Solved

BOVPN Local Gateway IP address ?

Posted on 2013-11-22
2
555 Views
Last Modified: 2013-11-23
Greetings All,

This is a question regarding a WatchGuard Branch Office VPN connection for a x750e.

I basically just want some one to comfirm that the Local Gateway address entered in the Gateway Endpoints setup can only be the primary IP address of the external interface ?

I'm actually trying to use a secondary IP address on the external interface, but when I do a diagnostic vpn "/ike/policy/info gatewayname" on the WatchGuard CLI the ConnectP1/localIP is the primary address of the Firewall instead of the secondary IP address I actually configured on the Local Gateway.
0
Comment
Question by:GYeoh
[X]
Welcome to Experts Exchange

Add your voice to the tech community where 5M+ people just like you are talking about what matters.

  • Help others & share knowledge
  • Earn cash & points
  • Learn & ask questions
2 Comments
 
LVL 6

Accepted Solution

by:
Jon Snyderman earned 200 total points
ID: 39671707
It must be the physical IP of the box.  It has to do with the authentication and source IP in phase 1.   If it is that important to move the BO to the secondary, you could switch and make the second IP your physical and the current IP and secondary.    But be careful with outbound email.   You may need to setup a 1-to-1 NAT to make sure that the mail gets delivered from the right source IP since this would usually be the primary IP of the box.

~Jon
0
 

Author Closing Comment

by:GYeoh
ID: 39671939
Thanks Jon, I think I will just stick with the primary IP address then.
0

Featured Post

2017 Webroot Threat Report

MSPs: Get the facts you need to protect your clients.
The 2017 Webroot Threat Report provides a uniquely insightful global view into the analysis and discoveries made by the Webroot® Threat Intelligence Platform to provide insights on key trends and risks as seen by our users.

Question has a verified solution.

If you are experiencing a similar issue, please ask a related question

This article offers some helpful and general tips for safe browsing and online shopping. It offers simple and manageable procedures that help to ensure the safety of one's personal information and the security of any devices.
Keystroke loggers have been around for a very long time. While the threat is old, some of the remedies are new!
If you're a developer or IT admin, you’re probably tasked with managing multiple websites, servers, applications, and levels of security on a daily basis. While this can be extremely time consuming, it can also be frustrating when systems aren't wor…
There are cases when e.g. an IT administrator wants to have full access and view into selected mailboxes on Exchange server, directly from his own email account in Outlook or Outlook Web Access. This proves useful when for example administrator want…

726 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question