This discussion has been locked.
You can no longer post new replies to this discussion. If you have a question you can start a new discussion

SSL VPN from Site A to Site B via RED

Hello,

I have two sites (Site A and Site B) that are connected via RED. "RED # 5
Both sites have connectivity and can reach each other's network.

My problem is that my SSL VPN (for Site A) can access resources on Site A, but cannot access anything on Site B.


Site A

Network 192.168.0.0
SSl Network 10.81.234.0


Site B

Network 192.168.40.0
SSl Network 10.81.237.0

Within the Vpn SSl Settings, I left the following access

Allowed network resources (IPv4)
RED # 5


Is it a firewall problem and am I simply setting the wrong rules? Or is this something with the VPN configuration itself?

Thank you.



This thread was automatically locked due to age.
Parents
  • he create the route, when the connection closes

    C:\Windows\system32\route.exe ADD 189.1.167.218 MASK 255.255.255.255 192.168.68.1
    Fri Feb 05 16:59:11 2021 Route addition via service succeeded
    Fri Feb 05 16:59:11 2021 C:\Windows\system32\route.exe ADD 192.168.0.0 MASK 255.255.255.0 10.10.10.50
    Fri Feb 05 16:59:11 2021 Route addition via service succeeded
    Fri Feb 05 16:59:11 2021 C:\Windows\system32\route.exe ADD 192.168.20.0 MASK 255.255.255.0 10.10.10.50
    Fri Feb 05 16:59:11 2021 Route addition via service succeeded
    Fri Feb 05 16:59:11 2021 C:\Windows\system32\route.exe ADD 192.168.40.0 MASK 255.255.255.255 10.10.10.50
    Fri Feb 05 16:59:11 2021 Route addition via service succeeded
    Fri Feb 05 16:59:11 2021 C:\Windows\system32\route.exe ADD 189.1.167.218 MASK 255.255.255.255 192.168.68.1

  • 1.
    "Rede SSl 10.81.237.0
    this network is from vpn ssl, when the client connects to the site 1" 
    .... i think your SSL-VPN Network is 10.81.234.0/24 from siteA 
    and using a RED Device you should not have SSL-VPN at Site B (using IP 10.81.237.0/24)
    2. ADD 192.168.40.0 MASK 255.255.255.255 adresses a "single Host" and not the whole network.
    3. show us the route table from client while SSL-VPN connection is established.  
    Would be helpful, you provide a simple network plan.


    Dirk

    Systema Gesellschaft für angewandte Datentechnik mbH  // Sophos Platinum Partner
    Sophos Solution Partner since 2003
    If a post solves your question, click the 'Verify Answer' link at this post.

  • Ola Luiz,

    and where does the gateway 10.10.10.50 belong to?

    A network diagram would be really helpful.

    Mit freundlichem Gruß, best regards from Germany,

    Philipp Rusch

    New Vision GmbH, Germany
    Sophos Silver-Partner

    If a post solves your question please use the 'Verify Answer' button.

  • Hi,

    i think it is the routing table from local PC (the SSL-VPN-Client)


    Dirk

    Systema Gesellschaft für angewandte Datentechnik mbH  // Sophos Platinum Partner
    Sophos Solution Partner since 2003
    If a post solves your question, click the 'Verify Answer' link at this post.

Reply
  • Hi,

    i think it is the routing table from local PC (the SSL-VPN-Client)


    Dirk

    Systema Gesellschaft für angewandte Datentechnik mbH  // Sophos Platinum Partner
    Sophos Solution Partner since 2003
    If a post solves your question, click the 'Verify Answer' link at this post.

Children
No Data