Saturday, March 14, 2020

Firebox M370 IPsec tunnel to a Cyberoam/Sophos device.. No Proposal Chosen

I'm trying to swap in this new firewall and I've got local/internal traffic flowing nicely but forming an IPsec tunnel to a remote site with an old Cyberoam/Sophos firewall. I mean I'd expect IPsec to be fairly standardized. You verify the phase 1 and phase 2 transorms are identical then you're golden expect that's not what happening.

I guess a couple things I'm wondering is: Is a lower security more 'compatible'? Do things like rekeying, the SA life.. does it matter to be identical? And on the Firebox.. whats the difference between Branch office VPN and BOVPN Virtual Interfaces?



No comments:

Post a Comment