USG110 & L2TP / IPSec with IKEv2
Options
Hi. I'm struggling to get IKEv2 implemented on my USG110. I can get my iPhone to connect well enough, but I can't seem to get both LAN & internet access at the same time. I've previously had IKEv1 working, so I just copied the Policy Routing & Control to the newly created VPN elements. But it doesn't work. I've tried changing the "Local Policy" under the VPN Connection, but no setting have provided both.
Is there a complete example somewhere?
0
All Replies
-
Hi @mrwee,
You can follow the instructions in the attached document to configure IKEv2.
Create a policy route for Internet access.
0 -
Thank you. This looks very useful. In trying to make this work, I've fiddled with "Use Policy Route to Security control dynamic IPSec rules". Is it correctly understood that if this is enabled, then no Policies needs to be configured manually? Even if I use Policy Routing (Under network)?Thanks for your support, it's great to have this forum!0
-
Hi @mrwee,
The ZyWALL creates routes for dynamic VPN automatically.
You can create and use policy routes to control IPSec traffic if "Use Policy Route to control dynamic IPSec rules" is enabled.
This feature provides more flexible management for IPSec VPN dynamic peer.
0 -
Ok, thanks for the clarification. I still haven't got it working, but I'll try to troubleshoot it.
0
Categories
- All Categories
- 393 Beta Program
- 2.1K Nebula
- 116 Nebula Ideas
- 78 Nebula Status and Incidents
- 5.1K Security
- 51 USG FLEX H Series
- 247 Security Ideas
- 1.3K Switch
- 70 Switch Ideas
- 906 WirelessLAN
- 34 WLAN Ideas
- 5.9K Consumer Product
- 210 Service & License
- 332 News and Release
- 71 Security Advisories
- 21 Education Center
- 5 [Campaign] Zyxel Network Detective
- 1.9K FAQ
- 880 Nebula FAQ
- 415 Security FAQ
- 220 Switch FAQ
- 195 WirelessLAN FAQ
- 46 Consumer Product FAQ
- 137 Service & License FAQ
- 34 Documents
- 34 Nebula Monthly Express
- 72 About Community
- 63 Security Highlight