-
Limitation of Passkey Cross-Device Authentication (CDA) in Captive Portal Deployments
Overview Passkey authentication supports Cross-Device Authentication (CDA), allowing users to authenticate on one device using a passkey stored on another device, such as using an iPhone to sign in on a Windows laptop. CDA on apple devices like iPhone relies on QR code scanning, Bluetooth proximity verification, and an…
-
OIDC Setup for NID FS on NCC and Google Workspace
This article describes how to configure OpenID Connect (OIDC) on both Nebula Control Center (NCC) and Google Workspace. It enables administrators to integrate their existing user directory with the Nebula Identity Federation Service via OIDC, allowing users to leverage the service for additional network use cases such as…
-
Claim settings and usage on Google workspace and NCC.
Introduction Claims are additional user attributes included in each OIDC authentication response, based on the authenticated user’s identity (e.g., country, group membership). These attributes can be leveraged by relying parties (e.g., access points, firewalls) to enable user awareness and enforce user privilege policies.…
-
OIDC Setup for NID FS on Nebula Control Center and Microsoft Entra ID
This article describes how to configure OpenID Connect (OIDC) on both Nebula Control Center (NCC) and Microsoft Entra ID. It enables administrators to integrate their existing user directory with the Nebula identity federation service (NID FS) via OIDC, allowing users to leverage the service for additional network services…
-
Claim Settings and Usage on Microsoft Entra ID and NCC
Introduction Claims are additional user attributes included in each OIDC authentication response, based on the authenticated user’s identity (e.g., country, group membership). These attributes can be leveraged by relying parties (e.g., access points, firewalls) to enable user awareness and enforce user privilege policies.…
-
How to Transfer Ownership for Organizations in Nebula?
```htmlOwnership transfer within Nebula allows changing the account associated with managing specific organizations. Here is how it works based on a successful case: * Provide the email address of the current owner and the new owner's email address. * List all the organizations that need to be transferred. * Submit this…
-
Why is the “Change Owner” Button Grayed Out for Organization Owners?
Q: I am the owner of the organization. When I log in and navigate to Organization-wide > Administrator, I notice that the “Change Owner” button is grayed out. As a result, I am unable to transfer ownership to another administrator. Why does this happen? A: Based on the current system design, ownership transfer is not…
-
How to check my Organization ID in Zyxel Nebula?
Q: How to check my Organization ID in Zyxel Nebula? A: There are two ways to check your Organization ID in Zyxel Nebula: 1. Check via the URL After logging in to the Nebula Control Center (NCC), you can find the Organization ID directly in the browser URL. 2. Check via Organization Settings Go to Organization-wide >…
-
Detail configuration list processed in “Replicate site-wide/switch configuration” function
In Nebula Control Center (NCC), the Replicate feature enables administrators to efficiently deploy network by duplicating configuration from an existing site to one or more newly created sites. This function helps accelerate network setup and ensures configuration consistency across multiple locations. This article…
-
How to delete a VPN in VPN orchestrator page?
The VPN orchestrator entry is automatically generated when the firewall/security gateway/security router been added to a site. Therefore, it can't be deleted manually. If you want to change the setting, you can manually create VPN connections between sites at Site-wide > Configure > Security Gateway > Site-to-Site VPN,…
-
How to reset the Org/Site configuration on NCC to factory default ?
Q: How to reset the Org/Site configuration on NCC to factory default? A: Currently, Nebula doesn't support resetting your organization and site settings. We recommend creating a new Org/site in your current account and moving the devices to the new Org/site. If you encounter any other issues, please help create a…
-
How to Export Connectivity Reports as CSV in Nebula?
Zyxel Nebula allows users to monitor the connectivity status of organizations or sites and export the data as a CSV file. If you're looking to understand the number of hours a site was unavailable, follow these steps: * Log in to your Nebula Control Center (NCC). * Navigate to the Organization-wide section. * Select the…
-
How to Switch Nebula Managed Switches Back to on-premise mode.
If you want to switch Nebula Cloud-managed switches back to local administration, follow these steps: * Ensure the switch is removed from the Nebula organization, not just from the site. This step resets the device to factory default settings and transitions it to standalone mode. * If the switch still appears in cloud…
-
New feature introduction: Two-factor authentication/2FA enforcement at the Org level
Organization Access with 2FA Enforcement is a robust security feature in Nebula Control Center that strengthens access control for administrator accounts. This feature proactively identifies and restricts access from administrator accounts at heightened risk of compromise, ensuring an additional layer of protection for…
-
Can I create another account with the same access privilege as the org owner?
Currently, there can only be one Org Owner in an organization. However, you can add an Administrator and assign the Full access to grant them permissions to manage the organization. Additionally, if you enable Delegate Owner's Authority for the Administrator account, it will have delegated owner privileges. This allows the…
-
How do I add new members to the Organization?
1.Go to the Organization-wide > Administrators screen. Click +Add. 2. Enter the Name and Email of a Zyxel Account. Assign the Organization access (Full, Read-Only, None). If you wish to limit the new administrator's access to a specific time period, you can set an expiration date in the Validity field. If you…
-
Can I import site-wide cloud authentication template to org-wide cloud authentication page?
No, the org-wide cloud authentication template has more columns than site-wide. You can only import site-wide cloud authentication template between sites.
-
Which switch port settings can be cloned?
The switch cloning copies the settings of each port of the source device into the same port number of the target device(s). IGMP advanced settings, STP bridge priority and port mirroring will also be cloned. For detailed instructions on how to clone switch port settings, please refer to this FAQ
-
How to clone switch port settings?
To clone switch port settings, please follow the steps: Go to Organization-wide > Organization-wide manage > Configuration management From source device: Select specific switch in your organization where you want to copy switch port settings from To Device(s): Select specific switch in your organization where you want to…
-
Which setting can be synchronized from site to site?
Administrators can synchronize the following from one site to another: Site-wide general settings Wi-Fi name and wireless security settings By synchronizing your configuration, the following settings will be affected and cannot be reversed: Site-wide settings: Device configuration, Captive portal reauthentication & SNMP.…