Problem about connection from 2 sites [message #144734] |
Mon, 07 January 2019 05:52 |
Toan
Messages: 2 Registered: January 2019 Location: Vietnam
|
|
|
|
Hello Guys,
I'm just setup my office network, everything work fine except the vpn site to site from my brand to my head office.
This is my setup in my branch office:
IP Network: 192.168.0.0/24
Router Draytek 2925's ip: 192.168.0.1
And my setup at head office:
Local network: 172.16.10.0/16
Router is Peplink Balance One with ip 192.168.1.10/24
Firewall is Kerio Control with WAN IP is 192.168.1.12, Gateway 192.168.1.10 and LAN IP is 172.16.10.30, Gateway is blank
VPN Site to Site: 192.168.0.0/24 (Draytek 2925) to 192.168.1.0/24 (Peplink)
Here is the problem:
I use Draytek 2925 (192.168.0.0/24) connect to PepLink Balance One (172.16.10.0/16) via using VPN Site to Site and it's work fine. At my head office i can ping to all my branch's IP from network 172.16.10.0/16 but at my branch i can only ping to my head office's network 192.168.1.0/24 and can't ping to my head office's network 172.16.10.0/16. I checked Kerio's Seucrity Logs and see that Kerio reconize network 192.168.0.0/24 but Kerio's ethernet card wont allow network from 192.168.0.0/24 get through, see the log detail below:
[07/Jan/2019 08:37:28] Anti-spoofing: Packet from Ethernet, proto:TCP, len:52, 192.168.0.27:51393 -> 172.16.10.30:443, flags:[ SYN ], seq:2798228104 ack:0, win:65280, tcplen:0
I think this problem is about routing, but i try many way but it's not work. Can you help me solve this, thank you!
|
|
|