E-LAB Experience Lab Site 4 - SMB Standalone Topology with ATP Security, Access Switch & WiFi 6/6E

The diagram below illustrates the structure of Site 4, detailing the interconnections between each device to form a cohesive network. In this setup, Site 4, along with its firewall, functions as the Core Firewall, serving as the central hub to which all other sites are connected. This visual representation clarifies the relationships and configurations among the various devices, offering a comprehensive overview of the entire lab environment.

Feedback: If you encounter any difficulties accessing devices in the E-Lab or have any suggestions or recommendations, please feel free to contact us via email at zylab@zyxel.eu. We will carefully review your message and consider it, implementing suggestions where feasible.

In the tables below, you can find the devices included in Site 1 and the specific configurations on each device, whether it pertains to an individual function, technology, or the entire configuration.

Note:  Each site allows access to the web interface of all devices featured on the site. Access credentials are in the table under the section "Access Credentials."

Note:  Each site's device list may also include additional devices that do not take part in any particular configuration. These devices are included solely to provide access to the web interface for evaluation purposes. For example, the device list on this site includes the NBG7510.

Devices (Click on the device to go to the web interface

Model Type Mode/Site Username/Password
ATP 700 Firewall Premise/Site4 demouser/ZyxelDemo
GS2220-28HP Switch Premise/Site4 demouser/ZyxelDemo
NWA50BE Switch Premise/Site4 demouser/ZyxelDemo
NWA220AX-6E AP Premise/Site4 demouser/ZyxelDemo
WBE660S AP Premise/Site4 demouser/ZyxelDemo
WBE530 AP Premise/Site4 demouser/ZyxelDemo

* - coming soon

Configurations, Technologies, Services

Device Configurations / Technologies / Services  
Firewall HTTPS Access, VPN, VLAN, NAT 1:1, Virtual Server (Port Forwarding), Geo IP, ADP, AP profile, Mail Server. This description will be updated as configurations are added.  
Switch Access to the web interface is allowed. This description will be updated as configurations are added.  
AP Access to the web interface is allowed. This description will be updated as configurations are added.  

IKEv2 IPSec VPN

Instructions on how to set up a VPN are in the article at the link IKEv2 IPSec VPN, and all the necessary access credentials are in the table below.

Windows Script Download the script  
MacOS & iOS Script Download the script *Restraints
Android - StronSWan Client  Download the script  
VPN User:  demo-vpn  
VPN Password:  1234qwer  
Data for configuring the VPN manually on your device
Type: IKEv2  
Server: 93.159.250.211  
Remote ID: 93.159.250.211 Optional
VPN User:  demo-vpn  
VPN Password:  1234qwer  

*Restraints: Users on iOS 18 or later and Mac OS 14 Sonoma Cannot use the script and need to configure it manually.  This is due to Apple's increased security requirements for IKEv2 VPN encryption. To solve this problem, you must make Key Group and Proposal changes to the Phase 1 Settings and Phase 2 Settings of the previously created VPN connection using Quick Setup (Wizzard). 

Disclaimer!  This article offers a general overview of the series and may not apply uniformly to every model, software/firmware version. Before purchasing or using the device, please consult the model/version-specific documentation or contact technical support for accurate information.

Articles in this section

Was this article helpful?
0 out of 0 found this helpful
Share

Comments

0 comments

Please sign in to leave a comment.