My client currently has two firewalls in different buildings, connected in a ClusterXL setup, and they are also linked via a Site-to-Site VPN.
I am trying to connect to the L3 switches located behind each firewall using Endpoint Security VPN, but I noticed something strange. When I set the site to Building 1 and connect via Endpoint Security VPN, I attempted to ping the L3 switch in Building 1, but the ping did not reach it. However, the ping successfully reached the L3 switch in Building 2 instead. The policy is not blocking the traffic.
Why is this happening?
Additionally, when I run netstat -nr after enabling the VPN, I can see the routing table created by the VPN, which seems to include the VPN tunnel gateway. If this gateway appears in the routing table, is it expected that I should be able to ping the tunnel gateway successfully?