Synology VPN
Hi.
We have IPSec between two offices with two Zywall USG 100.
- zywall 192.168.50.1-245
- zywall 192.168.53.1-245
Our synology is in .50 network. It also runs a VPN server. When a user connects via Synology VPN it is able to talk to .50 network, but unable to reach .53 network. What rule do I need to create and where to allow the communication?
Thank you for your help.
Juraj.
All Replies
-
You should ask to Synology Forum, IMVHO. This is part of routing table of your NAS (if availble).
Otherwise you can use L2TP VPN to allow a user to connect only to Synology AND .53 network.
1 -
If you have NAS in your topology, check your NAS and Zywall USG100 .50 routing table first if it has .53 routing in it.
IF not,you can add policy route on both your NAS and Zywall USG .50 routing table to make the communication success.
1 -
Hello and thank you for taking the time to look into my "issue." I have been working with zywall for very short time. I already have some routing created. Is this what you mean? My goal here is to have the user that is in .53 network, connect via synology vpn from outside and then RDC to his PC.
0 -
@cpg_juraj What is the PC's IP when it connects to synology by VPN?
0 -
Synology VPN is set to assign IP addresses in a range 10.0.8.10 - 10.0.8.20. I tried to add a rule to allow traffic from a created object for this specific range to .53 network. I might be missing something or not doing it correctly.
0 -
Your scenario is similar to this FAQ.
At the site .53 network, create a policy route.
Incoming: any, Source: any, Destination: 10.0.8.10 - 10.0.8.20, next-hop: VPN tunnel
At the site .50 network, create a static route.
Destination IP: 10.0.8.0
Subnet Mask: <the subnet mask of 10.0.8.10 - 10.0.8.20>
Next Hop: 192.168.50.x (Synology's IP)
Create a policy route.
Incoming: any, Source: any, Destination: 192.168.53.0/24, next-hop: VPN tunnel
0 -
Awesome, that`s what I was looking for. I will apply the settings and will post back the results. Thank you.
0
Categories
- All Categories
- 415 Beta Program
- 2.4K Nebula
- 144 Nebula Ideas
- 94 Nebula Status and Incidents
- 5.6K Security
- 238 USG FLEX H Series
- 267 Security Ideas
- 1.4K Switch
- 71 Switch Ideas
- 1.1K Wireless
- 40 Wireless Ideas
- 6.3K Consumer Product
- 247 Service & License
- 384 News and Release
- 83 Security Advisories
- 29 Education Center
- 10 [Campaign] Zyxel Network Detective
- 3.2K FAQ
- 34 Documents
- 34 Nebula Monthly Express
- 83 About Community
- 71 Security Highlight