L2TP VPN traffic routing to VPN tunnel
        
            Options        
            
        
                    Hi,
I have a Zyxel Flex 200 firewall, which I manage trough nebula.
My Firewall has the ip 192.168.1.1
L2TP vpn is set up to use 192.168.3.0/24
I'm in the process of setting up a VPN site to site tunnel to Azure and I need to be able to access the network on Azure. The network on Azure is: 172.10.1.0/24. The creation of the tunnel seems simple enough.
How can I route L2TP traffic so that it work to both the 192.168.1.0/24 network (this works already by default) and the network behind the VPN tunnel on Azure (172.10.1.0/24)?
                
                I have a Zyxel Flex 200 firewall, which I manage trough nebula.
My Firewall has the ip 192.168.1.1
L2TP vpn is set up to use 192.168.3.0/24
I'm in the process of setting up a VPN site to site tunnel to Azure and I need to be able to access the network on Azure. The network on Azure is: 172.10.1.0/24. The creation of the tunnel seems simple enough.
How can I route L2TP traffic so that it work to both the 192.168.1.0/24 network (this works already by default) and the network behind the VPN tunnel on Azure (172.10.1.0/24)?
0    
            Accepted Solution
- 
            Hello @PuuhaPete
 Welcome to Zyxel community. According to your requirement, you could configure a policy route as below: source IP is L2TP IP range and destination IP is remote site IP range, Type : VPN Traffic and the Next-Hop please choose that VPN tunnel. 
 As for another question, once you establish L2TP on your device, all traffic will be passed through the L2TP tunnel.
 Thanks.0
All Replies
- 
            I tested some more and it seems that all of the internet traffic on the computer connecting through L2TP is routed through the L2TP tunnel.
 Is this correct?0
- 
            Hello @PuuhaPete
 Welcome to Zyxel community. According to your requirement, you could configure a policy route as below: source IP is L2TP IP range and destination IP is remote site IP range, Type : VPN Traffic and the Next-Hop please choose that VPN tunnel. 
 As for another question, once you establish L2TP on your device, all traffic will be passed through the L2TP tunnel.
 Thanks.0
- 
            Thanks for your advice.
 Do I also need to enable the Use VPN check box under Site-to-Site VPN for the 192.168.3.0 network? 
 1
- 
            
 The "Use VPN" switch means your local policy for the site-to-site VPN. According to your setting, the first priority local policy is lan1192.168.1.0/24. So, you won't enable the "Use VPN" switch on 192.168.3.0/24 and you still can use L2TP VPN and site-to-site VPN services. ThanksPuuhaPete said:Thanks for your advice.
 Do I also need to enable the Use VPN check box under Site-to-Site VPN for the 192.168.3.0 network?  .                        0 .                        0
Categories
- All Categories
- 439 Beta Program
- 2.8K Nebula
- 200 Nebula Ideas
- 126 Nebula Status and Incidents
- 6.3K Security
- 498 USG FLEX H Series
- 323 Security Ideas
- 1.6K Switch
- 83 Switch Ideas
- 1.3K Wireless
- 49 Wireless Ideas
- 6.8K Consumer Product
- 286 Service & License
- 457 News and Release
- 89 Security Advisories
- 31 Education Center
- 10 [Campaign] Zyxel Network Detective
- 4.3K FAQ
- 34 Documents
- 34 Nebula Monthly Express
- 85 About Community
- 96 Security Highlight

 Freshman Member
  Freshman Member 
          
          
          Guru Member
  Guru Member 
          
          
         
 
                     
                     
                    