How to Set Up Nebula site-to-site VPN on the USG FLEX H series models?

Zyxel_Jeff
Zyxel_Jeff Posts: 1,316  Zyxel Employee
100 Answers 500 Comments Friend Collector Fourth Anniversary
edited March 25 in VPN

This example shows how to use the Nebula firewalls (USG FLEX/ATP series models) to establish IPSec Site to Site VPN tunnel between USG FLEX H series models. It explains how to configure the Nebula Site-to-Site VPN using the Nebula Control Center. Once the Site-to-Site VPN tunnel is established, LAN hosts can communicate with each other through the VPN tunnel seamlessly.

image-ca682fc524a4c-0081.png

Set Up the Site-to-Site VPN settings on the Nebula Firewall

On Nebula Control Center, navigate to Side-wide > Configure > Firewall > Site-to-Site VPN > Configure the Primary interface, and Secondary interface (backup interface), on the local networks, enabling the interface will require routing through the VPN. Enable the Nebula VPN and choose the Site-to-Site VPN topology.

USG FLEX/ATP series site

image-93d7f7df4006e-d0ca.png

USG FLEX H series site

image-486ba687683cc-341c.png

Verify the VPN Connection

Navigate to Side-wide > Firewall > VPN connections to check the site-to-site VPN connection was connected successfully on both sites.

Nebula ATP200 VPN connection edit.png 200HP VPN connection Nebula edit.png

Navigate to the Web-GUI path VPN Status > IPsec VPN > Site to Site VPN of the USG Flex H series model to check the Nebula VPN connection was connected successfully.

200HP VPN connection GUI edit.png
Tagged: