Connection losses between ZyWALL310 and USG20W-VPN
Hi dear,
i'm writting you a topic because i've a problem, connection losses, randomly my IPSec connection between the datacenter (ZyWALL310) and the customer (USG20W-VPN) is lost.
I receive from the ZyWALL310 an alert message, connectivity-check, the link status of the tunnel VPN is inactive. We have some microswitch-off on the customer side (USG20W-VPN), the tunnel is still open / connected but not working really. Do you know if is it possible to setup something different to decrease the sensibility about disconnect ?
Do you have an idea ?
thanks a lot.
i'm writting you a topic because i've a problem, connection losses, randomly my IPSec connection between the datacenter (ZyWALL310) and the customer (USG20W-VPN) is lost.
I receive from the ZyWALL310 an alert message, connectivity-check, the link status of the tunnel VPN is inactive. We have some microswitch-off on the customer side (USG20W-VPN), the tunnel is still open / connected but not working really. Do you know if is it possible to setup something different to decrease the sensibility about disconnect ?
Do you have an idea ?
thanks a lot.
0
All Replies
-
Hi @steve15f
Welcome to Zyxel community.
You can try to enable both site VPN phase 1 DPD, and confirm that if the “nail-up” is ticked on VPN phase 2.
0 -
HI @Zyxel_Cooldia
thanks and thanks for your reply.
i've enabled both site VPN DPD, and i've enabled the "nail-up" on the customer VPN site where there are the microswitch-off. Before, the "nail-up" was enabled on the Datacenter VPN site (no microswitch-off)
what do you think ? thanks0 -
Hi @steve15f
As you mentioned in first post, the VPN tunnel disconnect issue may coming from connectivity-check function.
What’s the IP address is configured in connectivity-check on ZyWALL310?
Will this IP address reply the ping request?
Can you take screen shot of your VPN setting on ZyWALL310 and VPN20W-VPN?
0 -
Hi,
Thanks for your reply.
You can find attached the config of the USG20W-VPN and the ZyWALL 310. VPN Connection setup.
Do you need some info about the config of the VPN Gateway ?
The ZyWALL 310 (Datacenter side) make a check with the address of the USG20W-VPN (192.168.1.1) on the customer side.
The USG20W-VPN (Customer side) make a check with the adress of an Microsoft WIndows Server (192.168.105.10) on the datacenter side.
thanks a lot0 -
Hi @steve15f
It looks your connectivity check setting is correct, but still not sure what caused the disconnect issue.
I will send you private message for check this issue much details.
0 -
Thanks a lot0
Categories
- All Categories
- 415 Beta Program
- 2.4K Nebula
- 145 Nebula Ideas
- 96 Nebula Status and Incidents
- 5.6K Security
- 240 USG FLEX H Series
- 268 Security Ideas
- 1.4K Switch
- 71 Switch Ideas
- 1.1K Wireless
- 40 Wireless Ideas
- 6.3K Consumer Product
- 247 Service & License
- 386 News and Release
- 83 Security Advisories
- 28 Education Center
- 9 [Campaign] Zyxel Network Detective
- 3.2K FAQ
- 34 Documents
- 34 Nebula Monthly Express
- 83 About Community
- 72 Security Highlight