Connection losses between ZyWALL310 and USG20W-VPN
Hi dear,
i'm writting you a topic because i've a problem, connection losses, randomly my IPSec connection between the datacenter (ZyWALL310) and the customer (USG20W-VPN) is lost.
I receive from the ZyWALL310 an alert message, connectivity-check, the link status of the tunnel VPN is inactive. We have some microswitch-off on the customer side (USG20W-VPN), the tunnel is still open / connected but not working really. Do you know if is it possible to setup something different to decrease the sensibility about disconnect ?
Do you have an idea ?
thanks a lot.
i'm writting you a topic because i've a problem, connection losses, randomly my IPSec connection between the datacenter (ZyWALL310) and the customer (USG20W-VPN) is lost.
I receive from the ZyWALL310 an alert message, connectivity-check, the link status of the tunnel VPN is inactive. We have some microswitch-off on the customer side (USG20W-VPN), the tunnel is still open / connected but not working really. Do you know if is it possible to setup something different to decrease the sensibility about disconnect ?
Do you have an idea ?
thanks a lot.
0
All Replies
-
Hi @steve15f
Welcome to Zyxel community.
You can try to enable both site VPN phase 1 DPD, and confirm that if the “nail-up” is ticked on VPN phase 2.
0 -
HI @Zyxel_Cooldia
thanksand thanks for your reply.
i've enabled both site VPN DPD, and i've enabled the "nail-up" on the customer VPN site where there are the microswitch-off. Before, the "nail-up" was enabled on the Datacenter VPN site (no microswitch-off)
what do you think ? thanks0 -
Hi @steve15f
As you mentioned in first post, the VPN tunnel disconnect issue may coming from connectivity-check function.
What’s the IP address is configured in connectivity-check on ZyWALL310?
Will this IP address reply the ping request?
Can you take screen shot of your VPN setting on ZyWALL310 and VPN20W-VPN?
0 -
Hi,
Thanks for your reply.
You can find attached the config of the USG20W-VPN and the ZyWALL 310. VPN Connection setup.
Do you need some info about the config of the VPN Gateway ?
The ZyWALL 310 (Datacenter side) make a check with the address of the USG20W-VPN (192.168.1.1) on the customer side.
The USG20W-VPN (Customer side) make a check with the adress of an Microsoft WIndows Server (192.168.105.10) on the datacenter side.
thanks a lot0 -
Hi @steve15f
It looks your connectivity check setting is correct, but still not sure what caused the disconnect issue.
I will send you private message for check this issue much details.
0 -
Thanks a lot0
Categories
- All Categories
- 428 Beta Program
- 2.6K Nebula
- 163 Nebula Ideas
- 112 Nebula Status and Incidents
- 6K Security
- 346 USG FLEX H Series
- 291 Security Ideas
- 1.5K Switch
- 78 Switch Ideas
- 1.2K Wireless
- 42 Wireless Ideas
- 6.6K Consumer Product
- 261 Service & License
- 404 News and Release
- 87 Security Advisories
- 31 Education Center
- 10 [Campaign] Zyxel Network Detective
- 3.8K FAQ
- 34 Documents
- 34 Nebula Monthly Express
- 85 About Community
- 82 Security Highlight