Solved

Zyxel USG100. GS1910 Vlans cannot access wan

Posted on 2013-11-08
1
2,084 Views
Last Modified: 2013-11-14
Iam trying to configure a network that looks like this:

network
My Vlans and static routing seams to work fine, i am able to ping between the VLANs. My problem is, when i try to make a connection to the internet, I get a time out when trying to ping, i am aware that i need to configure some sort of NAT. But cant quite figure out what goes wrong.

I have tried to create a Policy Route, when i apply the policy but there is a unstable pattern in the replies, got a lot of timeouts, then at ones there is connectivity for a while and then it dies again.

Here are screenshots of my configurations on FW1 and SW1

FW1:

Network -> Interface -> VLAN
Network -> Interface -> Port Role
Network -> Routing -> Static Route
Network -> Routing -> Policy Route

SW1:


Configuration -> VLANs -> VLAN Membership
Configuration -> VLANs -> Ports

Any suggestions to what I have to do?
0
Comment
Question by:Rybicki-Ibsen
1 Comment
 
LVL 26

Accepted Solution

by:
Soulja earned 500 total points
ID: 39633953
On your vlan port configuration, I don't see a port configured as a trunk. The port connecting up to you FW should be set to tag if it's to be a trunk.

- Why do you have static routes when all of your vlan networks are connected routes already? Did you create the static routes?
- Why do you not have a trunk between the switches for vlan 99 and 300. Currently layer 2 traffic on those vlans would have to go up to your firewall to get to the other switch. Not optimal.
-What are you doing policy routing for?
0

Featured Post

Netscaler Common Configuration How To guides

If you use NetScaler you will want to see these guides. The NetScaler How To Guides show administrators how to get NetScaler up and configured by providing instructions for common scenarios and some not so common ones.

Question has a verified solution.

If you are experiencing a similar issue, please ask a related question

ADCs have gained traction within the last decade, largely due to increased demand for legacy load balancing appliances to handle more advanced application delivery requirements and improve application performance.
This article will inform Clients about common and important expectations from the freelancers (Experts) who are looking at your Gig.
Viewers will learn how to connect to a wireless network using the network security key. They will also learn how to access the IP address and DNS server for connections that must be done manually. After setting up a router, find the network security…
Here's a very brief overview of the methods PRTG Network Monitor (https://www.paessler.com/prtg) offers for monitoring bandwidth, to help you decide which methods you´d like to investigate in more detail.  The methods are covered in more detail in o…

803 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question