Creating several VPNs with different public IP addresses

Kv3
Kv3 Posts: 10  Freshman Member
First Comment Sixth Anniversary
edited April 2021 in Security
Is it possible to create create 4 VPNs (L2TP and IKEv2) with different public IP addresses 12.34.56.212 - 12.34.56.215 without creating virtual interfaces (WAN:1, WAN:2, WAN:3, WAN:4) ? The device is Zywall 310.

All Replies

  • Zyxel_Emily
    Zyxel_Emily Posts: 1,396  Zyxel Employee
    Zyxel Certified Network Administrator - Security Zyxel Certified Sales Associate 100 Answers 1000 Comments

    Hi @Kv3,

    If you don't create virtual interfaces for other public IP addresses, you can also add NAT rule to bind the alternative IP on the interface.

    Here are examples for your reference.

    https://kb.zyxel.com/KB/searchArticle!gwsViewDetail.action?articleOid=016375&lang=EN

    https://kb.zyxel.com/KB/searchArticle!gwsViewDetail.action?articleOid=016415&lang=EN

     

    In Ethernet > wan, only 10.214.48.58 is configured.


    In NAT setting, add a rule with the external IP using alternative IP 10.214.48.67.


    Then you can create the VPN gateway by entering the alternative IP 10.214.48.67.


  • Kv3
    Kv3 Posts: 10  Freshman Member
    First Comment Sixth Anniversary
    Hi, Emily
    when I configure NAT, what IP address should I set in "User-Defined Internal IP" ?

  • Zyxel_Emily
    Zyxel_Emily Posts: 1,396  Zyxel Employee
    Zyxel Certified Network Administrator - Security Zyxel Certified Sales Associate 100 Answers 1000 Comments

    Hi @Kv3,

    The most important step is to configure the alternative IP address 12.34.56.212 - 12.34.56.215 in "External IP", so you can configure an inexistent internal IP address.

    Actually, you can add up to 4 virtual interfaces for wan interface.

    It would be simpler to create 4 virtual interfaces with the IP address 12.34.56.212 - 12.34.56.215 and use these wan virtual interfaces to build VPN tunnels.



Security Highlight