What's wrong with Site-to-Site VPN on Nebula Control Cente?

Zyxel_Irene
Posts: 118
Zyxel Employee





When Site-to-Site VPN tunnel cannot be established successfully, please check the following actions,
- If your Nebula Security Gateway (NSG) is behind NAT/Router,
- Go to Configure > Security gateway > Site-to-Site VPN and switch the Nebula VPN enable from off to on
- Check your NAT traversal, please enter your public IP in the block.
- If your Nebula Security Gateway (NSG) is with public IP or you already have the correct NAT traversal,
- Go to Gateway > Monitor > Event log, and filter through VPN Category
- Remote IP mismatch: you configure the incorrect IP or NAT
- NO_PROPOSAL_CHOSEN: check IPsec policy (phase 1 and phase 2
setting) and Preshared secret are same in local and peer side.
Tagged:
0
Categories
- All Categories
- 431 Beta Program
- 2.6K Nebula
- 164 Nebula Ideas
- 112 Nebula Status and Incidents
- 6K Security
- 364 USG FLEX H Series
- 292 Security Ideas
- 1.5K Switch
- 78 Switch Ideas
- 1.2K Wireless
- 42 Wireless Ideas
- 6.6K Consumer Product
- 262 Service & License
- 407 News and Release
- 87 Security Advisories
- 31 Education Center
- 10 [Campaign] Zyxel Network Detective
- 3.9K FAQ
- 34 Documents
- 34 Nebula Monthly Express
- 85 About Community
- 83 Security Highlight