Re: I can VPN to my office but I can not ping any machines
Thanks Brano for the quick answer
Couple of things I forgot to mention: a - In you info, you are blocking the intra zone
I am not blocking the intra zones since I want the VPN users to access the whole network. Here is what I have
Note: I am using IPSec_VPN for the VPN Zone
b - your info shows L2TP as a service wen building the tunnel:
L2TP does not exist in my configuration but L2TP_UDP does
Now regarding your answers: 1) Make sure you have firewall open from VPN LAN to home LAN(s) and vice versa. I think I did configure it as per your info but since I was not going anywhere I also try to set every rules to any so nothing gets blocked (remember that my VPN zone is IPSec_VPN). Would the following work (this is the default config):
2) Make sure you have appropriate policy routes in place to route your VPN traffic to LAN and vice versa. Here is what I have
3) Make sure that LAN PCs don't have any local firewalls (i.e. Windows firewall) blocking your connections. I turned off the Windows firewalls to make sure that was not the problem
One thing that I discovered (bear with me as I am new to this USG 20w product) is that when I am in the office (not connected through VPN but on the WLAN), I can ping any other computers on the wireless network but I cannot ping the wired computer on lan1 (I even have a laptop which is on the wireless network and the wired network > I can ping the wireless IP address (i.e. 10.59.1.33) but not the wired IP (192.168.1.33). This seems to indicate that intrazones are blocked (including the VPN one). I want everybody in the office been able to access all the machines regardless if they are on lan1, lan2, wlan or vpn.
I am assuming that it must be a routing issue because two clients connected through VPN cannot ping each other (the IPSec_VPN zone is not blocking Intra-zone). Can anybody see something incorrect in my settings?
Note: my issue related to the wireless clients not been able to ping the servers on lan1 was due to a firewall entry missing