-
Install Elite pack but cannot view the nebula pro function, what could be the issue?
Nebula Pro Pack function requires each device in your organization to have Pro Pack. If you want to activate Pro pack organization, you can purchase one more license and assign it to that device. If you need the Nebula licenses, you can purchase them from the NCC Portal.
-
What is the difference on Nebula pro pack and Elite pack?
The Elite Pack license unlocks premium security services, including: Content/Web Filtering Premium Ransomware Prevention Nebula Professional Pack By purchasing the Elite Pack, users no longer need to buy the Nebula Pro or Nebula Plus Pack licenses separately. For more details function about Nebula, please refer to the…
-
Where to configure DNS Address Record for USG lite 60AX?
Navigate to Site-Wide > Configure >Security router > Router settings You can add the address record under DNS settings.
-
How to config WAN settings for USG LITE 60AX
Navigate to Site-wide > Configure >Security router > Interface Click the edit icon on the right You can select the WAN type under the Interface properties
-
Why the virtual server rule does not take affect?
Question: I have a USG FLEX with virtual server, but the NAT rule does not take affect even disable all security policy. Answer: 1)Make sure the port are listened on internal server. 2)Please check your WAN interface have correct zone settings, Otherwise, it will not match on the proper NAT rule
-
What OpenSSL version is on firmware 5.38?
Question: What OpenSSL version is on firmware 5.38? Answer: The OpenSSH version on firmware 5.38 is 8.8p1.
-
Troubleshooting SFP Connectivity Issues Between Zyxel XGS1930 Switch and USG FLEX 700 Firewall
This FAQ addresses a specific connectivity issue encountered when connecting a Zyxel XGS1930 switch to a Zyxel USG FLEX 700 firewall using SFP ports. Scenario You are trying to connect a Zyxel XGS1930 switch and a Zyxel USG FLEX 700 firewall using SFP ports and SFP+ modules. While a direct SFP connection between two…
-
Why can't create a excepational cases on the Secureporter For Nebula organization
Question: Why can't create a excepational cases on the Secureporter For Nebula organization? It can't select Nebaul organization Answer: To adjust this for Nebula, please go to the Nebula page to make the changes. This setting is only applicable to on-premise environments.
-
How to save all time data on SecuReporter?
Scenario: I want to save all time data on SecuReporter for my devices, how can I do it? Answer: SecuReporter only keeps the data/statistics/logs/activities in recent 30 days. I suggest enabling monthly report, and download all the existing reports.
-
Why no WiFi7 features when I add WBE660S to VPN50 AP controller?
Scenario: I have a VPN50, and I add a WiFi AP WBE660S to AP controller, but I cannot configure features related to WiFi7. Answer: VPN50 firmware version stops at 5.37P2, but APC starts support WiFi˙ features on 5.38
-
Can I transfer SecuReporter data/statisitcs/analytics from USG40 to USGFLEX100?
Scenario: I want to replace USG40 with USGFLEX 100, can I transfer the existing SecuReporter data, statistics, analytics, logs to the new USGFLEX 100? Answer: Yes, the data on USG40 can be transferred to USGFLEX 100.
-
How to transfer SecuReporter data/statistics to another device?
Scenario: I want to replace my firewall, How can I transfer the data/statistics of SecuReporter to the new firewall? Answer: Go to Organization & Device Select the device you want to transfer from Select My account: Transfer the data to the device in your account, or you can transfer to another user's device Select the new…
-
How can I download the latest firmware version for USG FLEX and ATP series?
Question: How can I download the latest firmware version for USG FLEX and ATP series? Answer: To obtain a new firmware for USG FLEX and ATP series: Login to your myZyxel.com account at https://portal.myzyxel.com. Navigate to Devices Management > Firmware Download. Select the model and firmware version. Click "Download" to…
-
Why does an empty FQDN address group get created as an address group?
Question: Why does an empty FQDN address group get created as an address group? Answer: The current design in ATP and USG FLEX sets the address type of a group based on the member type. If the member is empty, it defaults to the standard address type.In the current design, it is not possible to change an empty address…
-
Radius group does not work as expected
Symptom: You used the Filter-ID (11) attribute to identify the Radius Group, but everything did not go as expected. The firewall did not recognize the correct Filter-ID (11) value for the user. Workaround: Because the Firewall only recognizes the first Filter-ID value. For example, if a user "Kevin" has multiple Filter-ID…
-
Cannot see Hostname/MAC information in SecuReporter
Symptom: There are no data in Top N Bandwidth Hostname/Top N Bandwidth MAC Solution: You must enable "Device Insight" to fetch those information.
-
How to access slave device when you use Device HA
Since slave device only online Heartbeat port. To access slave deivce you need to access Management IP you set up on Device HA pro page. For example: You can access slave device by 1.1.1.2
-
My firewall pushes wrong ssl certificate to my https webservice, how can I deactivate that?
Scenario: You can't access WebGUI due to TLS handshake failure. Because you choose the incorrect Server Certificate . Workaround: Change certificate to default by CLI. Router# configure terminal Router(config)# ip http secure-server cert default Router(config)# write
-
What to expect when switching between Zyxel Firewall models?
When you replace your Zyxel firewall with another model, the Nebula Control Center (NCC) handles your firewall settings based on the tier and series of the models involved: NCC keeps all firewall settings when replacing a firewall model of the same or higher tier. For example: replace USG FLEX 100 with USG FLEX 200 or USG…
-
The DNS content filter is not working
Scenario: The DNS content filter is not working, Already check the settings on GUI is find. -Enable DNS content filter -The profile already applied at Secure Policy " LAN→WAN and LAN→Zywall" Check List: 1) Router(config)# show security-service status dns-content-filter activation: no If the value is "no", please enalbe by…