Full Tunnel to Sophos XG
-
Our main office has a Sophos XG. I am trying to configure an IPsec tunnel between my Netgate at a remote office and the Sophos at the main office. The issue is, due to industry regulations, I must route ALL traffic through the VPN.
I have successfully configured the IPsec tunnel to connect and route internal traffic; however, nothing I do will make the Internet traffic go through the tunnel.
As far as I can tell, the NAT must be on the main office side, and I have added what should be the appropriate firewall and NAT rules on the Sophos. Using the Sophos Connect client and connecting to the Sophos via the Remote Access IPsec works as expected with the Internet traffic (it goes through the tunnel), but no such luck with the Netgate.
Any help would be greatly appreciated. Either this is way harder than it needs to be, or I am missing something obvious...