and the source ip of the operator console let say source port is lan1 source ip is 10.0.1.10 destination 225.8.1.20 output interface ipsec tunnel towards the remote network. 

2. Now we have a need for our at home users that connects via the SSL VPN on the same Sophos FW in our Main office to be able to communicate to the receiver over multicast. We have setup the SSL VPN that the users are able to reach Unicast IPs on the remote network but cant seem to communicate over to the multicast ip, I think the problem is we dont see an in-interface in where the SSL VPN users would be sourcing from for the mroute static route configuration.. 

Also the solution we have used so that the SSL VPN users can reach the remote network over the l2l vpn is https://support.sophos.com/support/s/article/KB-000037043?language=en_US#:~:text=The%20following%20are%20the%20required%20configurations%20on%20the,remote%20network%20in%20Permitted%20network%20resources.%20Click%20Apply.

I see some guide how to relay muticast traffic over 2 l2l ipsec tunnels which is possible since the l2l ipsec tunnels are shown as a source interface on the mroute configuration. But i dont see any for SSL VPN and Multicast.

Thank you in advance 



This thread was automatically locked due to age.
Parents Reply Children