Zywall 310 - Multi spte VPN - Client L2tp Cant browse remote sites
Afternoon
Ive a multi site VPN setup, a zywall 310 is at the hub site. 5 remote sites inter-routing ok (am using the VPN concentrator feature)
Ive now setup Mac VPN clients, Then connect to the hub site ok and can ping / browse that hub sites LAN ok.
However i am unable to ping any other site.
When doing a trace route to a remote site lan the third hop is the WAN ip of the hub site.
0
All Replies
-
Good answer.On thinking about your answer, I do have intersite routig working ok betweek site - site vpn.I notice I cannot add the L2TP VPN into the VPN concentrator.Should I be looking at policy routes0
-
Hi @Emerald,
The concentrator is configured on the hub site and L2TP VPN client is connected to the hub.
Create a policy route on the hub site and the spoke site respectively.
Hub
Incoming: L2TP VPN tunnel
Destination Address: Subnet of spoke_1 site
Next-Hop: site to site VPN tunnel between hub and spoke_1
Spoke_1
Source Addrsss: Subnet of spoke_1 site
Destination Address: L2TP VPN pool of the hub site
Next-Hop: site to site VPN tunnel between hub and spoke_1
0
Categories
- All Categories
- 426 Beta Program
- 2.6K Nebula
- 163 Nebula Ideas
- 112 Nebula Status and Incidents
- 6K Security
- 345 USG FLEX H Series
- 289 Security Ideas
- 1.5K Switch
- 78 Switch Ideas
- 1.2K Wireless
- 42 Wireless Ideas
- 6.6K Consumer Product
- 261 Service & License
- 404 News and Release
- 86 Security Advisories
- 31 Education Center
- 10 [Campaign] Zyxel Network Detective
- 3.8K FAQ
- 34 Documents
- 34 Nebula Monthly Express
- 85 About Community
- 82 Security Highlight