Zywall 310 - communication between IPSEC VPN clients

Options
Trialog
Trialog Posts: 1  Freshman Member
First Anniversary
edited April 2021 in Security

Hello everybody,

I try to setup communication between IPSEC VPN clients on Zywall 310. Clients can connect and ping LAN interface, but can’t ping each other.

My setup:

Zywall 310

WAN

192.168.31.135

255.255.255.0

LAN

172.16.0.1

255.255.0.0






Users are using Shrew VPN client to connect. Client’s IPs are static from subnet 172.17.0.0/16.

Policy Generation Level: required
Remote Network Resources: 172.16.0.0/16, 172.17.0.0/16

 

Can anybody help me to find right configuration?

 

Thank you.

Comments

  • jasailafan
    jasailafan Posts: 191  Master Member
    First Anniversary 10 Comments Friend Collector First Answer
    Options
    I also got the same problem when using ZyWALL IPSec VPN client. :/
    Use mode config on both ZyWALL and ZyWALL IPSec VPN client but clients cannot ping each other.
  • Jeremylin
    Jeremylin Posts: 166  Master Member
    First Anniversary First Answer First Comment
    edited October 2017
    Options
    Change the configuration as following, and check it again.

    LAN1: 172.16.0.0/16

    VPN Connection:

    Scenario: Server role

    Local Policy: 172.16.0.0/15

    VPN client Address: 172.16.100.X/24

Security Highlight