IPsec VPN "site to site" USG20<-> USG40
All Replies
-
IMVHO you should ask to your iSeries sysadmin.As an example, you can try this with a windows computer or a network device with management.
If 192.168.8.249 is not used, configure it as address for a test PC or network device, but without any gateway. You will be able to ping it from the subnet, but from the VPN it will be completely missing. It will receive packages, but without a gateway and/or the correct routing table, it won't be able to address answers of ICMP packages.Unless something peculiar has been done with VPN connection, policy routes, firewall rules (for instance, 192.168.8.2 forbade to connect to anything into security policies)... the answer for the mistery is inside your iSeries device.0 -
Hi, Solved!
there was a problem inside tcp configuration in As400.
thanks to everyone and especially to mMontana for last tip.0
Categories
- All Categories
- 415 Beta Program
- 2.4K Nebula
- 152 Nebula Ideas
- 100 Nebula Status and Incidents
- 5.8K Security
- 286 USG FLEX H Series
- 278 Security Ideas
- 1.5K Switch
- 74 Switch Ideas
- 1.1K Wireless
- 42 Wireless Ideas
- 6.5K Consumer Product
- 251 Service & License
- 396 News and Release
- 85 Security Advisories
- 29 Education Center
- 10 [Campaign] Zyxel Network Detective
- 3.6K FAQ
- 34 Documents
- 34 Nebula Monthly Express
- 86 About Community
- 75 Security Highlight