[Okta Webinar] Learn how to a build a cloud-first strategyRegister Now

x
?
Solved

BOVPN Local Gateway IP address ?

Posted on 2013-11-22
2
Medium Priority
?
593 Views
Last Modified: 2013-11-23
Greetings All,

This is a question regarding a WatchGuard Branch Office VPN connection for a x750e.

I basically just want some one to comfirm that the Local Gateway address entered in the Gateway Endpoints setup can only be the primary IP address of the external interface ?

I'm actually trying to use a secondary IP address on the external interface, but when I do a diagnostic vpn "/ike/policy/info gatewayname" on the WatchGuard CLI the ConnectP1/localIP is the primary address of the Firewall instead of the secondary IP address I actually configured on the Local Gateway.
0
Comment
Question by:GYeoh
2 Comments
 
LVL 6

Accepted Solution

by:
Jon Snyderman earned 800 total points
ID: 39671707
It must be the physical IP of the box.  It has to do with the authentication and source IP in phase 1.   If it is that important to move the BO to the secondary, you could switch and make the second IP your physical and the current IP and secondary.    But be careful with outbound email.   You may need to setup a 1-to-1 NAT to make sure that the mail gets delivered from the right source IP since this would usually be the primary IP of the box.

~Jon
0
 

Author Closing Comment

by:GYeoh
ID: 39671939
Thanks Jon, I think I will just stick with the primary IP address then.
0

Featured Post

Concerto's Cloud Advisory Services

Want to avoid the missteps to gaining all the benefits of the cloud? Learn more about the different assessment options from our Cloud Advisory team.

Question has a verified solution.

If you are experiencing a similar issue, please ask a related question

Keystroke loggers have been around for a very long time. While the threat is old, some of the remedies are new!
What monsters are hiding in your child's room? In this article I will share with you a tech horror story that could happen to anyone, along with some tips on how you can prevent it from happening to you.
We’ve all felt that sense of false security before—locking down external access to a database or component and feeling like we’ve done all we need to do to secure company data. But that feeling is fleeting. Attacks these days can happen in many w…
When cloud platforms entered the scene, users and companies jumped on board to take advantage of the many benefits, like the ability to work and connect with company information from various locations. What many didn't foresee was the increased risk…
Suggested Courses
Course of the Month18 days, 21 hours left to enroll

834 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question