For logistic reasons I have configured TWO DISTINCT Sophos UTM on my company:
SOPHOS UTM1 (servers):
- Internal network 172.16.11.111 (internet DNS server, File server, etc.)
- DMZ1 (Internet authoritative DNS servers)
- DMZ2 (FTP servers)
- DMZ3 (DB servers)
- External network (Internet - Full asymmetrical fixed-IP link)
SOPHOS UTM2 (clients):
- Internal network 172.16.11.112 (clients connection)
- External network (Internet - normal VDSL connection)
Servers Gateway: 172.16.11.111 (UTM1 Full Link internet connection)
Clients Gateway: (172.16.11.112 (UTM2 VDSL internet connection)
All servers and clients - made exception of the servers in the DMZ - are configured with the same subnet and are physically connected to the same network.
The only difference is that the Gateway on the servers is configured to use the features and Internet access of the UTM1 while the Gateway on the clients is configured to use the features and Internet access of the UTM2
Same internal DNS server.
All remote connections from the outside are made on the UTM1 (via fixed-IPs).
I configured a remote SSL VPN connection to the UTM1.
I am able to work remotely on all servers ... whether on the internal network or the DMZ.
But...
I'm not even able to "see" the clients (on the internal network) or the UTM2... no ping .... no remote connection ... nothing.
Summing up...
I can connect and work on all machines that are configured with Gateway pointing to UTM1
I can not even see, connect, or work on machines that are configured with Gateway pointing to UTM2.
Even if the machines are physically connected to the same switches and on the same network.
I can ping 172.16.11.111 (UTM1) but I can not ping 172.16.11.112 (UTM2) ... for example.
Any idea? I can not see which setting is missing ....
This thread was automatically locked due to age.