Is it possible to add several subnet in a remote policy?
Hello.
I have a tunnel, between a zyxel usg 20 and a sonicwall firewalls. The tunnel is up. What I need to do next is to allow zyxel side to access several subnets on the sonicwall side. As I see, when defining the VPN connection, in the remote policy section, I can choose only one subnet. It is not possible to choose, for example, a group objects which contains several subnets.
Does anyone know how to bypass this issue and configure several subnets on a VPN tunnel on a zyxel usg?
Thank you in advance!
Accepted Solution
-
Hi @alexia_net
You can base on same VPN phase 1 profile to create multiple phase 2 profile for each subnet.
Both VPN phase 2 profile based on same phase 1 VPN Gateway, one is for remote subnet 192.168.20.1/24, another is for subnet 192.168.10.0/24
Don't miss this great chance to upgrade your Nebula org. for free!
5
All Replies
-
Hi @alexia_net
Welcome to the forum :)
You can see a procedure how to do it on the following document:
https://www.conetec.su/upload/iblock/ed1/ZyWALL_USG_ZLD.pdf
Page 44
I hope it helps
Regards
1 -
Hi @alexia_net
You can base on same VPN phase 1 profile to create multiple phase 2 profile for each subnet.
Both VPN phase 2 profile based on same phase 1 VPN Gateway, one is for remote subnet 192.168.20.1/24, another is for subnet 192.168.10.0/24
Don't miss this great chance to upgrade your Nebula org. for free!
5 -
Hello Cooldia,
This is what I have done as well. :)
Thank you all for your answers.
Best regards!
0
Categories
- All Categories
- 414 Beta Program
- 2.2K Nebula
- 131 Nebula Ideas
- 91 Nebula Status and Incidents
- 5.4K Security
- 179 USG FLEX H Series
- 258 Security Ideas
- 1.4K Switch
- 71 Switch Ideas
- 1K Wireless
- 36 Wireless Ideas
- 6.2K Consumer Product
- 236 Service & License
- 372 News and Release
- 79 Security Advisories
- 24 Education Center
- 5 [Campaign] Zyxel Network Detective
- 2.9K FAQ
- 34 Documents
- 34 Nebula Monthly Express
- 80 About Community
- 69 Security Highlight