USG40 - dual WAN routes stop working
Hi
Hoping someone might be able to help with my issue. I have set up OPT as an alternative wan link, which routes to a router and out through a VPN. I have two internal lans. I want LAN1 to go out through WAN, and LAN2 to go out through OPT.
LAN1 has IP range 192.168.2.2 to 192.168.3.250/23
LAN2 has IP range 192.168.1.10 to 192.168.1.50/24
This worked perfectly for a while. Clients in the 192.168.1.X range hit the internet through OPT and out through the VPN. Clients in the 192.168.2 and 3.X range hit the internet through WAN.
Suddenly this is not happening any more and the LAN2 clients are now missing the VPN via OPT and going out through WAN.
Any ideas? I have tried all sorts of security rules to stop traffic from LAN2 hitting WAN, but they don't seem to have any effect.
I am wondering if at some point, before I had the right rules in place, some LAN2 traffic go out through WAN, and this created routes in a table which makes them permanent, and all the gui config I now do is meaningless...
Any pointers welcome!
0
All Replies
-
Is the VPN being done by the USG40? Or after by another device.
You likely need routeing rules
Do the same for LAN2 to OPT
0 -
VPN being done by another device.I have a routing rule for LAN2 out as follows:And one for LAN1 out:My devices on LAN2 have a router address of the LAN2 port on the USG40 (192.168.1.3).My devices on LAN1 have a router address of the LAN1 port on the USG40 (192.168.2.1).
0
Categories
- All Categories
- 415 Beta Program
- 2.4K Nebula
- 153 Nebula Ideas
- 100 Nebula Status and Incidents
- 5.7K Security
- 280 USG FLEX H Series
- 277 Security Ideas
- 1.4K Switch
- 74 Switch Ideas
- 1.1K Wireless
- 42 Wireless Ideas
- 6.4K Consumer Product
- 250 Service & License
- 395 News and Release
- 85 Security Advisories
- 29 Education Center
- 10 [Campaign] Zyxel Network Detective
- 3.6K FAQ
- 34 Documents
- 34 Nebula Monthly Express
- 85 About Community
- 75 Security Highlight