Comments
-
Yes, forgot to mention that eth1 has a different subnet IP address. I have added the 10.20.20.1 as a secondary IP address to interface eth1 and now it works. Thank you.
-
If have already tried this but the web ui won't let me. It shows the following message:"The source IP address you specifiy must be on the same subnet as the primary or secondary IP address of the outgoing interface or the loopback interface". Should I add the 10.20.20.1 as secondary IP address to the interface eth1 as…
-
After a lot of troubelshooting I was able to fix the issue. The fragmented IKE_AUTH packets sended from the Windows client were bigger than 1500 bytes. It seems like some ISPs drop these packets. The only solution for that is to lower the MTU size of the outgoing interface in Windows so the sended packets are lower than…
-
Here is the full log: https://pastebin.com/FYKVxFGH
-
The user with the CG NAT did not called back yet. But I had a new user with the same issue. This user is not behind a CG NAT though. But what I could see from the Traffic Monitor it looked like the same issue (maybe I am wrong). I will post the logs separatly because they are to long. I could fix the problem in a weird…
-
As stated on their webpage Anydesk uses either one of these TCP-Ports: 80, 443, 6568 You can find more here: https://support.anydesk.com/knowledge/firewall
-
The DF option sounds really interesting. If I am lucky I have the chance to test it at a client this week who sits behind a CG NAT and have this problem. I will post the results here. Thanks for the hint.
-
Yes, this solution works very well and we are already doing this for spam. Okay. I will set the specific actions in the Gateway AV settings to lock. Thanks for the suggestions.
-
I found the solution. Make sure your SYSTEM Account has full access on the directory, where the database of the Log Server is installed.