Comments
-
Yes, from the office you can access two site-to-site as indicated in the diagram. Each site-to-site has a SNAT configuration.
-
HI @PeterUK, Thanks for your help. I don't quite understand what you mean by enabling NAT traffic in my office. I don't have the problem in all three places. As I explained, everything works perfectly inside my office and both of us get from place to place. The problem I have is with people who access from outside the…
-
I have performed the following test: I have changed the default authentication method and added the "AD group" and I have tried logging into the USG itself with a domain user and it accesses without problem. Communication with the AD is correct. But when connecting with the VPN it still indicates the wrong username and…
-
Thanks for your comments, but this way of authenticating through AD is new before I only used local authentication. As I indicated above in my first post, in the USG tests the AD is correct, but when I test it with a PC it gives an incorrect username and password error (and they are correct. I think my problem comes with…
-
hi, I don't know what the problem is exactly either. Apparently everything is correct, even the username and password are correct in an RDP session. In the log of my USG it can be seen perfectly how the user until the USG arrives but does not validate it. I don't know very well what to do anymore.
-
Thank you very much for your answer.
-
Hi Emily, In the remote office USG-60 I have changed the configuration as you indicate. My Office - USG110 After doing this configuration, I have lost the communication of the site to site tunnel from my office to the remote office. And because of the L2TP access I don't have communication either.
-
Thanks Peter for your help. I'll wait for Emily's reply.
-
Good afternoon Peter, I do not understand what you tell me. In your comment yesterday you indicated that they were firewall rules now local policies. In my remote access configuration I only have a local policy option. I leave you a picture. I don't understand where I have to add all the local and remote policy that you…
-
I have tried to configure it as you indicate and I am sorry to tell you that it does not work for me. If I configure a rule in the firewall it doesn't work and by putting the remote access in the same subnet as in the site to site the site to site tunnel fails. I don't know what to do with this anymore. Any other ideas to…
-
I made a diagram in case it helps Could you explain what you mean by is policy control rule from VPN zone to site to site zone?
-
my remote access is set to 192.168.50.x
-
I do not understand what you mean. When connecting through my remote access I need to be able to access the other three subnets of the site-to-site tunnels: 192.168.0.x 192.168.69.x and 192.168.64.x But I don't know what kind of routing rule to configure for it.
-
I do not understand what you mean. When connecting through my remote access I need to be able to access the other three subnets of the site-to-site tunnels: 192.168.0.x 192.168.69.x and 192.168.64.x But I don't know what kind of routing rule to configure for it.
-
I do not understand what you mean. When connecting through my remote access I need to be able to access the other three subnets of the site-to-site tunnels: 192.168.0.x 192.168.69.x and 192.168.64.x But I don't know what kind of routing rule to configure for it.