How do I enable SNAT for Site2Site IPsec VPN in Nebula
This is USG Flex 200. I found instructions for stand-alone here,but cannot find how to do it in Nebula. It is a necessary feature for the environment. https://mysupport.zyxel.com/hc/en-us/articles/360003321659--ZyWALL-USG-How-to-configure-VPN-SNAT-on-Zyxel-gateways
0
All Replies
-
Hi @Rix,If all USG FLEX devices are managed by nebula, nebula control center will assign different IP subnets for different sites. Hence, you don't need SNAT for site to site IPSec VPN because there is no IP subnet conflict issue. Do you need SNAT feature for Non-Nebula VPN peers?0
-
Yes. It is non Nebula. I talked to support, not available at this time. Have to factory default and set up in native mode. Or I can change local subnet, or use Lan2 and 2nd Nic in server.0
Categories
- 7.8K All Categories
- 1.6K Nebula
- 55 Nebula Ideas
- 53 Nebula Status and Incidents
- 4.3K Security
- 217 Security Ideas
- 908 Switch
- 40 Switch Ideas
- 807 WirelessLAN
- 16 WLAN Ideas
- 5K Consumer Product
- 131 Service & License
- 260 News and Release
- 49 Security Advisories
- 6 Education Center
- 573 FAQ
- 273 Nebula FAQ
- 132 Security FAQ
- 73 Switch FAQ
- 72 WirelessLAN FAQ
- 7 Consumer Product FAQ
- Documents
- 34 Nebula Monthly Express
- 67 About Community
- 40 Security Highlight