[USG FLEX 200] Device on LAN2 VLAN with its own zone can not ping/connect to network IP
Firmware version: 5.38(ABUI.0)
Following this article:
https://mysupport.zyxel.com/hc/en-us/articles/360003862540--ZyWALL-USG-How-to-configure-VLANs-on-ZyWALL-USG-appliance
Result: device on LAN2 VLAN with its own zone can not ping/connect to network IP.
If the vlan interface is removed from its own zone and join LAN2 zone, then device can ping/connect to VLAN network IP.
This seems to be a bug.
All Replies
-
Do you have a VLAN switch or a PC tag for the given VLAN?
0 -
This case was resolved by the help from an engineer. Since VLAN default DNS-server is Zywall, policy control needs one extra policy to allow VLAN to Zywall traffic.
0 -
Hi @Sam999
It's great to hear that you have resolved your problem!
If you created and assigned a customized zone for the VLAN interface, you would need to add an extra security policy rule to allow traffic from this VLAN zone to the ZyWALL.
In light of this, we will enhance the FAQ article to provide clearer instructions for configuring a VLAN.
Thank you for bringing this to our attention.
Kay
Engage in the Community, become an MVP, and win exclusive prizes! https://bit.ly/Community_MVP
0
Categories
- All Categories
- 415 Beta Program
- 2.3K Nebula
- 141 Nebula Ideas
- 94 Nebula Status and Incidents
- 5.5K Security
- 216 USG FLEX H Series
- 262 Security Ideas
- 1.4K Switch
- 71 Switch Ideas
- 1K Wireless
- 39 Wireless Ideas
- 6.3K Consumer Product
- 243 Service & License
- 382 News and Release
- 81 Security Advisories
- 27 Education Center
- 8 [Campaign] Zyxel Network Detective
- 3K FAQ
- 34 Documents
- 34 Nebula Monthly Express
- 83 About Community
- 71 Security Highlight