[Last Call] Learn how to a build a cloud-first strategyRegister Now

x
?
Solved

Zyxel USG100. GS1910 Vlans cannot access wan

Posted on 2013-11-08
1
Medium Priority
?
2,145 Views
Last Modified: 2013-11-14
Iam trying to configure a network that looks like this:

network
My Vlans and static routing seams to work fine, i am able to ping between the VLANs. My problem is, when i try to make a connection to the internet, I get a time out when trying to ping, i am aware that i need to configure some sort of NAT. But cant quite figure out what goes wrong.

I have tried to create a Policy Route, when i apply the policy but there is a unstable pattern in the replies, got a lot of timeouts, then at ones there is connectivity for a while and then it dies again.

Here are screenshots of my configurations on FW1 and SW1

FW1:

Network -> Interface -> VLAN
Network -> Interface -> Port Role
Network -> Routing -> Static Route
Network -> Routing -> Policy Route

SW1:


Configuration -> VLANs -> VLAN Membership
Configuration -> VLANs -> Ports

Any suggestions to what I have to do?
0
Comment
Question by:Rybicki-Ibsen
1 Comment
 
LVL 26

Accepted Solution

by:
Soulja earned 1500 total points
ID: 39633953
On your vlan port configuration, I don't see a port configured as a trunk. The port connecting up to you FW should be set to tag if it's to be a trunk.

- Why do you have static routes when all of your vlan networks are connected routes already? Did you create the static routes?
- Why do you not have a trunk between the switches for vlan 99 and 300. Currently layer 2 traffic on those vlans would have to go up to your firewall to get to the other switch. Not optimal.
-What are you doing policy routing for?
0

Featured Post

Free Tool: ZipGrep

ZipGrep is a utility that can list and search zip (.war, .ear, .jar, etc) archives for text patterns, without the need to extract the archive's contents.

One of a set of tools we're offering as a way to say thank you for being a part of the community.

Question has a verified solution.

If you are experiencing a similar issue, please ask a related question

This article is in regards to the Cisco QSFP-4SFP10G-CU1M cables, which are designed to uplink/downlink 40GB ports to 10GB SFP ports. I recently experienced this and found very little configuration documentation on how these are supposed to be confi…
This article explains the fundamentals of industrial networking which ultimately is the backbone network which is providing communications for process devices like robots and other not so interesting stuff.
Get a first impression of how PRTG looks and learn how it works.   This video is a short introduction to PRTG, as an initial overview or as a quick start for new PRTG users.
NetCrunch network monitor is a highly extensive platform for network monitoring and alert generation. In this video you'll see a live demo of NetCrunch with most notable features explained in a walk-through manner. You'll also get to know the philos…

834 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question