[ATP/FLEX] How to Configure Multiple IP Segments Routing in Non-Nebula VPN scenario?
Options

Zyxel_Stanley
Posts: 1,398
Guru Member





To connect remote LANs with non-Nebula IPSEC VPN, you need to set up a VTI interface in "Non-Nebula VPN" setting.
1. Navigate to the Non-Nebula VPN settings and click "IPSec Policy" Setting button.
—> Under VPN tunnel interface, enter a custom IP address for the VPN tunnel.
2. Set up routing policies for your VPN traffic specifying the Intranet IP segments as the source and Peer IP segments as the destination.
Make sure to configure corresponding settings on the peer VPN gateway for traffic routing.
Note: On branch VPN gateway needs to configuring VTI interface and corresponding route rules to routes multiple IP segments in VPN tunnel.
Example on ZyWALL.
1. VTI Interface setting
2. Route rules:
0
Categories
- All Categories
- 439 Beta Program
- 2.7K Nebula
- 191 Nebula Ideas
- 121 Nebula Status and Incidents
- 6.2K Security
- 467 USG FLEX H Series
- 307 Security Ideas
- 1.6K Switch
- 82 Switch Ideas
- 1.3K Wireless
- 44 Wireless Ideas
- 6.8K Consumer Product
- 281 Service & License
- 440 News and Release
- 88 Security Advisories
- 31 Education Center
- 10 [Campaign] Zyxel Network Detective
- 4.3K FAQ
- 34 Documents
- 34 Nebula Monthly Express
- 85 About Community
- 93 Security Highlight