IPsec VPN "site to site" USG20<-> USG40
Options
All Replies
-
VPN Connection, EXTERNAL OFFICE side.
Enable "Advanced" settings. Nailed Up is selected?0 -
Hi,
Error was in external zywall configuration.
LAN3 had lan 192.168.8.1 (same HEADQUARTER 192.168.8.0/24).
now I ping from external to headquarter and viceversa but not all ip.
example:
in HEADQUARTER there is:
192.168.8.2
192.168.8.7
192.168.8.8
...
from external office I ping .7 and .8 but not .2
why?0 -
What is 192.168.8.2?
0 -
192.168.8.2 is a iSeries Server (as400).
from external office I can connect to headquarters by SSL secureextender client (usg40 HEADQUARTERS has SSL VPN configured), in secureextender insert HeadQuarters public IP, user and password and then get connection and I reach iSeries server by ping 192.168.8.2 but not with VPN IPSec site to site.0 -
Please help to check if both USG security policy Wan to Device have service port NATT? [.](https://instasave.onl/)
-1 -
yes, USG HEAD and USG EXTERNAL have NATT in Wan to Zywall security policy0
-
I am no expert at all of iSeries Server. Maybe there are some options on TCP/IP and firewall setting for allow connection from other subnets?
Moreover: does your iSeries server has the gateway configured?0 -
Does 192.168.8.8 have ICMP allow on its firewall?
Is the subnet at the other end really /24 ?
0 -
Hi @sadatvid,
Does the USG40 have subnet 192.168.2.x/24? we have default subnet 192.168.2.x/24 on LAN 2.
It would have subnet overlapping with peer USG20 LAN IP.
Default interface setting in USG.
0 -
Hi, thank you for your help.
I can't solve connection to iSeries (AS400).
If I use Zywall secuExtender client from pc into external office I can ping As400 and connect to terminal emulation (by client access emulator port 23 telnet).
IPSec (Ikev1) works with all ip of HEADQUARTERS Lan but not with iSeries.
what is the difference?0
Categories
- All Categories
- 392 Beta Program
- 2.1K Nebula
- 116 Nebula Ideas
- 78 Nebula Status and Incidents
- 5.1K Security
- 51 USG FLEX H Series
- 247 Security Ideas
- 1.3K Switch
- 70 Switch Ideas
- 907 WirelessLAN
- 34 WLAN Ideas
- 5.9K Consumer Product
- 211 Service & License
- 332 News and Release
- 71 Security Advisories
- 21 Education Center
- 5 [Campaign] Zyxel Network Detective
- 1.9K FAQ
- 880 Nebula FAQ
- 415 Security FAQ
- 220 Switch FAQ
- 195 WirelessLAN FAQ
- 46 Consumer Product FAQ
- 137 Service & License FAQ
- 34 Documents
- 34 Nebula Monthly Express
- 72 About Community
- 63 Security Highlight