How to configure site to site VPN between ZLD and uOS using route-based?
This example shows how to use the VPN Setup Wizard to create a site-to-site VPN with the Peer gateway is ZLD device using route-based VPN.
The example instructs how to configure the VPN tunnel between each site. When the VPN tunnel is configured, each site can be accessed securely.
Set up IPSec VPN Tunnel for uOS
VPN > IPSec VPN > Site to Site VPN > Configuration > Add to access configuration page
VPN > IPSec VPN > Site to Site VPN > Scenario
In the scenario step, type the VPN name used to identify this VPN connection. Select the type to the Site-to-Site. Click Next
.
VPN > IPSec VPN > Site to Site VPN > Scenario > Network
Configure My Address and Peer Gateway Address. Click Next.
VPN > IPSec VPN > Site to Site VPN > Scenario > Network > Authentication
Type a secure Pre-Shared Key. Click Next
VPN > IPSec VPN > Site to Site VPN > Scenario > Network > Authentication > Policy & Routing
Set "Route-Based" Type and define the Remote Subnet. And change the VTI address as you want.
VPN > IPSec VPN > Site to Site VPN > Scenario > Network > Authentication > Policy & Routing > Summary
The screen provides a summary of the VPN tunnel. You can Edit it if you want to modify.
Network > Routing > Static Route
The routing will be added automatically
Set up IPSec VPN Tunnel for ZLD
VPN > IPSec VPN > VPN Gateway
Select the WAN interface and type the Peer Gateway Address.
Type Pre-shared Key. The default proposal which created by wizard is
“Encryption:AES128, Authentication:SHA1, Key Group:DH2”. Those are the same as uOS.
VPN > IPSec VPN > VPN Connection
Select VPN Gateway as "VPN Tunnel Interface" and select the correct phase1 profile
The default proposal which created by wizard is
“Encryption:AES128, Authentication:SHA1, Key Group:DH2”. Those are the same as uOS.
Network > Interface > VTI
Create VTI interface and assign vpn-rule of route based
Network > Routing > Static Route
Adding static route of peer subnet
Test IPSec VPN Tunnel
Go to VPN Status > IPSec VPN
Verify the IPSec VPN status
PC to Brance Office > Win 11 > cmd > ping 192.168.2.34
Categories
- All Categories
- 415 Beta Program
- 2.4K Nebula
- 144 Nebula Ideas
- 94 Nebula Status and Incidents
- 5.6K Security
- 237 USG FLEX H Series
- 267 Security Ideas
- 1.4K Switch
- 71 Switch Ideas
- 1.1K Wireless
- 40 Wireless Ideas
- 6.3K Consumer Product
- 247 Service & License
- 384 News and Release
- 83 Security Advisories
- 29 Education Center
- 10 [Campaign] Zyxel Network Detective
- 3.2K FAQ
- 34 Documents
- 34 Nebula Monthly Express
- 83 About Community
- 71 Security Highlight