Comments
-
Hello Zyxel_Emily That's great. So easy. Thank You very much. Dejmal69
-
Thank You very much. I test this config.- NAT to NAS internal IP- On both sites is the same subnet.- VPN SNAT over fake subnet and DNAT fake subnet mapped to original local subnet. - Policy route source lan1 interface, dest remote subnet, nexthop vpn to SBG. KB Zyxel states that VPN SNAT allows you to use the same subnets…
-
Hello, Thanks for Your support. In WK24 fw is fixed this issue.
-
Hello, Set SNAT outgoing interface.
-
Hi2.11(AQQ.0) is very old firmware. Now there is a new version of the MyZyxel portal and in such an old FW there is a link to the old portal. Here download a latest FW ftp://ftp.zyxel.com/ZYWALL_USG_100/firmware/
-
Hello, Thank You very much.
-
Hello, Thank You. I also contacted Zyxel official support. We had a TV session and the problem could not be solved. It seems like a bug.
-
For this is necesary policy route provide. Source your vpn destination any nexthop your Wan or trunk if you have wan failover.
-
Here are screenshots. Two users on two devices. Each in a different group Policy control. Only group radadmini is alowed. log. both devices are allowed by the same rule. That's a problem. It is necessary to restrict according to the rules of the user group. Otherwise, authentication does not make sense.Am I making a…
-
I have two groups. eg. host and home. I will set a lan to wan policy where the homegroup is set. I authenticate two devices. One home, one guest. But both have connections.The rule allows users from another group.When I'm there, I'll prepare screenshots.
-
Thank You for answer. I have the same setting. Authentication is ok, but group is ignored in firewall rules.
-
Hello, policies are internal subnets of USGs. Local is local USG LAN, remote policy is LAN remote USG. Google network box subnet is not use in VPN settings.
-
Hello, How much subnets is on each sites? If is 1+1 setup the one site to site VPN with dynamic peer. Subnets are each other visible. see: https://kb.zyxel.com/KB/searchArticle!gwsViewDetail.action?articleOid=015559&lang=EN If is 2, setup the VTI…
-
Hello, If is an one site public address on usg wan, setting is the same. Use setting site to site between two public wan as Gateways. Nailed up option enable on site behind the google router, or on both.