How to build a multi-subnet IPSec tunnel between Flex H and Flex devices?
Among ZLD 4.x and ZLD 5.x it was quite like that.
On both sites, create a VPN gateway for the other endpoint.
On both sites, then create multiple VPN connections for every association between subnets.
For instance
from 192.168.98.0/24 (A1) 192.168.95.0/24 (A2)
to 192.168.198.0/24 (B1) 192.168.95.0/24 (B2)
on site A, from A1 to B1, A1 to B2, A2 to B1, A2 to B2.
on site B, from B1 to A1, B1 to A2, B2 to A1, B2 to A2.
(in this instance every subnet is on a different hardware interface)
However, I cannot achieve the same result this between a ZLD 5.x device and a uOS 1.38 one.
Where I need to look for that? uOS documentation or there's a specific public Howto that I missed?
All Replies
-
hi mMontana
There is a issue Zyxel know of made them know about it and I made a post about (
IKEv1 and IKEv2 many tunnels issues — Zyxel Community
) where IKEv1 Responder Only on the FLEX H can 't have many tunnels support even if you do different Phase 1 encryption or Local ID/Remote ID however IKEv2 works fine
0
Categories
- All Categories
- 442 Beta Program
- 3.1K Nebula
- 241 Nebula Ideas
- 6.8K Security
- 755 USG FLEX H Series
- 380 Security Ideas
- 1.8K Switch
- 87 Switch Ideas
- 1.5K Wireless
- 58 Wireless Ideas
- 7.2K Consumer Product
- 321 Service & License
- 512 News and Release
- 99 Security Advisories
- 31 Education Center
- 10 [Campaign] Zyxel Network Detective
- 5.3K FAQ
- 34 Documents
- 90 About Community
- 119 Security Highlight
Guru Member