How can we help?
-
zWAN
-
-
-
-
- Firewall & Layer 7 Application Filtering
- VPN Site-to-Site Tunnel Setup & Connectivity (z40 to Cloud vGR)
- Intrusion Prevention System (IPS) / Intrusion Detection System (IDS) Testing
- DNS Filtering
- DDoS Protection & Logging
- MAC Address Filtering & Geo-fencing
- Application Control & Protocol Blocking
- Authentication & Access Control (zID)
-
- WAN Link Failover & Load Balancing (ACI Mode)
- Dynamic Path Selection & Application-Aware Routing
- SaaS & Internet Breakout Validation
- QoS for Microsoft Teams (Datacenter vGR + Branch z40)
- Tunnel Failover (z40 ↔ vGR) — WAN00 (wired) primary, WAN03 (4G) & WAN04 (5G) backups
- IP Routing & Static Route Steering (z40 Branch)
- VLAN & Layer-2 Bridging
-
-
-
-
-
-
- Articles coming soon
-
-
-
- Articles coming soon
-
- Articles coming soon
-
-
-
-
-
-
- Articles coming soon
-
- Articles coming soon
-
- Articles coming soon
-
- Articles coming soon
-
-
- Articles coming soon
-
- Articles coming soon
-
- Articles coming soon
-
- Articles coming soon
-
- Articles coming soon
-
-
-
-
-
- Articles coming soon
-
- Articles coming soon
-
- Articles coming soon
-
- Articles coming soon
-
-
- Articles coming soon
-
- Articles coming soon
-
- Articles coming soon
-
- Articles coming soon
-
- Articles coming soon
-
-
-
-
-
- Articles coming soon
-
- Articles coming soon
-
- Articles coming soon
-
- Articles coming soon
-
-
- Articles coming soon
-
- Articles coming soon
-
- Articles coming soon
-
- Articles coming soon
-
- Articles coming soon
-
-
- Articles coming soon
-
- IPsec Tunnel not Establishing
- SSL-VPN Tunnel not Establishing
- Mobile Network Issues
- Management Tunnel does not Establish
- DNS not Resolving from Local Network Appliance
- DNS Resolution Issues in Tunnel Configuration
- DHCP Server not Leasing IP to LAN PC
- Debugging EC Events - Unknown Status Issue
- Trusted-MAC Geofencing Issues
- DNS Issues from DC LAN PC
- Troubleshooting LAN Connectivity to Internet via WAN, Remote Branch LAN, or Local Branch LAN
- NetBalancer gateways displaying Faulty/Inactive
- Packet Drop Issues
-
-
zTC
-
-
-
-
-
- Citrix HDX + USB Headset (Call-Center Baseline)
- VMware Horizon + Smart Card / CAC Login
- Microsoft AVD/RDP + Teams Optimized Video
- Multi-Monitor & 4K Performance
- USB Device Management - Block Storage
- Printing to Local USB & Network Printers
- Barcode Scanner (HID) with Line-of-Business App
- Kiosk / Assigned-Access Auto-Launch
- Wi-Fi Roaming & Link Change Mid-Session
- Power Management and Session State
- OS/Firmware Update & Rollback
-
-
StorTrends
-
zAccess
-
zGuardian
You are here:
Print
VPN Site-to-Site Tunnel Setup & Connectivity (z40 to Cloud vGR)
0 out Of 5 Stars
| 5 Stars | 0% | |
| 4 Stars | 0% | |
| 3 Stars | 0% | |
| 2 Stars | 0% | |
| 1 Stars | 0% |
Objective
Verify that the z40 Gateway Router establishes stable VPN tunnels to the cloud-hosted vGR concentrator and correctly routes WAN traffic through these tunnels, as monitored via the zWAN Director.
Prerequisites
- Single z40 device provisioned, connected to the internet, and onboarded to the cloud-hosted zWAN Director.
- Cloud-hosted vGR concentrator configured and active within the same tenant on the Director.
- Admin access to zWAN Director UI.
- Windows test client(s) connected to the z40 LAN subnet (wired LAN00 or Wi-Fi LAN05).
Test Steps
- Login to zWAN Director UI
- Access the Director UI via web browser with valid admin credentials.
- Navigate to Tunnels Page
- Use the sidebar to navigate:
Edge Controllers > [Select your z40 device] > Network > Tunnels. - The page displays all configured tunnels with statuses.
- Verify Tunnel Status
- Confirm each tunnel shows status “ESTABLISHED” with a green indicator.
- Review tunnel details: Local IP, Remote IP, Subnet, MTU, Tunnel ID.
- View Tunnel Traffic Statistics
- Click the Statistics icon (bar chart icon) for the tunnel you want to monitor.
- This redirects to the Analytics > Statistics page, filtered for the selected tunnel.
- Analyze Traffic Statistics
- On the Interfaces tab, observe:
- Transmitted and Received Data Transfer Rates (bytes/sec).
- Transmitted and Received Packets per second.
- Transmitted and Received Errors.
- Total data and packet counts.
- Confirm that traffic counters increase appropriately when generating WAN traffic from LAN clients.
- Review Logs and Events
- Navigate to the Logs and Events tab under Analytics > Statistics.
- Review logs for tunnel-related events such as faults, recoveries, or status changes.
- Confirm no frequent tunnel down or error events.
- Generate WAN Traffic from LAN Client
- From a Windows client on the z40 LAN (wired or Wi-Fi), generate traffic destined for WAN/cloud resources (e.g., ping external IP, access cloud app).
- Observe corresponding increases in traffic statistics for the tunnel interface.
- (Optional) Test WAN Failover
- Disconnect primary WAN link (if multi-WAN configured).
- Confirm tunnels remain established via secondary WAN links (if applicable).
- Validate continued traffic flow through tunnels.
Validation Criteria
- VPN tunnels display stable ESTABLISHED status with green indicators.
- Traffic statistics reflect active traffic through tunnels when WAN-bound traffic is generated.
- Logs show no recurring tunnel faults or disruptions during testing.
- Tunnels automatically recover from transient WAN failures without manual intervention.
- LAN traffic remains local and unaffected by tunnel tests.
Notes
- Tunnels are pre-configured and automatically established for POC customers; no manual tunnel setup required.
- Use Director’s tunnel monitoring and logs for health and troubleshooting.
- Ensure Windows Firewall or endpoint protections do not block test traffic.
Was this article helpful?
0 out Of 5 Stars
| 5 Stars | 0% | |
| 4 Stars | 0% | |
| 3 Stars | 0% | |
| 2 Stars | 0% | |
| 1 Stars | 0% |
5
Table of Contents