Knowledge Base

Bitte , um Beiträge und Themen zu erstellen.

IPSec Site to Site connection, no route, no traffic, only one direction

https://community.sophos.com/sophos-xg-firewall/f/discussions/143311/only-one-way-traffic-ipsec-site-to-site-vpn

If your current (global) NAT rule has any both as source and destination set to MASQ you could change the destination to WAN zone. In that case you are certain that this NAT rule would not pick up any traffic destined for a VPN zone.