USG40W using OPT for WAN no Internet

CRU_Technologies
CRU_Technologies Posts: 24  Freshman Member
Zyxel Certified Network Engineer Level 1 - Switch Zyxel Certified Network Administrator - WLAN Zyxel Certified Network Administrator - Nebula Zyxel Certified Network Administrator - Switch
edited April 2021 in Security
Hi,
I have just reconfigured a USG40W (it was using the WAN port on a PPoE connection), and now using the OPT port as WAN on an Ethernet Circuit.  It is configured as a WAN port in port roles.  The trunk has been updated just to use this connection.
The device is on the internet (I am remotely accessing it), and the (reconfigured Site to Site VPN is working fine), but client machines cannot access the internet.
I cannot ping from a client machine (can from the USG).
Is it an issue with using the OPT port?
Thanks,
Simon.

All Replies

  • PeterUK
    PeterUK Posts: 3,389  Guru Member
    100 Answers 2500 Comments Friend Collector Seventh Anniversary
    edited January 2019

    Have you allowed like from LAN1 to OPT for the firewall?

    You may have to add a routing rule like:

    network > routing > policy route

    add

    incoming: interface

    please select one member : Lan1

    next-hop

    type: interface

    interface: OPT

    address translation

    source network address translation: outgoing-interface


  • CRU_Technologies
    CRU_Technologies Posts: 24  Freshman Member
    Zyxel Certified Network Engineer Level 1 - Switch Zyxel Certified Network Administrator - WLAN Zyxel Certified Network Administrator - Nebula Zyxel Certified Network Administrator - Switch
    Hi Peter,
    Thank you for the response.
    I did the exact same process on a corresponding USg310 at the same time, and didn't need to change or add any routing.
    Simon.

  • CRU_Technologies
    CRU_Technologies Posts: 24  Freshman Member
    Zyxel Certified Network Engineer Level 1 - Switch Zyxel Certified Network Administrator - WLAN Zyxel Certified Network Administrator - Nebula Zyxel Certified Network Administrator - Switch
    Update:
    Just got off the phone with ZyXel support and it is an issue with the OPT port.  Sebastian had to create Routing Policy Route to specifically send the traffic the right way.  
    Simon.

Security Highlight