Static routes not working in this setup unless

PeterUK
PeterUK Posts: 3,310  Guru Member
100 Answers 2500 Comments Friend Collector Seventh Anniversary
edited October 22 in USG FLEX H Series

USG FLEX 200H V1.30(ABWV.0)

So due to real DMZ not quite working in V1.30 I wanted to redirect traffic for the WLAN to FLEX200 from FLEX200H so I did this and it now works but the rules need for FLEX200H should they be need in red?

It was the case that WLAN on port 6 of the FLEX200H would of SNAT out the WAN2 port 2 and the Static routes was needed and works but not for this setup which need the extra routing rule.

So heres my thinking
192.168.253.1 on AP goes to gateway 192.168.252.1 USG60W
routes out WAN1 SNAT none
FLEX200H on routing for 192.168.254.0/23 to gateway 192.168.255.237 SNAT none
FLEX200 on router for 192.168.254.0/23 to gateway with SNAT to internet
then reply
Static routes on FLEX200 for 192.168.254.0/23 to gateway 192.168.255.235
and then it gets to the FLEX200H where I would think Static routes 192.168.254.0/23 to gateway 192.168.254.2 would send the reply but it didn't unless I add the routing rules in red

All Replies

  • Zyxel_Kay
    Zyxel_Kay Posts: 987  Zyxel Employee
    Zyxel Certified Network Engineer Level 2 - Nebula Zyxel Certified Network Engineer Level 2 - WLAN Zyxel Certified Network Engineer Level 2 - Switch Zyxel Certified Network Engineer Level 2 - Security

    Hi @PeterUK

    FLEX200H on routing for 192.168.254.0/23 to gateway 192.168.255.237 SNAT none

    Could you provide additional details about your setup? The source packet should be 253.1, and there’s no SNAT.

    If possible, please capture the entire packet flow for us to investigate further.

    Kay

    Engage in the Community, become an MVP, and win exclusive prizes! https://bit.ly/Community_MVP

  • PeterUK
    PeterUK Posts: 3,310  Guru Member
    100 Answers 2500 Comments Friend Collector Seventh Anniversary

    Hi Kay thanks for your interest

    I'm not sure if its a normal thing or a FLEX200H thing like I said the setup works just not sure why I needed the routing rule when I think Static routes should work or if it because I have many hops when routeing SNAT none two times

    So the idea is I have device 192.168.253.1 on USG60W to then go to FLEX200H but I don't want to SNAT outgoing WAN so its none then when it gets to FLEX200H I need to send it to FLEX200 again without SNAT outgoing so its SNAT none when if gets to FLEX200 then I SNAT outgoing WAN but now I have to Static routes this traffic back so from FLEX200 192.168.254.0/23 gateway 192.168.255.237 to FLEX200H then from FLEX200H 192.168.254.0/23 gateway 192.168.254.2 then it gets to USG60W