Watchguard Additional Network cannot reach VPN networks

I have a watchguard X700 withsetup to use 172.16.0.0/24 on the trusted interface. I have several VPN tunnels setup to remote networks on the Watchguard, ex. 192.168.1.0/24. I have the ANY to ANY rule for these 2 networks and evertyhing works fine. On the Watchguard I added an additional network of 172.16.1.0/24 The watchguard acts as the default gateway for this network as 172.16.1.1. If I have a client on this network he can access the 172.16.0.0 network fine but not the Remote VPN network of 192.168.1.0/24. I assumed I need to add a route on the Watchguard and did this with no success. Has anyone done this before?

Thanks,
LVL 1
bminetwork2277Asked:
Who is Participating?
I wear a lot of hats...

"The solutions and answers provided on Experts Exchange have been extremely helpful to me over the last few years. I wear a lot of hats - Developer, Database Administrator, Help Desk, etc., so I know a lot of things but not a lot about one thing. Experts Exchange gives me answers from people who do know a lot about one thing, in a easy to use platform." -Todd S.

chawcheskewCommented:
You probably need to add routing on the remote network...  What is the watchguard connecting to at the other end of the vpn?  Likely whatever device is at the other end needs routing setup to point back to the firebox connected to 172.16.1.0.  Also, sounds like you have a good grip on subnetting and whatnot.  But do be sure that none of the routes or networks on the other devices overlap the network 172.16.1.

regards,
c
0

Experts Exchange Solution brought to you by

Your issues matter to us.

Facing a tech roadblock? Get the help and guidance you need from experienced professionals who care. Ask your question anytime, anywhere, with no hassle.

Start your 7-day free trial
bminetwork2277Author Commented:
The VPN endpoint in this case is A watchguard SOHO 6. It is setup to send traffic to 172.16.0.0/24 only. I figured I would add the route on one side and see if I can get a ping through. I will add it on the remote VPN device as well and test it.
0
chawcheskewCommented:
Excellent.  The routing will definitely required for the ping response to be returned to you.
0
It's more than this solution.Get answers and train to solve all your tech problems - anytime, anywhere.Try it for free Edge Out The Competitionfor your dream job with proven skills and certifications.Get started today Stand Outas the employee with proven skills.Start learning today for free Move Your Career Forwardwith certification training in the latest technologies.Start your trial today
Software Firewalls

From novice to tech pro — start learning today.