Flex 200 to 100H Migration

tmiller
tmiller Posts: 4  Freshman Member
First Comment Fourth Anniversary

Hello!

Attempting to migrate from a Flex200 to a Flex 100H, I've encountered a few problems.

  1. No template migration.
  2. This is a big one, there is not any ability to define multiple peer gateway addresses in an IPSEC tunnel. I needed this feature in the Flex 200, and it was there. I wanted to use Nebula with the 200, but I could not make this configuration in Nebula. Now the 100H doesn't seem to have this configuration in Nebula or on-prem. Am I just missing it?

All Replies

  • Zyxel_Tina
    Zyxel_Tina Posts: 196  Zyxel Employee
    Zyxel Certified Network Administrator - Security Zyxel Certified Network Administrator - Switch 50 Answers First Comment

    Hi @tmiller,

    Unfortunately, based on your requirement, directly migrating the configuration from USG FLEX 200 to USG FLEX 100H is not supported by the Configuration Migration Tool, as the physical interfaces of the USG FLEX 200 and USG FLEX 100H are incompatible. In this case, you will need to manually convert and adapt the configuration.

    The ideal use case for the Configuration Migration Tool is to convert a USG FLEX 200 configuration to a USG FLEX 200H. This ensures that interface mappings remain consistent and most settings can be carried over with minimal adjustments.

    Regarding your second question, could you please clarify what you mean by “define multiple peer gateway addresses in an IPSec tunnel”?

    • Do you mean having multiple peer public IP addresses for redundancy (e.g., dual-WAN failover on the remote site/virtual interface)?
    • Or do you mean having multiple remote subnets accessible through a single VPN tunnel?
    • Or something else?

    Clarifying this will help us understand your exact requirement so that we can provide the correct guidance.

    In the meantime, the following FAQs may be helpful for your reference:

    Zyxel Tina