Creating several VPNs with different public IP addresses

Kv3
Kv3 Posts: 7
edited April 14 in Security
Is it possible to create create 4 VPNs (L2TP and IKEv2) with different public IP addresses 12.34.56.212 - 12.34.56.215 without creating virtual interfaces (WAN:1, WAN:2, WAN:3, WAN:4) ? The device is Zywall 310.

Answers

  • Zyxel_Emily
    Zyxel_Emily Posts: 822  Zyxel Employee

    Hi @Kv3,

    If you don't create virtual interfaces for other public IP addresses, you can also add NAT rule to bind the alternative IP on the interface.

    Here are examples for your reference.

    https://kb.zyxel.com/KB/searchArticle!gwsViewDetail.action?articleOid=016375&lang=EN

    https://kb.zyxel.com/KB/searchArticle!gwsViewDetail.action?articleOid=016415&lang=EN

     

    In Ethernet > wan, only 10.214.48.58 is configured.


    In NAT setting, add a rule with the external IP using alternative IP 10.214.48.67.


    Then you can create the VPN gateway by entering the alternative IP 10.214.48.67.


  • Kv3
    Kv3 Posts: 7
    Hi, Emily
    when I configure NAT, what IP address should I set in "User-Defined Internal IP" ?

  • Zyxel_Emily
    Zyxel_Emily Posts: 822  Zyxel Employee

    Hi @Kv3,

    The most important step is to configure the alternative IP address 12.34.56.212 - 12.34.56.215 in "External IP", so you can configure an inexistent internal IP address.

    Actually, you can add up to 4 virtual interfaces for wan interface.

    It would be simpler to create 4 virtual interfaces with the IP address 12.34.56.212 - 12.34.56.215 and use these wan virtual interfaces to build VPN tunnels.



Security Highlight