-
10G SFP+ link flapping between Zyxel XS1930-10 and MikroTik CSS610-8G-2S+IN — MM SR unstable but 1G
Hi I have a question on transceiver, which I bought from a OEM compatible supplier, https://www.fibermanialink.com/product/10g-xfp-transceiver-10gbase-lr-20km-sm-1310nm/ I’m facing a strange issue when trying to establish a stable 10G link between a Zyxel XS1930-10 and a MikroTik CSS610-8G-2S+IN using SFP+ ports. Setup:…
-
USG FLEX H - LAG Interface edit Transmit Hash Policy issue
Hi, editing "Transmit Hash Policy", changing from src-dst-ip-mac to src-dst-mac and viceversa, made the firewall unresponsive. I had another interface for configuring USG FLEX 200 H via Ethernet, so it wasn't the same LAG interface I was editing. HTTP access works, but I cannot use any command since it logs me out…
-
NAS326 unresponsive after update and reset
Hello there, some weeks ago I've updated my NAS326 to last available firmware (5.21(AAZF.18)C0). Until then it was working without issues for years. After update, I lost access to login page: ping works but anything else was not available anymore. Luckily, I had data backup on another NAS, so I tried to factory reset this…
-
Nebula 20.00 - How could I block multple VLANs combinations via firewall?
Hello everyone, inside an ORG I have 4 VLANs in this moment. It is essential that all of them DO NOT connect to VLAN1 and to ZyWALL. For this reason I went here: So I told the firewall to block these segments: As you can see I miss to deny VLAN20 to VLAN50, VLAN20 to VLAN30, VLAN20 to VLAN60 and so on for the rest. The…
-
USG FLEX 200H: LAG LACP Interface Issue
Hi, in my scenario I have a stack of two XGS3700-48HP, firmware V4.30(AAGF.3),and a LAG of two ports on which I've connected public network. I had ATP500 Firewall connected on that LAG with the external interface and it worked fine for years since I've changed with USG FLEX 200 H, firmware V1.38(ABWV.0). Both LAGs where…
-
Lost UDP natting after 1.38 upgrade on Flex 700H
Hello, I have a couple of Flex 700H upgaded from 1.36 to 1.38, with multiple public IP addresses on each of them. I natted some services managed by appliances connected on the DMZ, among them a SSL VPN working with both TCP and UDP connections on port 443 on one of the public IPs. Since the upgrade, tunnels using UDP…
-
The Block QUIC Protocol bug
FLEX H V1.38(ABZI.0) and V1.38(ABZI.0)ITS-26WK16-m11228 So this option was a pain to know about due to it somewhat working and well really not working you can find this option in system > advanced So here the problem for what tests I have done and think bug is. So lets say Block QUIC Protocol is enabled and the LAN is…
-
USG FLEX H - Zone member issue
Hi, I noticed that if I have an Interface and an IPSec VPN with the same name, configuring Zone members has some issues: When you check one object, it checks both. When you add both, save, and go back to the configuration, they are doubbed and again, when you select one of they, all 4 will be selected Thank you for…
-
USG FLEX H - Session monitor - "No data"
Hi, I noticed that when I enter Traffic Statistics - Session Monitor, and select "View: sessions by source IP" for example, I get the list of session grouped by source IP and the counter in the last column. If I click the counter, I get always "No data" as response. Javascript console reports Firmware 1.38. Thank you for…
-
Why was the SSL VPN client not receiving DNS IP on USG FLEX H device?
Question: Why was the SSL VPN client not receiving DNS IP on USG FLEX H device? Answer: The issue occurred when the DNS was set to “ZyWALL” or certain other combinations in the global DNS setup for SSL VPN. This configuration caused the SSL VPN client (e.g., OpenVPN or SecuExtender) to miss custom DNS settings. This…