usg20 creating multiple sessions

epogi
epogi Posts: 2  Freshman Member
First Comment
edited April 2021 in Security

Need your thoughts/help here please. About a day after I installed usg20-vpn to replace my old usg20w, none of the client devices was able to connect to the internet. Logs showed that maximum session per host was exceeded. I disconnected all clients and even moved them to a different interface but logs were the same. Reboot and device reset didn't help either. What makes it interesting is, the logs were showing a destination IP (private) that does not exist on the network.

I put the old usg20w back and all worked fine again.

Comments

  • Zyxel_Charlie
    Zyxel_Charlie Posts: 1,034  Zyxel Employee
    50 Answers 500 Comments Friend Collector Fourth Anniversary
    Hello epogi,
    Would you please check do you tick"Enable Session Limit", if so, please disable it, and test it again.

    Charlie
  • epogi
    epogi Posts: 2  Freshman Member
    First Comment

    I will give it a try. For now, do you know any reason why 1) it creates session on multiple IPs that are non-existent on my network, i.e. 10.0.2.x and 2) this doesn't happen on my old usg20w ?

    Thanks

  • Zyxel_Charlie
    Zyxel_Charlie Posts: 1,034  Zyxel Employee
    50 Answers 500 Comments Friend Collector Fourth Anniversary
    Hello epogi,
    After disable the session limit, does issue disappear?
    If log display numerous message showing the same destination IP, you may check which client try to connect to that IP.
    Go to session monitor to double check who try to connect the destination IP.

    Charlie

Security Highlight