Comments
-
Go to NAT and change outgoing-interface to None on Source Network Address Translation field
-
Since the backup device is behind USG60W, if you want to remote access is backup device, NAT rule need to be created. Select Virtual server, Incoming interface: wan1, External IP:(wan1 IP),Interface IP: Backup device IP, press ok. Another thing to see it is firewall block ssh traffic or not, try to disable firewall and…
-
Currently iOS supports the following proposals: In phase 1: AES256+SHA256, Key Group=DH14 In phase 2: AES256+SHA254, PFS=none the document as your reference. http://www.zyxel-tech.de/files/New-Gen_USG_IKEv2_iPhone.pdf
-
You may check the this thread from Biz forum. https://businessforum.zyxel.com/discussion/comment/1480#Comment_1480
-
The log should show remote user's Wan IP to Zywall5's Wan IP not Lan IP. Could you show me the screenshot of this case for checking. I think you need to hide part of IP information for security reason:)
-
It seems you need the VPN to make two device can communicate with each other. Here is the example: https://businessforum.zyxel.com/discussion/551/an-example-of-site-to-site-vpn#latest
-
The documents I got from Zyxel support as your reference.
-
As your scenario, It seems the SBG3500 does not support triple play services......
-
As the log message, I just curious that do you establish the L2TP VPN connection or IPsec VPN connection? On USG's log, it appear "[Default_L2TP_VPN_Connection] Phase 1 proposal mismatch" On NCP's log, 06.01.2018 19:45:35 - IPSec: Disconnected from XXX on channel 1.
-
Do you mean you want to do failover between SBG3500( FTTC service) and virgin router(Virgin Media Fibre)?If so , I think SBG cannot do that.
-
For mail log setting, you can check this similar case for your reference. https://kb.zyxel.com/KB/searchArticle!viewDetail.action?articleOid=014126&lang=EN
-
If you can provide a topology of your network, is help to understand the possible issue. Client can ping but cannot browse the websites, It seems there is an issue on DNS setting. Add this DNS rule and try it again.
-
Is the Site 2 behind router? If so, the site 2 should be mapped by public IP.
-
What firmware version are you using? Had you use other windows PC to check it before? Since PC also can ping google.com, it seems not DNS issue.
-
1. It depends on which interface you want to do connectivity check with specific peer. 2.If you configure Connectivity Check of VPN are more aggressive, the failover function of VPN will be sensitive. I think default is suitable of VPN scenario. 3. You should set Egress Bandwidth on each interface, if you would like to…