Zyxel USG 50 and Shrewsoft VPN

Posted on 2014-01-02
Last Modified: 2014-03-04
I have been searching for an answer to this, but so far no luck.

I have a Zyxel USG 50 and I am using Shrewsoft VPN.  I have the tunnel enabled and running, but I cannot get any resources behind the gateway to be available.  

It has to do with the Firewall rules and/or policy routing issue, does anyone have any experience with this?

I have found the info. for getting the tunnel established and it really is pretty straight forward.  I can't find anything about getting access to resources.  The pre-established firewall rules aren't of much help.  I have tried implementing some on my own with no success.

I was hoping the USG 50 would be a good low cost firewall, but now I have my doubts.
Question by:gmanry
Welcome to Experts Exchange

Add your voice to the tech community where 5M+ people just like you are talking about what matters.

  • Help others & share knowledge
  • Earn cash & points
  • Learn & ask questions
  • 2
LVL 40

Accepted Solution

noci earned 500 total points
ID: 39756731
you need a policy route from the network (interface) where the packets come from pointing to the right tunnel...
And the firewall needs to allow the traffic, fro the ultimate source to the ultimate address as the Zywall sees it.

Author Comment

ID: 39757860
Yeah, I have tried what I thought were the right rules for that, but no luck yet.  I will post some screen shots, and maybe we can figure out where I am going wrong.  The Zyxel series is a bit different in how it lays things out, at least it seems that way to me.

It's affordable, so that is why this person bought it.
LVL 40

Expert Comment

ID: 39770101
it is actualy quite usable, it uses a linux kernel and has management layer around it.
So the web & command interface actualy manage iptables.
please present more info...

Featured Post

What does it mean to be "Always On"?

Is your cloud always on? With an Always On cloud you won't have to worry about downtime for maintenance or software application code updates, ensuring that your bottom line isn't affected.

Question has a verified solution.

If you are experiencing a similar issue, please ask a related question

This is the first one of a series of articles I’ll be writing to address technical issues that are always referred to as network problems. The network boundaries have changed, therefore having an understanding of how each piece in the network  puzzl…
I recently attended Cisco Live! in Las Vegas, a conference that boasted over 28,000 techies in attendance, and a week of hands-on learning hosted by a solid partner with which Concerto goes to market.  Every year, Cisco displays cutting-edge technol…
After creating this article (, I decided to make a video (no audio) to show you how to configure the routers and run some trace routes and pings between the 7 sites…
After creating this article (, I decided to make a video (no audio) to show you how to configure the routers and run some trace routes and pings between the 7 sites…
Suggested Courses

630 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question