SSL VPN I can't ping client on LAN network
Freshman Member
I configured an SSL VPN with a standard IP pool: 192.168.51.0/24.
I use OpenVPN as my client to connect, and the connection is established correctly.
However, if I try to ping a client on the network, for example, 192.168.168.10, I get no response.
However, if I ping the IP 192.168.168.1, it responds correctly.
I can't figure out what else I should configure besides enabling SSL VPN and the VPN to LAN policy.
Thanks for your help.
All Replies
-
First can you test that you can ping 192.168.168.10 from another device if so then this might be what you need to do.
If your VPN is IP pool is 192.168.51.0/24
0.0.0.0 - 192.168.50.255
192.168.52.0 – 255.255.255.55
0 -
Hi @Olidalmine,
Welcome to the Zyxel Community!
Since the SSL VPN connection is established and you can ping the firewall interface, the VPN itself looks to be working correctly.
To narrow down the issue, please first test whether the client (192.168.168.10) is reachable from another device in the same LAN subnet.
- If it is not reachable, please check the firewall on that client to ensure ICMP is allowed.
- If it is reachable from the same subnet, then as PeterUK suggested, please try pinging that client from a different subnet to verify whether the issue is related to routing or security policy handling between networks.
Zyxel Tina
0 -
Thanks for the replies.
Ping within the network is working properly.
I don't have any other subnets to test, only the basic network 192.168.168.1, which generates the firewall by default.
I have a Zyxel USG FLEX 50H, and this is the first time I'm configuring SSL_VPN.I only enabled SSL_VPN as per Zyxel's instructions and set the SSL_VPN service (10443) to Default_Allow_LAN_To_ZyWALL.
I apologize, but I'm not sure where I should enter the settings you indicated: Policy Route, Static Route, or Policy Control.
0 -
Its Policy Route, have you made any rules in Policy Route?
0 -
Hi @Olidalmine,
Thanks for your feedback!
As PeterUK mentioned, do you have any manually created policy route rules? If possible, please enable Zyxel Support Access so we can review your device directly.
Zyxel Tina
0
Categories
- All Categories
- 442 Beta Program
- 2.9K Nebula
- 219 Nebula Ideas
- 127 Nebula Status and Incidents
- 6.5K Security
- 588 USG FLEX H Series
- 344 Security Ideas
- 1.7K Switch
- 84 Switch Ideas
- 1.4K Wireless
- 52 Wireless Ideas
- 7K Consumer Product
- 298 Service & License
- 477 News and Release
- 91 Security Advisories
- 31 Education Center
- 10 [Campaign] Zyxel Network Detective
- 4.8K FAQ
- 34 Documents
- 87 About Community
- 102 Security Highlight
Guru Member
Zyxel Employee