05-20-2016 02:07 PM - edited 03-19-2019 11:08 AM
I have a new deployment of a pair of Expressways for MRA. Running the latest version on both.
The EXP-E is in a DMZ and is deployed single-NIC (don't have 2 DMZ subnets).
We have all of the DNS and certificates taken care of
The EXP-C says the traversal zone is "Active", while the EXP-E says it is "Failed".
Any idea why one side thinks it's up while the other doesn't?
05-22-2016 06:39 AM
Make sure that whatever you are pointing to (fqdn, hostname, ip address) is what is defined on the other side's certificate, i.e. if you are pointing to IP, but the cert is issued to FQDN change it to point to FQDN.
If that is not it, you'll need to look in the logs and review firewall rules/logs.
05-26-2016 09:12 AM
It turned out that I hadn't entered the NAT info into the E. Once I did that, everything came up.
Discover and save your favorite ideas. Come back to expert answers, step-by-step guides, recent topics, and more.
New here? Get started with these tips. How to use Community New member guide