Unable to open port /NAT on USG40W
I have followed both of these guide to a "T" and my USG40W refuses to port forward:
https://mysupport.zyxel.com/hc/en-us/articles/360003880919--ZyWALL-USG-
How-to-open-ports-on-a-ZyWALL-USG-router-Port-Forwarding-NAT-
https://support.zyxel.eu/hc/en-us/articles/360001390934-NAT-Rule-Configuration-on-a-USG-Port-Forwarding-
I have checked and rechecked my objects and ports, but nothing seems to work in the logs I can see that traffic from expected IPs is trying to connect in because I get the following message:
There is definitely a policy at priority one that allows the appropriate service. What am i doing wrong here?
https://mysupport.zyxel.com/hc/en-us/articles/360003880919--ZyWALL-USG-
How-to-open-ports-on-a-ZyWALL-USG-router-Port-Forwarding-NAT-
https://support.zyxel.eu/hc/en-us/articles/360001390934-NAT-Rule-Configuration-on-a-USG-Port-Forwarding-
I have checked and rechecked my objects and ports, but nothing seems to work in the logs I can see that traffic from expected IPs is trying to connect in because I get the following message:
notice | Security Policy Control | Match default rule, DROP [count=22] |
There is definitely a policy at priority one that allows the appropriate service. What am i doing wrong here?
0
Accepted Solution
-
Check the port role and port you are connected too
0
All Replies
-
NAT instruct your device about how manage the packages.
Then security policy allows the traffic.
If you will publish (even masked/with data replaced) both NAT and Security policies i could analyze it and make my suggestions.0 -
In the NAT rule have you left "source IP" to any?0
-
Yes, source IP is set to any.
0 -
mMontana said:NAT instruct your device about how manage the packages.
Then security policy allows the traffic.
If you will publish (even masked/with data replaced) both NAT and Security policies i could analyze it and make my suggestions.
NAT:
Security policy:
Preview
0 -
Check the port role and port you are connected too
0 -
In config > network > interface that the device is connected to the port for Lan2
0
Categories
- All Categories
- 417 Beta Program
- 2.5K Nebula
- 160 Nebula Ideas
- 108 Nebula Status and Incidents
- 5.9K Security
- 331 USG FLEX H Series
- 286 Security Ideas
- 1.5K Switch
- 78 Switch Ideas
- 1.2K Wireless
- 42 Wireless Ideas
- 6.6K Consumer Product
- 259 Service & License
- 402 News and Release
- 86 Security Advisories
- 31 Education Center
- 10 [Campaign] Zyxel Network Detective
- 3.8K FAQ
- 34 Documents
- 34 Nebula Monthly Express
- 85 About Community
- 80 Security Highlight