<?xml version="1.0" encoding="UTF-8" ?>
<?xml-stylesheet type="text/xsl" href="https://community.sophos.com/cfs-file/__key/system/syndication/rss.xsl" media="screen"?><rss version="2.0" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:slash="http://purl.org/rss/1.0/modules/slash/" xmlns:wfw="http://wellformedweb.org/CommentAPI/"><channel><title>VPN traffic is not passing through the vpn tunnel</title><link>https://community.sophos.com/sophos-xg-firewall/f/discussions/148053/vpn-traffic-is-not-passing-through-the-vpn-tunnel</link><description>Good day 
 
 l have create a site to site to vpn , the vpn is up , but we cannot ping the branch site 
 On the head office there is ospf configured, and if we trace route from the firewall it&amp;#39;s showing that the traffic is going through the ospf vpn of</description><dc:language>en-US</dc:language><generator>Telligent Community 12</generator><item><title>RE: VPN traffic is not passing through the vpn tunnel</title><link>https://community.sophos.com/thread/548926?ContentTypeID=1</link><pubDate>Fri, 22 Nov 2024 00:39:46 GMT</pubDate><guid isPermaLink="false">4be5eb7d-caa4-4ff5-8e60-8f9463545a35:a06dc902-8e8a-4cb6-9125-99efc4978b07</guid><dc:creator>Erick Jan</dc:creator><description>&lt;p&gt;Hi Anesu,&lt;/p&gt;
&lt;p&gt;Thank you for reaching out to Sophos Community.&lt;/p&gt;
&lt;p&gt;I would recommend checking the following.&lt;/p&gt;
&lt;ul&gt;
&lt;li&gt;check the drop packet/packet capture&amp;nbsp;
&lt;ul&gt;
&lt;li&gt;&lt;a href="/sophos-xg-firewall/f/recommended-reads/138132/sophos-firewall-how-to-troubleshoot-dropped-packets"&gt;Sophos Firewall: How to troubleshoot dropped packets&lt;/a&gt;&lt;/li&gt;
&lt;li&gt;&lt;a href="https://docs.sophos.com/nsg/sophos-firewall/20.0/Help/en-us/webhelp/onlinehelp/CommandLineHelp/DeviceConsole/index.html#drop-packet-capture"&gt;drop-packet-capture&lt;/a&gt;&lt;/li&gt;
&lt;/ul&gt;
&lt;/li&gt;
&lt;li&gt;Is the route correct for both sides&amp;#39; traffic? Are the priority correct(static, OSPF, and SDWAN)&lt;/li&gt;
&lt;li&gt;If traffic is being translated (NAT), correct the translation. Do both sides have the same network configuration?&lt;/li&gt;
&lt;li&gt;Can the Firewall can&amp;#39;t ping other devices on the other side of the VPN? or only the one you&amp;#39;re testing&lt;/li&gt;
&lt;/ul&gt;
&lt;p&gt;For more reference, kindly see kb&amp;#39;s below.&lt;/p&gt;
&lt;ul&gt;
&lt;li&gt;&lt;a href="https://support.sophos.com/support/s/article/KBA-000003878?language=en_US"&gt;Sophos Firewall: Traffic is not passing through the VPN tunnel&lt;/a&gt;&lt;/li&gt;
&lt;li&gt;&lt;a href="/sophos-xg-firewall/f/recommended-reads/123740/sophos-firewall-troubleshooting-site-to-site-ipsec-vpn-issues#mcetoc_1elqugv8e6"&gt;Sophos Firewall: Troubleshooting site to site IPsec VPN issues&lt;/a&gt;&lt;/li&gt;
&lt;li&gt;&lt;a href="https://docs.sophos.com/nsg/sophos-firewall/21.0/help/en-us/webhelp/onlinehelp/AdministratorHelp/SiteToSiteVPN/HowToArticles/S2sVPNIPsecConnectionRBVPNNATSameSubnets/index.html"&gt;NAT with route-based IPsec when local and remote subnets are the same&lt;/a&gt;&lt;/li&gt;
&lt;/ul&gt;&lt;div style="clear:both;"&gt;&lt;/div&gt;</description></item></channel></rss>