[NEBULA] zero touch vpn
Options
FrankIversen
Posts: 92 Ally Member
will zero touch vpn work when the customers have dynamic wan ips?
0
Comments
-
0
-
If your NSG is not behind the NAT, Site-to-Site VPN with dynamic peer is supported by NSG for Nebula-to-Nebula VPN topology now. When NSG public IP is changed, VPN tunnel will disconnected and re-connected automatically. (Because if your NSG is behind the NAT, you need to set NAT-traversal on NCC.)
For Nebula-to-nonNebula VPN topology, if your nonNebula device is set up with a static IP and you can set it as Server Role, and Nebula device which is not behind the NAT run with DHCP, then when NSG public IP is changed, VPN tunnel will also disconnected and re-connected automatically.
0 -
nebua-to-nebula, not behind nat. (the nsg will be the first firewall).
Thanks.0 -
@FrankIversen
You are running on zero touch VPN.
Once NSG public IP is changed, VPN tunnel will disconnected and re-connected automatically.
0
Categories
- All Categories
- 390 Beta Program
- 2.1K Nebula
- 116 Nebula Ideas
- 78 Nebula Status and Incidents
- 5.1K Security
- 51 USG FLEX H Series
- 247 Security Ideas
- 1.3K Switch
- 69 Switch Ideas
- 907 WirelessLAN
- 34 WLAN Ideas
- 5.9K Consumer Product
- 210 Service & License
- 331 News and Release
- 71 Security Advisories
- 21 Education Center
- 5 [Campaign] Zyxel Network Detective
- 1.9K FAQ
- 879 Nebula FAQ
- 414 Security FAQ
- 220 Switch FAQ
- 194 WirelessLAN FAQ
- 46 Consumer Product FAQ
- 137 Service & License FAQ
- 34 Documents
- 34 Nebula Monthly Express
- 72 About Community
- 61 Security Highlight