How to reach an external server on a USG1100 firewall
Hi, I need to reach an external server (IP 20.103.254.144) through the ports 80 and 443 of a USG1100 firewall from the clients of my LAN. At the moment the firewall blocks the outgoing flow. I found lot of guides about NAT service for incoming packets to an internal server but nothing about the opposite. I have to go out from LAN to WAN. Any explanations or helps will be very appreciated.
0
All Replies
-
Hi @Matt10669,
Can you see any blocked log at MONITOR > Log > View Log when filtering keyword "20.103.254.144"?
0 -
By default LAN to WAN is all allow out by policy control, do any clients of your LAN have internet access?
1 -
All my clients have internet access. I forgot to mention that in my LAN we have configured 2 VLAN's. I dont know if this can be important
0 -
Hi @Matt10669,
Can you see any blocked log at MONITOR > Log > View Log when filtering keyword "20.103.254.144"?0 -
Hi @Matt10669,
Please help to test access 20.103.254.144 again and capture packets on USG1100 wan interface.
We would like to check why it is fail to access.
MAINTENANCE > Diagnostics > Packet Capture.
Interface = External wan interface
Host IP = 20.103.254.144
Download packets in "Files" tab and send me in PM for further analzying.
0 -
I checked and I don't have any block in the log monitor. But the service doesn't work. If I connect my lan directly into the router bypassing the firewall the service works. Very strange
0 -
Cooldia I've sent you what you asked. Thank you so much
0
Categories
- All Categories
- 428 Beta Program
- 2.6K Nebula
- 163 Nebula Ideas
- 112 Nebula Status and Incidents
- 6K Security
- 348 USG FLEX H Series
- 291 Security Ideas
- 1.5K Switch
- 78 Switch Ideas
- 1.2K Wireless
- 42 Wireless Ideas
- 6.6K Consumer Product
- 261 Service & License
- 404 News and Release
- 87 Security Advisories
- 31 Education Center
- 10 [Campaign] Zyxel Network Detective
- 3.8K FAQ
- 34 Documents
- 34 Nebula Monthly Express
- 85 About Community
- 82 Security Highlight