Question about Startlink IPSec
Hello,
Does anyone did an IpSec VPN over starlink ?
We've got 2 USG Flex 200, ISP fiber Router Between them, and a Starlink router in bypass mode as backup connection.
IPSec is OK by fiber.
For Startlink, the VPN is up but no traffic.
I known the problem about CGNAT and public IP, but i not network engineer...
Is there a solution ?
All Replies
-
Hello @darrylwalsh
Welcome to the forum.
I looked at the user guide downloadable from https://www.zyxel.com/uk/en-gb/products/next-gen-firewall/usg-flex-firewall-usg-flex-200 and I think that you need to set-up a static route with a worse metric than your ISP fiber routers in order to use Starlink when your ISP link goes down.
See screenshots below from the user manual.
With an allowed value for Metric between 0 and 127.
Cisco call that a floating static route (according to CCNP ENCOR), but it seems like Zyxel just call it a static route with the ability to set the metric of the static route.
Happy new year and kind regards Tony
0
Categories
- All Categories
- 415 Beta Program
- 2.4K Nebula
- 151 Nebula Ideas
- 98 Nebula Status and Incidents
- 5.7K Security
- 272 USG FLEX H Series
- 274 Security Ideas
- 1.4K Switch
- 74 Switch Ideas
- 1.1K Wireless
- 42 Wireless Ideas
- 6.4K Consumer Product
- 250 Service & License
- 392 News and Release
- 84 Security Advisories
- 29 Education Center
- 10 [Campaign] Zyxel Network Detective
- 3.6K FAQ
- 34 Documents
- 34 Nebula Monthly Express
- 85 About Community
- 74 Security Highlight