USG40: limits on IkeV2 gateways?
Options
I am using a full upgraded USG40 (ZLD 4.62). "Hub" site
10 IpSec tunnels configured:
7 site-to-site static IP (3 on the same gateway, IkeV2)
1 site-to-site roaming IP (IkeV1)
1 for L2TP
1 for IPSec Roaming users.
Now gateways:
4 are IkeV1, working quite correctly.
2 are IkeV2, working perfectly
2 are for roaming users, IPSec IkeV1, L2TP IkeV1.
Now
One one of the 4 IkeV1 is Ike V2 capable (another USG40 latest firmware). Sometimes VPN goes down, but not the matter right now...
I was going to create another IkeV2 gateway, then switch it for the tunnel on both side.
At the spoke site, no problem. Only IkeV1 gateways, only 2 tunnels, I could switch tunnel between IkeV1 and IkeV2 gateway.
But not on the Hub, which shows only 2 of the 3 configured IkeV2 Gateways.
Currently not able to reboot any of the system, any help appreciated.
10 IpSec tunnels configured:
7 site-to-site static IP (3 on the same gateway, IkeV2)
1 site-to-site roaming IP (IkeV1)
1 for L2TP
1 for IPSec Roaming users.
Now gateways:
4 are IkeV1, working quite correctly.
2 are IkeV2, working perfectly
2 are for roaming users, IPSec IkeV1, L2TP IkeV1.
Now
One one of the 4 IkeV1 is Ike V2 capable (another USG40 latest firmware). Sometimes VPN goes down, but not the matter right now...
I was going to create another IkeV2 gateway, then switch it for the tunnel on both side.
At the spoke site, no problem. Only IkeV1 gateways, only 2 tunnels, I could switch tunnel between IkeV1 and IkeV2 gateway.
But not on the Hub, which shows only 2 of the 3 configured IkeV2 Gateways.
Currently not able to reboot any of the system, any help appreciated.
0
Accepted Solution
-
My bad. Tunnel was setup in a wrong way (not site-to-site with static peer) so the gateway was not correct for the setup. After edit the wrong setting, IkeV2 Gateway appeared as expecte.d0
All Replies
-
My bad. Tunnel was setup in a wrong way (not site-to-site with static peer) so the gateway was not correct for the setup. After edit the wrong setting, IkeV2 Gateway appeared as expecte.d0
Categories
- All Categories
- 384 Beta Program
- 2.1K Nebula
- 116 Nebula Ideas
- 80 Nebula Status and Incidents
- 5.1K Security
- 74 USG FLEX H Series
- 247 Security Ideas
- 1.3K Switch
- 70 Switch Ideas
- 907 WirelessLAN
- 34 WLAN Ideas
- 5.9K Consumer Product
- 210 Service & License
- 333 News and Release
- 71 Security Advisories
- 21 Education Center
- 5 [Campaign] Zyxel Network Detective
- 1.9K FAQ
- 886 Nebula FAQ
- 415 Security FAQ
- 228 Switch FAQ
- 198 WirelessLAN FAQ
- 46 Consumer Product FAQ
- 137 Service & License FAQ
- 34 Documents
- 34 Nebula Monthly Express
- 73 About Community
- 63 Security Highlight