Hello,
i need some help.
I have a Branch Office wiht a XG125 and SFOS 20 MR1 up and running.
Laptop connects over a APX320 AP and get a WiFi IP Address.
Laptop was able to connect through Microsoft Always ON VPN (IKEv2) with UDP 500/4500 find to the Head Office Always ON VPN Server.
After upgrading to SFOS 20 MR2, VPN is broken and Laptop claims, that UDP 500/4500 is blocked by the firewall.
If i move the laptop to my home office, all is fine and nothing is blocked.
Is there any change in MR2, that blocks VPN?
I already disabled some rule in device console with
set ips ac_atr exception fwrules 5,6
I already regreated a new WLAN, with the same problem.
I checked for dropped packages (Sophos Firewall: Monitor dropped packets using CLI).
Any idea?
Thanks
Added TAGs
[edited by: Erick Jan at 2:12 PM (GMT -7) on 5 Sep 2024]