How to reach an external server on a USG1100 firewall
Hi, I need to reach an external server (IP 20.103.254.144) through the ports 80 and 443 of a USG1100 firewall from the clients of my LAN. At the moment the firewall blocks the outgoing flow. I found lot of guides about NAT service for incoming packets to an internal server but nothing about the opposite. I have to go out from LAN to WAN. Any explanations or helps will be very appreciated.
0
All Replies
-
Hi @Matt10669,
Can you see any blocked log at MONITOR > Log > View Log when filtering keyword "20.103.254.144"?
0 -
By default LAN to WAN is all allow out by policy control, do any clients of your LAN have internet access?
1 -
All my clients have internet access. I forgot to mention that in my LAN we have configured 2 VLAN's. I dont know if this can be important
0 -
Hi @Matt10669,
Can you see any blocked log at MONITOR > Log > View Log when filtering keyword "20.103.254.144"?0 -
Hi @Matt10669,
Please help to test access 20.103.254.144 again and capture packets on USG1100 wan interface.
We would like to check why it is fail to access.
MAINTENANCE > Diagnostics > Packet Capture.
Interface = External wan interface
Host IP = 20.103.254.144
Download packets in "Files" tab and send me in PM for further analzying.
0 -
I checked and I don't have any block in the log monitor. But the service doesn't work. If I connect my lan directly into the router bypassing the firewall the service works. Very strange
0 -
Cooldia I've sent you what you asked. Thank you so much
0
Categories
- All Categories
- 415 Beta Program
- 2.4K Nebula
- 144 Nebula Ideas
- 94 Nebula Status and Incidents
- 5.6K Security
- 237 USG FLEX H Series
- 267 Security Ideas
- 1.4K Switch
- 71 Switch Ideas
- 1.1K Wireless
- 40 Wireless Ideas
- 6.3K Consumer Product
- 247 Service & License
- 384 News and Release
- 83 Security Advisories
- 29 Education Center
- 10 [Campaign] Zyxel Network Detective
- 3.2K FAQ
- 34 Documents
- 34 Nebula Monthly Express
- 83 About Community
- 71 Security Highlight