NETGEAR is aware of a growing number of phone and online scams. To learn how to stay safe click here.
Forum Discussion
PietroB66
Jul 19, 2018Aspirant
WAN down when VPN start
Hi,
i have problem with my firewall ( FVS318G v2 )
When a vpn connection is established, the internet connection via the wan no longer works and all connected PCs stop accessing the internet. If ...
DaneA
Jul 22, 2018NETGEAR Employee Retired
Hi PietroB66,
Welcome to the community! :)
Let us isolate the problem. Kindly answer the questions below:
a. What NETGEAR VPN Client software are you using? Is it the NETGEAR VPN Client Professional software or the NETGEAR VPN Client Lite software?
b. What is the current version of the NETGEAR VPN Client software you are using?
c. What is the Operating System of the PC where the NETGEAR VPN Client software is installed?
d. What is the LAN IP address range of the PC where the NETGEAR VPN Client software is installed?
e. What is the current firmware version of both FVS318Gv2 and FVS338?
f. What is the IP address range on the LAN side of the FVS318Gv2 and FVS338?
For the Client-to-Box VPN, I suggest you to delete the existing VPN policies then recreate it using the VPN Wizard. As reference guide, access the article below:
ProSAFE VPN Client: Client to Box Configuration
For the Box-to-Box VPN, I suggest you to delete the existing VPN/IKE policies then recreate it using the VPN Wizard. As reference guide, access the article below:
Configuring a Box to Box VPN on ProSAFE/ProSECURE routers using the VPN Wizard
Notes:
- The IP address range of the LAN side of the FVS318Gv2 should be different from the LAN IP address of the PC where the VPN Client software is installed. For example: if the IP address range of the LAN side of the FVS318Gv2 is 192.168.1.x (x is any number from 1 to 254), then the LAN IP address of the PC where the VPN Client software is installed should be 10.10.10.x (x is any number from 1 to 254).
- The IP address range of the LAN side of the FVS318Gv2 should be different from the IP address range of the LAN side of the FVS338. For example: if the IP address range of the LAN side of the FVS318Gv2 is 192.168.1.x (x is any number from 1 to 254), then the LAN IP address of the FVS338 should be 172.16.1.x (x is any number from 1 to 254).
- Make sure that the Public WAN IP address is registered to the WAN port of the FVS318Gv2 and FVS338.
- If ever the modem connected to the WAN ports of the FVS318Gv2 & FVS338 is a modem-router combination, I recommend you to configure the modem to full-bridge mode. In this way, the Public WAN IP address is registered to the WAN port of the FVS318Gv2 and FVS338.
Regards,
DaneA
NETGEAR Community Team
DaneA
Jul 31, 2018NETGEAR Employee Retired
Have you tried to my suggestion from my last response to you to delete the existing VPN/IKE policies then recreate it using the VPN Wizard? Also, did you access and read the articles I shared and used it as your guide?
In addition, I suggest you to update the firmware of the FVS318Gv2 to the latest version which is v4.3.5-3. You can download it here. Be sure to factory reset the FVS318Gv2 after upgrading the firmware then reconfigure the settings from scratch in order to start clean using the latest firmware version. Then, try to set up client-to-box as well as box-to-box VPN using the VPN Wizard. Refer to the articles I posted.
Regards,
DaneA
NETGEAR Community Team
Related Content
NETGEAR Academy
Boost your skills with the Netgear Academy - Get trained, certified and stay ahead with the latest Netgear technology!
Join Us!