Incorrect zone use by remote access VPN

PeterUK
PeterUK Posts: 3,709  Guru Member
100 Answers 2500 Comments Friend Collector Seventh Anniversary
edited February 1 in USG FLEX H Series

V1.31(ABWV.0)

test PC1 192.168.255.193/26 VPN to > 192.168.255.235 Ge4 LAN FLEX200H >site to site VTI> Zywall110 VLAN48 > test PC2 192.168.255.70/28

Remote access VPN IP pool 192.168.50.0/24 zone remote_VPN

When ping 192.168.255.70 from test PC1 connected by VPN to FLEX200H zone remote_VPN is not used and instead is Ge4 LAN zone by policy rule to get it to work.

All Replies

  • PeterUK
    PeterUK Posts: 3,709  Guru Member
    100 Answers 2500 Comments Friend Collector Seventh Anniversary
    edited March 14

    Incorrect zone use by remote access VPN V2

    USG FLEX 200H V1.31(ABWV.0)ITS-0311-GUI

    remote access VPN 192.168.50.0/24 zone remote_VPN

    ISP 2 connect to ISP1 FLEX200H to WAN2 (ge2)

    routeing
    incoming ANY
    Source Address 192.168.50.0/24
    next hop WAN2
    SNAT outgoing-interface

    firewall rules
    From remote_VPN to Zywall DNS
    From remote_VPN to WAN2 Source IP192168500 192.168.50.0/24 Ping
    From remote_VPN to WAN2 Source IP192168500 192.168.50.0/24 Outgoing_allowed (like HTTPS...)

    at first when I connect to the VPN it don't work then I move the rule and then it worked (can't do a reboot to see if it happen again just yet still test GUI bug) but logs show VPN client From Ge2 to Ge2 which is not right.