Server and Client VPN

Options
Zyxel_Chris
Zyxel_Chris Posts: 661  Zyxel Employee
First Anniversary 10 Comments Friend Collector First Answer

This topic focuses on a NSG Server/Client VPN scenario. The figure below illustrates how a gateway in server role is free to use a dynamic public IP and does not need to know the IP of the peer (client role) site.


You can find Server-and-Client scenario through the path: Configure > Security gateway > Site-to-Site VPN. Here, you can select which site in the Nebula organization is the hub (server) or spoke (client) site.



After selecting which site is the hub site, you can choose to activate client-to-client communication. Enabling this option allows end devices connecting from client sites to reach other end devices in other client sites.


You can also be activated Server/Client VPN in Organization-wide> VPN Orchestrator


After enabling the VPN connection, you then can go to Security gateway> VPN connections to confirm the connection status.



Chris