How do I enable SNAT for Site2Site IPsec VPN in Nebula
Options
This is USG Flex 200. I found instructions for stand-alone here,but cannot find how to do it in Nebula. It is a necessary feature for the environment. https://mysupport.zyxel.com/hc/en-us/articles/360003321659--ZyWALL-USG-How-to-configure-VPN-SNAT-on-Zyxel-gateways
0
All Replies
-
Hi @Rix,If all USG FLEX devices are managed by nebula, nebula control center will assign different IP subnets for different sites. Hence, you don't need SNAT for site to site IPSec VPN because there is no IP subnet conflict issue. Do you need SNAT feature for Non-Nebula VPN peers?0
-
Yes. It is non Nebula. I talked to support, not available at this time. Have to factory default and set up in native mode. Or I can change local subnet, or use Lan2 and 2nd Nic in server.0
Categories
- All Categories
- 395 Beta Program
- 2.1K Nebula
- 117 Nebula Ideas
- 81 Nebula Status and Incidents
- 5.1K Security
- 82 USG FLEX H Series
- 247 Security Ideas
- 1.3K Switch
- 69 Switch Ideas
- 914 WirelessLAN
- 34 WLAN Ideas
- 5.9K Consumer Product
- 211 Service & License
- 337 News and Release
- 71 Security Advisories
- 21 Education Center
- 5 [Campaign] Zyxel Network Detective
- 2K FAQ
- 912 Nebula FAQ
- 415 Security FAQ
- 237 Switch FAQ
- 207 WirelessLAN FAQ
- 46 Consumer Product FAQ
- 139 Service & License FAQ
- 34 Documents
- 34 Nebula Monthly Express
- 72 About Community
- 62 Security Highlight