Routing additional IP scope to servers behind USG110
Options
adi_dragnic
Posts: 15
Freshman Member
Freshman Member
in Security
Hi Guys,
I have USG 110 and i am trying now for a few days to get this working with no luck
, my WAN1 has an address - 80.64.xx.xx, isp provided us with new address scope 93.26.xx.xx/29. and told me that the Gateway is the gateway from WAN1.
Here is what I have configured so far with no result
I have created virtual WAN1:1

I have created these policy routes


Created NAT Rules:

and I have also created these policies


I am unable to access these servers with public IP addresses. I am stuck at this point and need some advice on how can I configure this to work. I think I need some routes for the public IP scope.
Looking to hearing from you soon.
Best
Adi




I have USG 110 and i am trying now for a few days to get this working with no luck
Here is what I have configured so far with no result
I have created virtual WAN1:1

I have created these policy routes

Created NAT Rules:


Looking to hearing from you soon.
Best
Adi
0
All Replies
-
You config the LAN side subnet with 93.26.xx.xx/29 then your devices get WAN IP from your LAN you then do a routing rule incoming LAN1 next hop WAN1 with SNAT none.
remove virtual WAN1:1 and no need for NAT rules
1 -
Hi @adi_dragnic,
It looks like Public Lan scenario. You may follow PeterUK's suggestion to bind 93.26.xx.xx/29 in internal interface, and set up corresponding policy route for routing from 93.26.xx.xx/29 to Internet.0
Categories
- All Categories
- 441 Beta Program
- 2.9K Nebula
- 208 Nebula Ideas
- 127 Nebula Status and Incidents
- 6.4K Security
- 532 USG FLEX H Series
- 333 Security Ideas
- 1.7K Switch
- 84 Switch Ideas
- 1.3K Wireless
- 51 Wireless Ideas
- 6.9K Consumer Product
- 293 Service & License
- 461 News and Release
- 90 Security Advisories
- 31 Education Center
- 10 [Campaign] Zyxel Network Detective
- 4.7K FAQ
- 34 Documents
- 86 About Community
- 99 Security Highlight
Guru Member
Zyxel Employee