USG110 & L2TP / IPSec with IKEv2
Options
Hi. I'm struggling to get IKEv2 implemented on my USG110. I can get my iPhone to connect well enough, but I can't seem to get both LAN & internet access at the same time. I've previously had IKEv1 working, so I just copied the Policy Routing & Control to the newly created VPN elements. But it doesn't work. I've tried changing the "Local Policy" under the VPN Connection, but no setting have provided both.
Is there a complete example somewhere?
0
All Replies
-
Hi @mrwee,
You can follow the instructions in the attached document to configure IKEv2.
Create a policy route for Internet access.
0 -
Thank you. This looks very useful. In trying to make this work, I've fiddled with "Use Policy Route to Security control dynamic IPSec rules". Is it correctly understood that if this is enabled, then no Policies needs to be configured manually? Even if I use Policy Routing (Under network)?Thanks for your support, it's great to have this forum!0
-
Hi @mrwee,
The ZyWALL creates routes for dynamic VPN automatically.
You can create and use policy routes to control IPSec traffic if "Use Policy Route to control dynamic IPSec rules" is enabled.
This feature provides more flexible management for IPSec VPN dynamic peer.
0 -
Ok, thanks for the clarification. I still haven't got it working, but I'll try to troubleshoot it.
0
Categories
- All Categories
- 383 Beta Program
- 2.1K Nebula
- 116 Nebula Ideas
- 80 Nebula Status and Incidents
- 5.1K Security
- 75 USG FLEX H Series
- 247 Security Ideas
- 1.3K Switch
- 69 Switch Ideas
- 907 WirelessLAN
- 34 WLAN Ideas
- 5.9K Consumer Product
- 209 Service & License
- 335 News and Release
- 71 Security Advisories
- 21 Education Center
- 5 [Campaign] Zyxel Network Detective
- 1.9K FAQ
- 887 Nebula FAQ
- 415 Security FAQ
- 231 Switch FAQ
- 201 WirelessLAN FAQ
- 46 Consumer Product FAQ
- 137 Service & License FAQ
- 34 Documents
- 34 Nebula Monthly Express
- 73 About Community
- 62 Security Highlight