Menu

Show posts

This section allows you to view all posts made by this member. Note that you can only see posts made in areas you currently have access to.

Show posts Menu

Messages - sangomab

#1
Hello There  8)

so here is my infra
I need to allow a remote site de ping in my side, but locally i only have an openvpn server configured.
My idea was to NAT one IP in the openVPN to the local interface of the firewall, like that i have something to answer the pings.

So i did configure a port forwarding on my IPSEC interface to redirect the traffic to the local interface : this part works

the NAT working but all the icmp reply are forwarded toward the OUTSIDE interface not the IPSEC tunnel.



I pass the last few days at playing with nat to make it works, but i didn't get any result.

I attached a small schema in this message
I need help :=

thanks

#2
Hello there,

I am searching for some support, i did create a ipsec vpn to some remote site, the ipsec is upp and runing.
but when i start traffic i can see it on the  outside interface not the ipsec interface,
i don't know how i can solve this issue

my architecture is the following

site A  | NAT to site A nat ip   | ipsec tunel | site B

when i ping from site A to site B and do a capture traffic
i see the traffic in Site A interface / nothing in the ipsec interface / but i see the traffic i the outside interface.

weird

/update

icmp passing through the IPSEC interface but no TCP connections