USG60W - Access to LAN from additional WAP
I am new to the USG having converted from a Cisco ASA but have successfully set up the 60W with all working as expected with one exception.
The USG60W is set up as my WAP (originally using EZMODE but subsequently converted to expert mode). There are two additional WAPs (Cisco WAP121) in LAN1 using the same SSID. No VLAN is used.
When devices connect via the USG60W, they can access the WAN and hosts on the LAN (as required). When the same devices connect via either of the other WAPs, they are able to access the WAN but *not* the hosts on the LAN. The WAPs were previously working without issue in tandem with the Cisco ASA.
Any ideas what I am missing or how best to debug.
With thanks
The USG60W is set up as my WAP (originally using EZMODE but subsequently converted to expert mode). There are two additional WAPs (Cisco WAP121) in LAN1 using the same SSID. No VLAN is used.
When devices connect via the USG60W, they can access the WAN and hosts on the LAN (as required). When the same devices connect via either of the other WAPs, they are able to access the WAN but *not* the hosts on the LAN. The WAPs were previously working without issue in tandem with the Cisco ASA.
Any ideas what I am missing or how best to debug.
With thanks
0
Accepted Solution
-
Check your port role that your on the same LAN1
You may need to make a security policy rule for from LAN1 to LAN15
All Replies
-
Hi @Neil_Bain,Here it is the configuration example for your referenceThe router is connected to LAN2 of USG60W and the laptop is connected to LAN1.Topology:
On the router, select the operation mode as “Access Point”.
In this mode, wireless client which is connected to the SSID of the router gets the same IP subnet of LAN2 of USG60W after the router is connected to LAN2 of USG60W.
Check if your AP has operation mode such as AP mode or bridge mode.
Make sure the security policy rules are allowed.
iPhone is connected to the router and gets IP 192.168.20.35.
Ping the laptop 192.168.10.34 successfully.
See how you've made an impact in Zyxel Community this year!
https://bit.ly/Your2024Moments_Community0 -
Check your port role that your on the same LAN1
You may need to make a security policy rule for from LAN1 to LAN15
Categories
- All Categories
- 415 Beta Program
- 2.4K Nebula
- 151 Nebula Ideas
- 98 Nebula Status and Incidents
- 5.7K Security
- 277 USG FLEX H Series
- 277 Security Ideas
- 1.4K Switch
- 74 Switch Ideas
- 1.1K Wireless
- 42 Wireless Ideas
- 6.4K Consumer Product
- 250 Service & License
- 395 News and Release
- 85 Security Advisories
- 29 Education Center
- 10 [Campaign] Zyxel Network Detective
- 3.6K FAQ
- 34 Documents
- 34 Nebula Monthly Express
- 85 About Community
- 75 Security Highlight