problems in configuration usg20w without wan interface
Hello. In 1 site we setup usg20w-vpn with l2 vpn from provider.
I builded ipsec vpn & vti interface.
Localnet 172.20.0.0/20 in central site & 172.20.52.0/24 usg20w-vpn (172.20.52.1 ip of Zywall).
VTI 172.24.0.5/30 central & 172.24.0.6/30 usg20w-vpn.
VPN provider connect to p3 in Lan1 zone, local connect to p4 Lan2 zone.
From central site i can ping all network below ZW and vice versa, exception internal ZW ip addresses 172.20.52.1 & 172.24.0.6. I can access to ZW only via provider vpn ip on p3.
I added policy routes to ZW to 172.20.0.0/20 via vti interface.
ZW can't ping 172.20.0.0/20 range. What i must change to have access to ZW by internal ip addresses & ZW start see remote lan?
Via cli ZW gives message, that Network is unreachable, than i try ping 172.20.0.0/20 range.
Thanks.
Edit: i forgot to creat new trunk with vti interface & chouse it by default. After that, all work properly.
Accepted Solution
-
Edit: i forgot to creat new trunk with vti interface & chouse it by default. After that, all work properly.
0
All Replies
-
Edit: i forgot to creat new trunk with vti interface & chouse it by default. After that, all work properly.
0 -
Hi @alexey
It's good to know you had found the reason of it.😀
0
Categories
- All Categories
- 415 Beta Program
- 2.4K Nebula
- 153 Nebula Ideas
- 100 Nebula Status and Incidents
- 5.7K Security
- 280 USG FLEX H Series
- 277 Security Ideas
- 1.4K Switch
- 74 Switch Ideas
- 1.1K Wireless
- 42 Wireless Ideas
- 6.5K Consumer Product
- 250 Service & License
- 395 News and Release
- 85 Security Advisories
- 29 Education Center
- 10 [Campaign] Zyxel Network Detective
- 3.6K FAQ
- 34 Documents
- 34 Nebula Monthly Express
- 85 About Community
- 75 Security Highlight