Important note about SSL VPN compatibility for 20.0 MR1 with EoL SFOS versions and UTM9 OS. Learn more in the release notes.

This discussion has been locked.
You can no longer post new replies to this discussion. If you have a question you can start a new discussion

How to find out IP-Adresses of incoming ipsec vpns at sophos xgs firewall

We have a sophos xgs with several ipsecn vpns site to site running.

the Sophos XGS is responding to some VPNs that are without fixed public ipv4 adresses. 

One VPN incoming has no fixed static ip adress, but i need to enter that ip-adress at xgs to make sure that it dont messes up the other peers without no ip adress (since its an special issure with peer ids with a "*" instead of an ip-adress, they sahre preshared kex and this will break something if i remove the ip-adress there.

so i just need to lookup from witch ip adress the other firewall is trying to connect the ipsec tunnel.

there hase to be some logging from witch ip-adresses ipsec  connection are initialted, where do i find them?

at the firewall logging with vpn i can see incoming peer but not from witch ipadress.

The reason is, i dont know the new public ipv4 adress from that particular firewall. 



This thread was automatically locked due to age.
Parents
  • Look either in firewall or VPN-log. In firewall log filter on IPSEC ports


    Managing several Sophos firewalls both at work and at some home locations, dedicated to continuously improve IT-security and feeling well helping others with their IT-security challenges.

Reply
  • Look either in firewall or VPN-log. In firewall log filter on IPSEC ports


    Managing several Sophos firewalls both at work and at some home locations, dedicated to continuously improve IT-security and feeling well helping others with their IT-security challenges.

Children
No Data