Split tunnel VPN doesn't seem to work (SecuExtender and USG Flex Firewall)
The customer has Cloud Authentication Setup using default settings (Remote access VPN)) available for the USG FLEX 200 FW. Some 20 SecuExtender licenses. They do use MFA (Google Authenticator).
The split tunnel doesn't work imo. What ever I do to the SecuExtender Client the laptop will always result having the public IP of the USG FLEX 200 Firewall, not the local Internets public IP (what is my ip test via browser). All Win 10 laptops, no Win7/Win11 at all.
The split tunnel doesn't work imo. What ever I do to the SecuExtender Client the laptop will always result having the public IP of the USG FLEX 200 Firewall, not the local Internets public IP (what is my ip test via browser). All Win 10 laptops, no Win7/Win11 at all.
Further more, the tunnel doesn't stay up! Very problematic and the client is going away if we can't fix this.
Any ideas?
Any ideas?
0
Accepted Solution
-
The ZyXEL's Second Level Support provided a new conf file for the SecuExtender Client and now the split tunnel function is working.
0
All Replies
-
Remote access VPN is "Client to Site" VPN tunnel.
The VPn tunnel will offer VPN IP address after client after building VPN tunnel.
So VPN client traffic will fully transmit to VPN gateway. It is doesn't support split tunnel.
If you would like to split Internet and VPN traffic, you can consider create "Non-Nebila VPN peers" in Site to Site VPN tunnel.
0 -
"..create Non-Nebila VPN peers" in Site to Site VPN tunnel." What does this mean in practice? Can you plese provide additional details?
Further more. Do you have better answer to my question regarding keeping VPN tunnel open. ZyXEL first level support suggested to ping GW's LAN address through VPN tunnel but the customer reports it doesn't help.0 -
The ZyXEL's Second Level Support provided a new conf file for the SecuExtender Client and now the split tunnel function is working.
0
Categories
- All Categories
- 415 Beta Program
- 2.4K Nebula
- 144 Nebula Ideas
- 94 Nebula Status and Incidents
- 5.6K Security
- 237 USG FLEX H Series
- 267 Security Ideas
- 1.4K Switch
- 71 Switch Ideas
- 1.1K Wireless
- 40 Wireless Ideas
- 6.3K Consumer Product
- 247 Service & License
- 384 News and Release
- 83 Security Advisories
- 29 Education Center
- 10 [Campaign] Zyxel Network Detective
- 3.2K FAQ
- 34 Documents
- 34 Nebula Monthly Express
- 83 About Community
- 71 Security Highlight