This discussion has been locked.
You can no longer post new replies to this discussion. If you have a question you can start a new discussion

Options for the XG acting as a VPN client behind a CG-NAT?

I need to deploy an XG at the new site with a VPN tunnel back to the client's head office, but the remote site does not have a static (or even it's own public) IP address. Traffic goes through a NAT pool at the ISP. With the SG you could configure an interface as a RED client, but I don't see that option in the XG. IS there an option to run the XG as an IPSec client?

I know I can create an IPSec VPN and just set the remote gateway to * instead of defining the IP address, but this is clumsy.



This thread was automatically locked due to age.

Top Replies

  • FormerMember
    FormerMember +1 suggested

    Hi Jeremy Parr,

    Thank you for reaching out to the Community! 

    Go to Network > Interfaces > Add interfaces > Add RED > Select the type from the drop-down menu(Firewall RED Server/Client) as required and follow the steps from the following KBA: 

    Note: "Any upstream NAT may interfere with incoming connections, so it’s best to have the non-NATed device act as a server." Also, ensure the RED service is turned on from System Services > RED. 

    Thanks,

    Jump to answer
Parents Reply Children
No Data