Troubleshoot Mobile VPN with IPSec

This topic describes common types of problems you might encounter with Mobile VPN with IPSec, and describes the solutions that most often resolve these problems. Even after the IPSec VPN client connects, client traffic might not be able to reach some network resources because of network or policy configuration problems.

Installation Issues

In macOS 10.15 (Catalina) or higher, you must install v4.00 r40679 or higher of the WatchGuard Mobile VPN with IPSec client. For more compatibility information, see the Fireware Release Notes.

Connection Issues

Issues After Connection

We recommend that you do not use the private network ranges 192.168.0.0/24 or 192.168.1.0/24 on your corporate or guest networks. These ranges are commonly used on home networks. If a mobile VPN user has a home network range that overlaps with your corporate network range, traffic from the user does not go through the VPN tunnel. To resolve this issue, we recommend that you Migrate to a New Local Network Range.

If you cannot connect to network resources through an established VPN tunnel, see Troubleshoot Network Connectivity for information about other steps you can take to identify and resolve the issue.

To troubleshoot mobile VPN connection issues related to TDR Host Sensor Enforcement, see Troubleshoot TDR Host Sensor Enforcement.