This discussion has been locked.
You can no longer post new replies to this discussion. If you have a question you can start a new discussion

Question on how Sophos handles CIDR ranges for Remote Networks

Hi there, 

We have a S2S VPN with a client, with a single remote network defined as 10.x.x.x/16

On occasion, the I can see in the IPSEC logs that the client is trying to establish the connection from 10.x.x.x/17

Sophos UTM 9 will not establish in this instance as there is no remote network defined as 10.x.x.x/17

The client is insisting that Sophos SHOULD accept the /17  as technically, it should be covered by the /16

Is there a setting somewhere that will allow this, or is there a reason why UTM 9 is so exacting about the CIDR range?

Thanks in advance

Steve 



This thread was automatically locked due to age.
Parents
  • Both sides must offer a network and expect a network.
    These configurations MUST match the definition from the "other side"...


    Dirk

    Systema Gesellschaft für angewandte Datentechnik mbH  // Sophos Platinum Partner
    Sophos Solution Partner since 2003
    If a post solves your question, click the 'Verify Answer' link at this post.

Reply
  • Both sides must offer a network and expect a network.
    These configurations MUST match the definition from the "other side"...


    Dirk

    Systema Gesellschaft für angewandte Datentechnik mbH  // Sophos Platinum Partner
    Sophos Solution Partner since 2003
    If a post solves your question, click the 'Verify Answer' link at this post.

Children
No Data