USG FLEX 500 and Two SUBNET Interface

Smartmob
Smartmob Posts: 7  Freshman Member
First Comment Friend Collector

I have a zyxel USG FLEX 500 firewall with lan1 interface (192.168.0.230 - DHCP managed by Active Directory) lan2 interface (192.168.33.230 - DHCP Disabled).
Any machine I set in the second subnet can only communicate with the firewall and has no internet.
What configuration did I forget?

All Replies

  • PeterUK
    PeterUK Posts: 3,506  Guru Member
    100 Answers 2500 Comments Friend Collector Seventh Anniversary
    edited January 14

    If your setting up a device with static IP on LAN2 for it to get to the internet you need to set the gateway and DNS both can be to the LAN2 interface gateway.

    If ping to 1.1.1.1 works but not DNS you need to have a firewall rule from LAN2 to zywall or if DNS works but timeout to 1.1.1.1 you need from LAN2 to WAN

  • Smartmob
    Smartmob Posts: 7  Freshman Member
    First Comment Friend Collector

    If I set the network card like this:

    I have no network or internet, I do not understand what it is that can block.

    I also tried setting a routing but no luck

  • PeterUK
    PeterUK Posts: 3,506  Guru Member
    100 Answers 2500 Comments Friend Collector Seventh Anniversary
    edited 12:50PM

    Is "Enable IP/MAC Binding and DHCP Enforcement" checked for LAN2?

  • PeterUK
    PeterUK Posts: 3,506  Guru Member
    100 Answers 2500 Comments Friend Collector Seventh Anniversary
    edited 6:15PM

    make routeing rule

    incoming LAN2

    next hop WAN

    check your on the right port and zone is set to LAN2