HI all.
I changed the mask on the "CP_default_Office_Mode_addresses_pool" network group from /25 to /26. to make room for 4 nets.
My "CP default Office Mode address pool" range changed from 10.10.10.1-126 to 10.10.10.65 - 126.
(The plan was to reserve one of the nets for use in the ipassignement.conf file. We need a handful of users to always get the same static ip address when WFH.)
I created a new network object that contained IPs in the range of 10.10.10.1-62. I created my ipassignment.conf file and assigned 10 users with static ips from this new IP range.
I made sure to add this new group to my remote access encryption domain
We tested the new static IPs while signed into the mobile VPN and all seemed fine. However, we were not able to access our CIFS file share server. We couldn't ping it...
I was able to access other resources on my remote network.
I checked DNS - no issues. No double entries.
When I ran fw monitor while pinging the CIFS server I was not receiving any ICMP replies back...
After checking the new network object I created I noticed that I did not have "Add automatic address translation rules" "Hide behind the gateway" checked.
After checking the option to use "hide NAT" and re-logging into the mobile access VPN, I was able to access my CIFS server.
Now for my question:
Why would I be able to ping other machines on the same network but not access this one IP until I enabled Hide NAT?