Important note about SSL VPN compatibility for 20.0 MR1 with EoL SFOS versions and UTM9 OS. Learn more in the release notes.

This discussion has been locked.
You can no longer post new replies to this discussion. If you have a question you can start a new discussion

Remote Access VPN & changing LAN IPs

XGS136, SFOS 19.5.1

Migrating from old firewall to the XGS. Deploying Sophos Connect with .OVPN files.

Examining the OVPN file and connection logs, it appears Connect tries each of 3 IPs listed at the bottom (Interfaces on WAN, LAN1 and LAN2) until it's able to make a connection.

Users will ONLY be connecting from the WAN.

The LAN1 IP will be changing when the firewall goes into production. LAN2 and WAN will not change.

Am I correct that it won't be necessary for clients to import a new OVPN file after the LAN1 IP changes because no one will need the VPN on LAN1?

I realize .PRO files would update the config automagically, and I'd love to use them...but it appears .PRO files don't work on the WAN unless the user portal is enabled on the WAN; that's a non-starter.

This thread was automatically locked due to age.