SpeedFusion Client (BR1) behind a corporate firewall

Hi,

We have a Peplink Balance 380 on a public IP, with SpeedFusion enabled, and a BR1 behind in a corporate network (behind firewall). Firewall rules to allow outbound traffic to UDP port 4500 and TCP port 32015 to the public IP have been set. However, the PepVPN could not be established. [We believe it is the problem with the firewall: with the same BR1, if sim card is used instead of the LAN (connecting to the corporate network), the connection to 380 is fine]

Any advice would be much appreciated. Thank you.

Does indeed sound like the firewall in front of the BR1 is blocking traffic.
First thing to try is a custom data port so you’re not using 4500. use something lower.
You will need to change that on the Speedfusion profile on the B380 end of course too.

If that doesn’t work, you’ll need access to the firewall rules/logs.

Thanks Martin for your prompt reply.

We changed to another port but still not working.

Checked the logs of the edge firewall, the TCP connection (via Port 32015) could not be established (error: aged out). Apart from TCP 32015 and the data port, any other ports I need to take care of?

Thanks again.