Question about Startlink IPSec
Freshman Member
Hello,
Does anyone did an IpSec VPN over starlink ?
We've got 2 USG Flex 200, ISP fiber Router Between them, and a Starlink router in bypass mode as backup connection.
IPSec is OK by fiber.
For Startlink, the VPN is up but no traffic.
I known the problem about CGNAT and public IP, but i not network engineer...
Is there a solution ?
All Replies
-
Hello @darrylwalsh
Welcome to the forum.
I looked at the user guide downloadable from https://www.zyxel.com/uk/en-gb/products/next-gen-firewall/usg-flex-firewall-usg-flex-200 and I think that you need to set-up a static route with a worse metric than your ISP fiber routers in order to use Starlink when your ISP link goes down.
See screenshots below from the user manual.
With an allowed value for Metric between 0 and 127.
Cisco call that a floating static route (according to CCNP ENCOR), but it seems like Zyxel just call it a static route with the ability to set the metric of the static route.
Happy new year and kind regards Tony
0
Categories
- All Categories
- 442 Beta Program
- 3K Nebula
- 226 Nebula Ideas
- 130 Nebula Status and Incidents
- 6.6K Security
- 641 USG FLEX H Series
- 357 Security Ideas
- 1.8K Switch
- 86 Switch Ideas
- 1.4K Wireless
- 54 Wireless Ideas
- 7K Consumer Product
- 303 Service & License
- 495 News and Release
- 93 Security Advisories
- 31 Education Center
- 10 [Campaign] Zyxel Network Detective
- 4.8K FAQ
- 34 Documents
- 88 About Community
- 110 Security Highlight
Guru Member