Best Of
USG Flex 500H HA mode firmware upgrade with MFA
Hello,
We have two 500H in HA mode and we would upgrade the firmware. We are trying to follow these instrutions from the manual:
Firmware Upgrade on Paired Zyxel Devices
1First, upgrade the firmware to the passive device.
2After upgrade, the passive device becomes the active device and handles all traffic during the firmware upgrade.
3Firmware is then upgraded to the passive primary device.
4After the firmware upgrade is complete on both Zyxel Devices, the primary device becomes the active device again.
We have activated MFA for admin user.
From the LAN of primary device we can reach the secondary passive device using the HA management IP but when the device requests the MFA code, this message is displayed
So, the question is: How we can upgrade the firmware of the passive device?
Thankyou

Re: no link in P1 port, in Flex200H device
Just to clarify, do you mean that the PPPoE session is not establishing, or is the physical connection not coming up?
does the port LED blink?
Re: Direct Support ticketing function travels through Organizations
Hello @Zyxel_Melen
thanks a lot for your notification, if needed I'll update you about that issue in the future.
Have a nice day
Re: NWA55AXE débit internet limité à 90 MB/S !
Bonjour, merci pour les conseils, j'ai effectivement effectué d'autres test avec un pc en wifi 6, j'ai également découvert que mon téléphone Samsung s21 ultra a un problème de WiFi, après redémarrage, j'ai enfin des vitesses de connexion de plus de 800 mb/s !

Re: IPSec sessions on the firewall not terminated after a while of being idle?
If you set Phase 2 SA life time low that might also drop the session?

Re: Flex 500 H - import DHCP list
Hello @kaktusus,
So far, we do not have a converter tool to convert from USG FLEX 200 to USG FLEX 500H.
I'd like to check with you for more information about your request.
Please check your PM box.
Thanks.
Ivan
Re: Flex 500 H - import DHCP list
You cannot upload a configuration file named startup-config.conf, please adjust the configuration file name and upload again, then apply it afterwards.
Re: Migrating from USG210 to FLEX500H
Due to the differences in port quantity and other related specifications, the Configuration Converter is only capable of converting configurations from same level of Firewalls, which means it only convert configuration from the USG FLEX 200 to the USG FLEX 200H, not USG FLEX 500H.
Re: NebulaFlex Switch GS1920 Series - V5.00 Patch 0 Firmware Release
No not really, we normally use local date/time only for both logs and files on the site I'm working now. For us it is not really necessary to have "DST" in the date string.
But, other sites that operate more globally, UTC is usually the standard for logs and files, so the whole (UTC +xx.xx DST) string can be omitted.
So here are some suggestions that might be interesting to look at:
- tickbox for individual objects like file-names, config-files to use local date/time or UTC only.
- tickbox for individual objects like file-names, config-files if the DST flag has to be mentioned or not.
- tickbox to omit the time offset string.
- Option to use the local Time standard abbreviation (CET, CEST in W-Europe for example) instead of the abbreviation DST.
In a different post for the Wireless LAN devices, I've already mentioned that the date string used in every object (logs, file names etc) should be a user definable format - not every site uses the US format.
