Question about Startlink IPSec
Hello,
Does anyone did an IpSec VPN over starlink ?
We've got 2 USG Flex 200, ISP fiber Router Between them, and a Starlink router in bypass mode as backup connection.
IPSec is OK by fiber.
For Startlink, the VPN is up but no traffic.
I known the problem about CGNAT and public IP, but i not network engineer...
Is there a solution ?
All Replies
-
Hello @darrylwalsh
Welcome to the forum.
I looked at the user guide downloadable from https://www.zyxel.com/uk/en-gb/products/next-gen-firewall/usg-flex-firewall-usg-flex-200 and I think that you need to set-up a static route with a worse metric than your ISP fiber routers in order to use Starlink when your ISP link goes down.
See screenshots below from the user manual.
With an allowed value for Metric between 0 and 127.
Cisco call that a floating static route (according to CCNP ENCOR), but it seems like Zyxel just call it a static route with the ability to set the metric of the static route.
Happy new year and kind regards Tony
0
Categories
- All Categories
- 415 Beta Program
- 2.5K Nebula
- 152 Nebula Ideas
- 101 Nebula Status and Incidents
- 5.8K Security
- 296 USG FLEX H Series
- 281 Security Ideas
- 1.5K Switch
- 77 Switch Ideas
- 1.1K Wireless
- 42 Wireless Ideas
- 6.5K Consumer Product
- 254 Service & License
- 396 News and Release
- 85 Security Advisories
- 29 Education Center
- 10 [Campaign] Zyxel Network Detective
- 3.6K FAQ
- 34 Documents
- 34 Nebula Monthly Express
- 87 About Community
- 76 Security Highlight