WANO Sangfor VPN Unable To Connect, VPN Interface IP Conflict

|
  • 274
  • 18

Issue Description

The HQ and the branch establish SANGFOR VPN, and the VPN can’t connect. The log prompts: [SangforIKE] Local device’s virtual NIC (IP: 20.20.20.200, subnet mask: 255.255.255.255) conflict with the network segment configured on the peer ((name:MDLAN WAN IP : 20.20.20.20)) that includes the subnet!.See the screenshot below for the detail: (The screenshot of this case comes from the internal experimental environment).

Handling Process

1. Check the HQ site interface and VPN interface configuration.
2. Check the Branch site interface and VPN interface configuration.

Root Cause

The IP address of the VPN interface of the branch device conflicts with the IP network segment of the WAN port of the HQ device, causing the SANGFOR VPN to fail to connect.

Solution

Change the IP address of the VPN interface of the branch device to the Auto (Note: Clicking ok will restart the VPN service)

Suggestions

Ensure the address of the two ends does not conflict. VPN interface is the virtual routing interface for the VPN data. It is used to forward data to the VPN tunnel and encapsulate packets.
Bewok Lv3Posted 21 Jan 2020 16:46
  
very great .....
faresta Lv3Posted 28 Jan 2020 16:38
  
thanks ....
elvano Lv3Posted 28 Jan 2020 16:46
  
great solution
azura Lv3Posted 28 Jan 2020 16:49
  
thank you for share
abah Lv2Posted 24 Feb 2020 23:55
  
thanks for share
bramtorvalds Lv4Posted 06 Apr 2020 13:10
  
very helpful solution
Faisal Lv8Posted 27 Aug 2020 07:33
  
Thank you very much for the information ...
Osama Muhammad Lv3Posted 27 Aug 2020 13:42
  
helpful and detailed article
Faisal Lv8Posted 14 Oct 2020 09:55
  
Nice article ...

I want to write a case
Doc ID: 2375
Author: CTI TF
Updated: 2019-12-20 16:09
Version: