Important note about SSL VPN compatibility for 20.0 MR1 with EoL SFOS versions and UTM9 OS. Learn more in the release notes.

IPSEC VPN Routing traffic between multiples sites

Hi,

We need to establish a multiple site to site IPSEC VPN with a XG86w as the HQ.

Both remote sites have a TELTONIKA RUT240 router.

I am able to ping from HQ both remote sites, and from each remote site the HQ, but can’t ping a remote site from another remote site.

 

In the XG86w I have in the local subnet of each tunnel the local HQ network and the local network of the other remote site.

 

On the TELTONIKA RUT240 side, running ipsec status we can see that both are installed.

I'm clearly missing something.

Any help would be appreciated.

 

Alexandre



Added TAGs
[edited by: Raphael Alganes at 3:26 PM (GMT -7) on 7 Oct 2024]
Parents Reply
  • Hi,

    Remote site A network 192.168.37.0/29

    192.168.37.1 (TELETONIKA in remote site A)

    192.168.37.2 (host in remote site A)

    Remote site B network 192.168.37.8/29

    192.168.37.9 (TELETONIKA in remote site B)

    192.168.37.10 (host behind TELTONIKA in remote site B)

    A ping from 192.168.37.2 to 192.168.37.9 or 37.10 results in this captures in XG86.

    tcpdump 'proto 50 gives me nothing, but using tcpdump 'host 192.168.37.2 gives me this.

    The interface is ipsec0 so I assume in coming in thru VPN IPSEC and arriving at XG86, but there's only IN not OUT, so returning to your previous comment the problem is in TELTONIKA's side ?

    But a ping from remote site A or B to a host in the XG86 LAN is successful and seen below.

    Thanks.

Children
No Data