Ingress Firewall Blocking Site 2 Site Connection
I have a site 2 site vpn connection beween two gold boxes. Recently, I found that traffic to many devices was blocked by the ingress firewall. The subnet for those devices is on the allow list which was created by the site 2 site vpn connection. I had to disable the ingress firewall for it to work. Any reason this is happening?
-
Do you see replies if you do a ping between the two sites (using IP addresses)? This will test connectivity.
If you have more complex site to site, see this for access control https://help.firewalla.com/hc/en-us/articles/5515850433683-Firewalla-Site-to-Site-VPN#h_01GHDFPCBF9GCKSARAB4ZAE41A
-
Ping to the devices were unsuccessful. I can see in the flows that the ingress firewall is blocking the traffic. This has been working without issue for a very long time. We have not made any configuration changes. I think this began after the latest update. I am checking that now.
Please sign in to leave a comment.
Comments
3 comments