Important note about SSL VPN compatibility for 20.0 MR1 with EoL SFOS versions and UTM9 OS. Learn more in the release notes.

This discussion has been locked.
You can no longer post new replies to this discussion. If you have a question you can start a new discussion

Unable to connect to all of my networks throw SSL VPN remote access

Hello,

 

i installed 2 firewalls XG85 a few days ago, and i made VPN connection between them.

until now everything working fine.

 

now im trying to configure SSL VPN remote access , its working throw my computer.

but im connected just to one XG85, i can't ping any another network like the another XG85 From another VPN side or the network after XG85 from the first Side even when i entered the Network ID in the Rules and permitted Netwrok resources

 

and this is my settings :

Remote SSL VPN Policy

 

 

Remote SSL VPN access

 

Firewall Rules

 

Device Access

 

 

any help would be more than welcome.

 



This thread was automatically locked due to age.
Parents
  • Zakaria,

    make sure in the IPSec site-to-site you add even the IP address pool used by the XG VPN from each side. Change the IP address pool on each XG from VPN > Show VPN Settings > SSL > address pool. Make sure to change them in both side (sorry if I repeat again) and add the new address pools in the s-2-s VPN and firewall rules too.

    Regards

Reply
  • Zakaria,

    make sure in the IPSec site-to-site you add even the IP address pool used by the XG VPN from each side. Change the IP address pool on each XG from VPN > Show VPN Settings > SSL > address pool. Make sure to change them in both side (sorry if I repeat again) and add the new address pools in the s-2-s VPN and firewall rules too.

    Regards

Children
  • lferrara,

     

    i alreday made it.

    check the pictures

     

    this the Remote SSL VPN Range

     

    and this is the SSL VPN SETTINGS

     

    and this is Remote SSL VPN access Rule


     

    the problem not with the Site to Site only

    i can't ping in the same XG Network too.

    the ip of the lan interface for the first XG is 172.16.16.16

    i can ping it , but i can't ping 172.16.16.10 witch is Device connected to the XG

    and i can't ping the the another network witch connected locally to the XG 192.168.15.0 or 192.168.200.0

     

    if we fix this, i think the another VPN side will be easy.

     

    Thanks.