Split tunnel VPN doesn't seem to work (SecuExtender and USG Flex Firewall)
Options
The customer has Cloud Authentication Setup using default settings (Remote access VPN)) available for the USG FLEX 200 FW. Some 20 SecuExtender licenses. They do use MFA (Google Authenticator).
The split tunnel doesn't work imo. What ever I do to the SecuExtender Client the laptop will always result having the public IP of the USG FLEX 200 Firewall, not the local Internets public IP (what is my ip test via browser). All Win 10 laptops, no Win7/Win11 at all.
The split tunnel doesn't work imo. What ever I do to the SecuExtender Client the laptop will always result having the public IP of the USG FLEX 200 Firewall, not the local Internets public IP (what is my ip test via browser). All Win 10 laptops, no Win7/Win11 at all.
Further more, the tunnel doesn't stay up! Very problematic and the client is going away if we can't fix this.
Any ideas?
Any ideas?
0
Accepted Solution
-
The ZyXEL's Second Level Support provided a new conf file for the SecuExtender Client and now the split tunnel function is working.
0
All Replies
-
Remote access VPN is "Client to Site" VPN tunnel.
The VPn tunnel will offer VPN IP address after client after building VPN tunnel.
So VPN client traffic will fully transmit to VPN gateway. It is doesn't support split tunnel.
If you would like to split Internet and VPN traffic, you can consider create "Non-Nebila VPN peers" in Site to Site VPN tunnel.
0 -
"..create Non-Nebila VPN peers" in Site to Site VPN tunnel." What does this mean in practice? Can you plese provide additional details?
Further more. Do you have better answer to my question regarding keeping VPN tunnel open. ZyXEL first level support suggested to ping GW's LAN address through VPN tunnel but the customer reports it doesn't help.0 -
The ZyXEL's Second Level Support provided a new conf file for the SecuExtender Client and now the split tunnel function is working.
0
Categories
- All Categories
- 383 Beta Program
- 2.1K Nebula
- 116 Nebula Ideas
- 80 Nebula Status and Incidents
- 5.1K Security
- 76 USG FLEX H Series
- 247 Security Ideas
- 1.3K Switch
- 69 Switch Ideas
- 907 WirelessLAN
- 34 WLAN Ideas
- 5.9K Consumer Product
- 209 Service & License
- 335 News and Release
- 71 Security Advisories
- 21 Education Center
- 5 [Campaign] Zyxel Network Detective
- 1.9K FAQ
- 890 Nebula FAQ
- 415 Security FAQ
- 233 Switch FAQ
- 203 WirelessLAN FAQ
- 46 Consumer Product FAQ
- 137 Service & License FAQ
- 34 Documents
- 34 Nebula Monthly Express
- 73 About Community
- 62 Security Highlight