Connection losses between ZyWALL310 and USG20W-VPN
Options
Hi dear,
i'm writting you a topic because i've a problem, connection losses, randomly my IPSec connection between the datacenter (ZyWALL310) and the customer (USG20W-VPN) is lost.
I receive from the ZyWALL310 an alert message, connectivity-check, the link status of the tunnel VPN is inactive. We have some microswitch-off on the customer side (USG20W-VPN), the tunnel is still open / connected but not working really. Do you know if is it possible to setup something different to decrease the sensibility about disconnect ?
Do you have an idea ?
thanks a lot.
i'm writting you a topic because i've a problem, connection losses, randomly my IPSec connection between the datacenter (ZyWALL310) and the customer (USG20W-VPN) is lost.
I receive from the ZyWALL310 an alert message, connectivity-check, the link status of the tunnel VPN is inactive. We have some microswitch-off on the customer side (USG20W-VPN), the tunnel is still open / connected but not working really. Do you know if is it possible to setup something different to decrease the sensibility about disconnect ?
Do you have an idea ?
thanks a lot.
0
All Replies
-
Hi @steve15f
Welcome to Zyxel community.
You can try to enable both site VPN phase 1 DPD, and confirm that if the “nail-up” is ticked on VPN phase 2.
0 -
HI @Zyxel_Cooldia
thanks and thanks for your reply.
i've enabled both site VPN DPD, and i've enabled the "nail-up" on the customer VPN site where there are the microswitch-off. Before, the "nail-up" was enabled on the Datacenter VPN site (no microswitch-off)
what do you think ? thanks0 -
Hi @steve15f
As you mentioned in first post, the VPN tunnel disconnect issue may coming from connectivity-check function.
What’s the IP address is configured in connectivity-check on ZyWALL310?
Will this IP address reply the ping request?
Can you take screen shot of your VPN setting on ZyWALL310 and VPN20W-VPN?
0 -
Hi,
Thanks for your reply.
You can find attached the config of the USG20W-VPN and the ZyWALL 310. VPN Connection setup.
Do you need some info about the config of the VPN Gateway ?
The ZyWALL 310 (Datacenter side) make a check with the address of the USG20W-VPN (192.168.1.1) on the customer side.
The USG20W-VPN (Customer side) make a check with the adress of an Microsoft WIndows Server (192.168.105.10) on the datacenter side.
thanks a lot0 -
Hi @steve15f
It looks your connectivity check setting is correct, but still not sure what caused the disconnect issue.
I will send you private message for check this issue much details.
0 -
Thanks a lot0
Categories
- All Categories
- 397 Beta Program
- 2.1K Nebula
- 117 Nebula Ideas
- 81 Nebula Status and Incidents
- 5.1K Security
- 87 USG FLEX H Series
- 247 Security Ideas
- 1.3K Switch
- 69 Switch Ideas
- 916 WirelessLAN
- 34 WLAN Ideas
- 5.9K Consumer Product
- 211 Service & License
- 337 News and Release
- 71 Security Advisories
- 21 Education Center
- 5 [Campaign] Zyxel Network Detective
- 2K FAQ
- 912 Nebula FAQ
- 419 Security FAQ
- 237 Switch FAQ
- 207 WirelessLAN FAQ
- 46 Consumer Product FAQ
- 139 Service & License FAQ
- 34 Documents
- 34 Nebula Monthly Express
- 72 About Community
- 62 Security Highlight