from LAN to LAN over bridge

NoE
NoE Posts: 30  Freshman Member
First Comment Friend Collector First Anniversary
edited April 2023 in Security

Hello,

I have USG Flex700 and I am manging two different ISP networks withthe ZyWALL - one is main ISP and the other is of legally-established entity.
I was able to set it up with the great help of this community - via bridge as described within

The bridge is defined as follows:

bridge_1.png bridge_2.png

Policy route:

bridge_3.png


Of course some demands happened later on to access some resources over that bridge.

One of them was to access internal web page which belongs to that legally based network.
So I have set the Policy Route:

bridge_4.png

and Policy Control:

bridge_5.png

and it behaves really nice - people form one subnet 192.168.0.x can access web interface 192.168.94.200 as HTTP/HTTPS without any problem.

Then another demand came - access data on Synology share which resides within network 192.168.0.x FROM network 192.168.94.x.
So I have followed similar steps:
I have defined the corresponding subnet as interface subnet over the mentioned bridge:

bridge_8.png

then Policy Route:

bridge_6.png

and then Policy Control:

bridge_7.png

But to access Synology in this direction, it does not work at all.

Please share your proposals, experiences, ideas.

Thanks a lot

All Replies

  • PeterUK
    PeterUK Posts: 3,736  Guru Member
    100 Answers 2500 Comments Friend Collector Seventh Anniversary

    A dawning layout of the network might help.

    But from what I see you want subnet 192.168.94.0/24 to connect to this 192.168.0.102? so are devices on 192.168.94.0/24 have gateway to the bridge IP?

  • jasailafan
    jasailafan Posts: 193  Master Member
    5 Answers First Comment Friend Collector Sixth Anniversary

    @NoE
    Is the scenario similar to this example? You may follow the steps in the guide "bridge_scenaro.pdf".
    https://community.zyxel.com/en/discussion/comment/5137#Comment_5137

  • NoE
    NoE Posts: 30  Freshman Member
    First Comment Friend Collector First Anniversary

    well, the GW of 192.168.94.0/20 is defined within the bridge itself:

    bridge_GW.PNG
  • PeterUK
    PeterUK Posts: 3,736  Guru Member
    100 Answers 2500 Comments Friend Collector Seventh Anniversary

    dawn out a network layout