Results 1 to 2 of 2
  1. #1
    Newbie
    Join Date
    Jun 2020
    Posts
    9

    Default Rules not working as it should

    Hi all,

    The rules that I set in Tunnel VPN don't seem to do as they should (or as I want )

    The situation:
    I have 3 VPN providers.
    1 is my company
    1 is a VPN provider from Denmark
    1 is a VPN provider from Italy

    10.8.1.2 = my download server

    The rules:
    If source address = 10.8.1.2 and destination port = 600 then use VPN Italy
    If source address = 10.8.1.2 and destination port = 563 then use VPN Denmark
    If source address = 10.8.1.2 and destination address is not 192.168.2.0/24,10.8.1.0/24,192.168.16.0/23 then use VPN Denmark (want this to be use Denmark or Italy)
    If destination address = 192.168.16.0/23 then use VPN Company

    And this doesn't do what I want it to do.

    If I use mtr on the download machine and use "mtr -P 600 **downloadserver**" I see 10.200.0.1 as 2nd hop and 192.40.89.185 as 3rd hop.


    If I use mtr on the download machine and use "mtr -P 563 **downloadserver**" I see 10.200.0.1 as 2nd hop and 192.40.89.185 as 3rd hop.
    Thus it uses the same VPN and not another one as I wanted.
    Where does it go wrong???

  2. #2
    Master Untangler
    Join Date
    Jun 2015
    Location
    NW Arkansas
    Posts
    199

    Default

    Since moving to NGFW 15.1, am seeing no traffic being routed thru my Tunnel VPN. Otherwise nothing else in my network has changed. Have tried re-saving rules, re-enabling tunnel, etc. Nothing corrects behavior.
    Last edited by miles267; 07-01-2020 at 11:24 AM.

Posting Permissions

  • You may not post new threads
  • You may not post replies
  • You may not post attachments
  • You may not edit your posts
  •  

SEO by vBSEO 3.6.0 PL2