Comments
-
So, this is working now. What did I do you may ask? Nothing! I built out the IPSec VPN connections in each firewall and it did not work. I posted here. I went in this AM, deleted my two IPSec VPN connections (one out of each firewall) and then added them back. It's working as expected now.
-
Thank you James. I do believe I understand the article. What I would like clarity on is I have TWO IPSec VPN tunnels in the 1100. The first tunnel I set up is working as expected. Traffic is flowing and pings are passing. When I set up the second tunnel, I cannot ping across it. My trace route shows my pings first hop as…
-
Posted reply in error
-
Called Zyxel support. in three mins it was fixed. He set PFS to none on Phase 2. Literally EVERY support doc says to set it to DH2! Face palm
-
sent to cooldia already
-
Honestly, my tech and I have compared Phase 1 and Phase 2 settings at least ten times in a side by side screening. WE know them by heart now.
-
That was it! Missing a WAN to LAN policy.
-
I added the WAN to LAN1 policy and it's working. Thank you.
-
SSLVPN is already set to 9443 and I do have a policy set to allow https traffic on the public IP directed to the web server.
-
This angers me. Thanks though. I figured as much.