Solved

Zyxel USG100. GS1910 Vlans cannot access wan

Posted on 2013-11-08
1
2,112 Views
Last Modified: 2013-11-14
Iam trying to configure a network that looks like this:

network
My Vlans and static routing seams to work fine, i am able to ping between the VLANs. My problem is, when i try to make a connection to the internet, I get a time out when trying to ping, i am aware that i need to configure some sort of NAT. But cant quite figure out what goes wrong.

I have tried to create a Policy Route, when i apply the policy but there is a unstable pattern in the replies, got a lot of timeouts, then at ones there is connectivity for a while and then it dies again.

Here are screenshots of my configurations on FW1 and SW1

FW1:

Network -> Interface -> VLAN
Network -> Interface -> Port Role
Network -> Routing -> Static Route
Network -> Routing -> Policy Route

SW1:


Configuration -> VLANs -> VLAN Membership
Configuration -> VLANs -> Ports

Any suggestions to what I have to do?
0
Comment
Question by:Rybicki-Ibsen
[X]
Welcome to Experts Exchange

Add your voice to the tech community where 5M+ people just like you are talking about what matters.

  • Help others & share knowledge
  • Earn cash & points
  • Learn & ask questions
1 Comment
 
LVL 26

Accepted Solution

by:
Soulja earned 500 total points
ID: 39633953
On your vlan port configuration, I don't see a port configured as a trunk. The port connecting up to you FW should be set to tag if it's to be a trunk.

- Why do you have static routes when all of your vlan networks are connected routes already? Did you create the static routes?
- Why do you not have a trunk between the switches for vlan 99 and 300. Currently layer 2 traffic on those vlans would have to go up to your firewall to get to the other switch. Not optimal.
-What are you doing policy routing for?
0

Featured Post

On Demand Webinar: Networking for the Cloud Era

Ready to improve network connectivity? Watch this webinar to learn how SD-WANs and a one-click instant connect tool can boost provisions, deployment, and management of your cloud connection.

Question has a verified solution.

If you are experiencing a similar issue, please ask a related question

How to set-up an On Demand, IPSec, Site to SIte, VPN from a Draytek Vigor Router to a Cyberoam UTM Appliance. A concise guide to the settings required on both devices
This article will inform Clients about common and important expectations from the freelancers (Experts) who are looking at your Gig.
Get a first impression of how PRTG looks and learn how it works.   This video is a short introduction to PRTG, as an initial overview or as a quick start for new PRTG users.
This video gives you a great overview about bandwidth monitoring with SNMP and WMI with our network monitoring solution PRTG Network Monitor (https://www.paessler.com/prtg). If you're looking for how to monitor bandwidth using netflow or packet s…

696 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question