we have a network running with multiple sites. All the Sites are connected via IKEv2 Tunnel to our Sophos XG330 (via Lancom Routers).
In each site we have a device running which is trying to connect (via OpenVPN Tunnel) (UPD Port 1194) to a third party server (external IP Adress).
But for some reason the connection wont work. If only one device is connected, tunnel is running fine. As soon as i am connecting a second device, traffic is not working. It seems to be connected for a few minutes sometimes, but then its gone again.
I have checked all my rules on XG. If I'm running the policy tester, everything is fine.
I already checked with Sophos Support, but that did not help a lot.
Their conclusion from logs was:
Our XG is recieving Answer Packages from the Third Party Server, our XG never sent out (Packets with unknown ports) -> so the packets get dropped.
This thread was automatically locked due to age.