Hello All!
Does anyone know why a SNAT rule needs to be configured for Radius when sending the traffic over a IPsec connection? To my understanding IPsec should simply encapsulate the packet and send it out the of the WAN interface with a destination address of the remote site and source address of the originating site. Additionally the route tables of the UTM appliances will then contain proto ipsec routes so that the systems understand that they'll need to send the traffic over IPsec. If I have to set a SNAT rule, then in my humble opinion something seems broken with the way that the appliance is working with radius. I would love to hear from others regarding this.
Best Regards,
Alex
This thread was automatically locked due to age.