-
How to Move a Device Between Organizations While Keeping All Settings
Question: Is it possible to move a firewall or switch from one organization to another while retaining all configurations, such as LAN interfaces and NAT settings? Answer: Simply transferring a device between organizations does not copy its configurations. To retain or “clone” site settings when moving a device, the…
-
How to Resolve License Transfer Issues When Configuring HA-Pro on Firewall
Question: Why do license transfer issues occur when setting up HA-Pro on firewalls, and what steps should be followed to resolve the problem? Answer: License transfer issues during HA-Pro setup typically occur when the two firewalls do not have compatible licenses or when the HA-Pro configuration is incomplete. To resolve…
-
Does the SSO Agent Work When NTLM Is Disabled on the Domain Controller?
Question: Why does the SSO Agent fail to execute LDAP queries when NTLM is disabled, and is there an alternative protocol supported? Answer: The issue occurs because the current SSO Agent relies on NTLM for its authentication and query operations. When NTLM is disabled on the Domain Controller—as recommended by Microsoft…
-
Why Wired Clients Not Showing in the Nebula Client List When It Is Working in Cloud monitor mode?
Question: Why are wired LAN clients not appearing in the Nebula client list when the firewall is operating in Cloud Monitoring Mode, while wireless clients still show correctly? Answer: When the firewall is in Cloud Monitoring Mode, its is unable to track and display client information. In this mode, the firewall can not…
-
How to check the NAT rule configuration on an ATP/FLEX firewall that is managed by the Nebula server
Question: How can I check the NAT rule configuration on an ATP/FLEX firewall that is managed by the Nebula server? Answer: In some cases, the configuration shown in Nebula may not fully match the actual running configuration on the firewall. To verify the accurate NAT settings, you can use the CLI to check the running…
-
Nebula App vs. Web GUI: Discrepancies in WAN1 Utilization Values
Question: What causes discrepancies between WAN1 utilization values displayed in the Nebula App and the Nebula Web GUI? Answer: There can be observed differences in WAN1 utilization values between the Nebula App and the Nebula Web GUI (NCC) due to a timing issue. Root Cause: Both the Nebula App and the Nebula Web GUI use…
-
Why is the Nebula network topology not displaying as expected?
Question: Why is the Nebula network topology not displaying as expected? Answer: This is because the LLDP service requires a base interface to function. If you have multiple VLANs enabled on a base interface, the base interface itself must also be enabled for LLDP to work properly.
-
How to restart a ATP/USG FLEX Firewall via Nebula?
Question: How to restart a ATP/USG FLEX Firewall via Nebula? Answer: If you need to restart your Zyxel firewall device, the Nebula Control Center offers a remote reboot function for managed devices like the USG FLEX 500. Follow these simple steps to reboot your firewall through the Nebula platform: Navigate to Devices >…
-
How to Disable SecuReporter Monthly Email Notifications?
Question: How to disable SecuReporter monthly email notifications? Answer: If you are receiving recurring SecuReporter monthly notification emails and wish to disable them, follow the steps below: Log in to SecuReporter. Navigate to History > Report > Report Settings. In Monthly Report Settings, select "No" for email…
-
How can I schedule a reboot for ATP/USG FLEX firewall in Nebula mode?
Question: How can I schedule a reboot for ATP/USG FLEX firewall in Nebula mode? Answer: ATP/USG FLEX firewalls in Nebula mode support scheduling a reboot through commands. Follow these steps to configure the scheduled reboot: Access your ATP/USG FLEX firewall through SSH or console connection. Use the following commands to…
-
Is it possible to schedule a reboot for ATP/USG FLEX firewall on Nebula?
Question: Is it possible to schedule a reboot for ATP/USG FLEX firewall on Nebula? Answer: Currently, we only offer a scheduled reboot feature for access points and mobile routers. This feature is not available for ATP/USG FLEX firewall on Nebula. You can run schedule reboot through CLI. How can I schedule a reboot for…
-
What is the maximum number of next-hop entries in the traceroute function of Nebula Live Tool?
Question : What is the maximum number of next-hop entries in the traceroute function of Nebula Live Tools for the Nebula firewall? Answer : The maximum number of next-hop entries is 32, as shown below:
-
How can I see connected clients on Nebula?
Question: How can I see connected clients on Nebula? Answer: You can view IP/host information by navigating to Site-wide > Clients > Client List. In the Client List, you can see the IP address, MAC address, and OS information. You can also see where the client is connected.
-
How do I use the Nebula Network Tool to ping a LAN client?
Question: How do I use the Nebula Network Tool to ping a LAN client? Answer: Navigate to Site-wide > Monitor > Devices > Firewall, and scroll down to find Network Tools. Select the source interface and enter the IP address to start the ping.
-
Is it necessary to configure ATP/USG FLEX firewall to the Cloud via LAN connection?
Question: Is there any way to configure the ATP/USG FLEX firewall to the Cloud without having to plug the LAN Ports of the PC and ATP/USG FLEX firewall back and forth as the default instructions? Answer: If your ATP/USG FLEX firewall is deployed in Nebula for the first time, you need to connect a laptop in LAN port of…
-
What is the difference between USG20(W)-VPN and USG FLEX 50(W)?
Question : What is the difference between USG20(W)-VPN and USG FLEX 50(W)? Answer : They have different appearances, but they are the same firewall model. The USG20(W)-VPN was renamed to USG FLEX 50(W) starting with ZLD firmware version 5.20. Therefore, they share the same firmware.
-
How to set up LDAP server on Nebula?
Question: How to set up LDAP server on Nebula? Answer: You can set up LDAP server at Site-wide > Configure > Firewall > Firewall settings.
-
Can I take the configuration of nebula firewall from the one site and put it in another site?
Question: Can I take the configuration of nebula firewall from the one site and put it in another site? Answer: You can do it by configuration templates. But it's not feasible for H firewall.
-
How can I block VPN from LAN to WAN on Nebula firewall?
Question: How can I block VPN from LAN to WAN on Nebula firewall? Answer: Go to Site-wide > Configure > Firewall > Security policy, create a security policy: Action: Deny Protocal: TCP Source: LAN Destination: Device Port: 500, 4500
-
How to remove Firewall from Cloud Monitoring Mode to Stanalone mode?
Question: How to remove Firewall from Cloud Monitoring Mode to Stanalone mode? Answer: Go to Nebula > Organization-wide > License & Inventory > Devices, select the firewall you want to remove from NCC, and click Remove from organization. Then go to local Web GUI > Configuration > Mgmt. & Analytics > Nebula > Cloud…