What's wrong with Site-to-Site VPN on Nebula Control Cente?
![Zyxel_Irene](https://us.v-cdn.net/6029482/uploads/avatarstock/nK66F1OVPQPYH.png)
Zyxel_Irene
Posts: 118
Zyxel Employee
![](https://us.v-cdn.net/6029482/uploads/userpics/FN0BI9T10CTX/n6O940IZ5DEW6.png)
![5 Answers](https://us.v-cdn.net/6029482/uploads/badges/ZZBBCGG3LQVD.png)
![First Comment](https://us.v-cdn.net/6029482/uploads/badges/MBNFIRD87YVH.png)
![Friend Collector](https://us.v-cdn.net/6029482/uploads/badges/HNJASEUSC535.png)
![First Anniversary](https://us.v-cdn.net/6029482/uploads/badges/SJKCAIG91R5S.png)
When Site-to-Site VPN tunnel cannot be established successfully, please check the following actions,
- If your Nebula Security Gateway (NSG) is behind NAT/Router,
- Go to Configure > Security gateway > Site-to-Site VPN and switch the Nebula VPN enable from off to on
- Check your NAT traversal, please enter your public IP in the block.
- If your Nebula Security Gateway (NSG) is with public IP or you already have the correct NAT traversal,
- Go to Gateway > Monitor > Event log, and filter through VPN Category
- Remote IP mismatch: you configure the incorrect IP or NAT
- NO_PROPOSAL_CHOSEN: check IPsec policy (phase 1 and phase 2
setting) and Preshared secret are same in local and peer side.
Tagged:
0
Categories
- All Categories
- 415 Beta Program
- 2.4K Nebula
- 153 Nebula Ideas
- 99 Nebula Status and Incidents
- 5.7K Security
- 278 USG FLEX H Series
- 277 Security Ideas
- 1.4K Switch
- 74 Switch Ideas
- 1.1K Wireless
- 42 Wireless Ideas
- 6.4K Consumer Product
- 250 Service & License
- 395 News and Release
- 85 Security Advisories
- 29 Education Center
- 10 [Campaign] Zyxel Network Detective
- 3.6K FAQ
- 34 Documents
- 34 Nebula Monthly Express
- 85 About Community
- 75 Security Highlight