Question about Startlink IPSec
Freshman Member
Hello,
Does anyone did an IpSec VPN over starlink ?
We've got 2 USG Flex 200, ISP fiber Router Between them, and a Starlink router in bypass mode as backup connection.
IPSec is OK by fiber.
For Startlink, the VPN is up but no traffic.
I known the problem about CGNAT and public IP, but i not network engineer...
Is there a solution ?
All Replies
-
Hello @darrylwalsh
Welcome to the forum.
I looked at the user guide downloadable from https://www.zyxel.com/uk/en-gb/products/next-gen-firewall/usg-flex-firewall-usg-flex-200 and I think that you need to set-up a static route with a worse metric than your ISP fiber routers in order to use Starlink when your ISP link goes down.
See screenshots below from the user manual.
With an allowed value for Metric between 0 and 127.
Cisco call that a floating static route (according to CCNP ENCOR), but it seems like Zyxel just call it a static route with the ability to set the metric of the static route.
Happy new year and kind regards Tony
0
Categories
- All Categories
- 439 Beta Program
- 2.8K Nebula
- 207 Nebula Ideas
- 127 Nebula Status and Incidents
- 6.4K Security
- 526 USG FLEX H Series
- 330 Security Ideas
- 1.7K Switch
- 84 Switch Ideas
- 1.3K Wireless
- 49 Wireless Ideas
- 6.9K Consumer Product
- 290 Service & License
- 462 News and Release
- 90 Security Advisories
- 31 Education Center
- 10 [Campaign] Zyxel Network Detective
- 4.5K FAQ
- 34 Documents
- 86 About Community
- 99 Security Highlight
Guru Member