-
How to configure remote access to a PC via Nebula?
Question: I am trying to configure remote access to a PC via Nebula. How to configure on Nebula firewall? Answer: You can follow the guides in these FAQs to configure a NAT rule with RDP port 3389 on Nebula firewall. [ATP/FLEX] How to configure a NAT Rule (Virtual Server) on Nebula? [ATP/FLEX] How to configure a NAT rule…
-
How do I configure vlan to vlan communication on firewall?
Question: How do I configure vlan to vlan communication on firewall? Answer: Once vlan interfaces are created, they can communicate with each other because of the default implicit allow rule. You can add extra security policy rule (Deny, Source and Destination) to block traffic between vlan interfaces. If you just allow…
-
[ATP/FLEX] How to add virtual interface on Nebula firewall?
Question: How to add virtual interface on Nebula firewall? Answer: Nebula doesn't support virtual interface. If you need to add virtual interfaces on ATP/USG FLEX, you can switch the operation mode to Cloud Monitoring Mode. [ATP/FLEX] How to set up Nebula Monitor Mode? I want to use cloud monitoring mode, but what should I…
-
How do I check the DHCP-related settings of an interface using the CLI on a Nebula firewall?
Question : For troubleshooting purposes, the user may want to check the DHCP-related settings of an interface using the CLI on a Nebula firewall. This article will guide you on how to do that. Answer : Regarding this article: How do I check the interface-related settings using the CLI on a Nebula firewall? The user can use…
-
How do I check the interface related settings using the CLI on a Nebula firewall?
Question : For troubleshooting purposes, the user may want to check the interface-related settings using the CLI on a Nebula firewall. This article will guide you on how to do that. Answer : The user can navigate to Site-wide > Configure > Firewall > Interface to check the current interface settings. Additionally, the user…
-
How do I display clients from a specific subnet in the ARP table using the CLI on a Nebula firewall?
Question : How do I display clients from a specific subnet in the ARP table using the CLI on a Nebula firewall? Answer : The user may want to check the current clients from a specific subnet for troubleshooting purposes. They can use the CLI command show arp-table | match "subnet IP range" to do this. For example, the user…
-
How to check the DHCP IP assignment in the event log?
Scenario : For troubleshooting DHCP IP assignment issues, the user can use the event log to check whether the DHCP IP assignment was completed. Answer : Navigate to Site-wide > Monitor > Firewall > Event log > Choose the Category as DHCP, specify the time duration, and then search it, as shown below: The PC gets a DHCP IP…
-
How to configure an built-in AP on a firewall via Nebula Control Center?
Background Configuring built-in access points (AP) on Zyxel firewalls through the Nebula Control Center (NCC) differs slightly from configuring a Nebula access point. Understanding how to navigate these settings is essential to ensure your network runs smoothly and efficiently. Scenario An administrator encountered…
-
How do I execute SNAT for a specific WAN interface on a Nebula firewall?
Question : How do I execute SNAT for a specific WAN interface on a Nebula firewall? Answer : For instance, if the user wants to specify that LAN1 clients should use SNAT via WAN1 or WAN2, please navigate to Site-wide > Configure > Firewall > Routing to add a policy route. Choose WAN1 or WAN2 as the Next-Hop, as shown below:
-
Why Can't I Set an Unnumbered IP Address on USG FLEX500?
Question: I want to set an unnumbered IP address on the WAN interface of my USG FLEX500. How can I do this? Answer: It does not support unnumbered IP at current design.
-
How to route specific internal IP addresses via a virtual interface WAN1:1?
Question: On ATP/USG FLEX, you cannot select virtual wan interface as Next-Hop in policy route. How to route specific internal IP addresses via a virtual interface WAN1:1? Answer: To route specific internal IP addresses via a virtual interface WAN1:1 on your USG FLEX device, follow these steps: * Create a new address…
-
How to Bind a Second IP Address via CLI on Zyxel Devices
How to Bind a Second IP Address via CLI on Zyxel Devices Question: How can I bind a second IP address on my Zyxel USG FLEX500 router? Answer: If you need to add a second IP address on your Zyxel USG FLEX500 router, you can use the CLI (Command Line Interface). This method allows you to manually configure the second IP…
-
How to Bind a Second IP Address via CLI on Zyxel Devices
How to Bind a Second IP Address via CLI on Zyxel Devices Question: How can I bind a second IP address on my Zyxel USG FLEX500 router? Answer: If you need to add a second IP address on your Zyxel USG FLEX500 router, you can use the CLI (Command Line Interface). This method allows you to manually configure the second IP…
-
How to Bind a Second IP Address via CLI on Zyxel Devices
How to Bind a Second IP Address via CLI on Zyxel Devices Question: How can I bind a second IP address on my Zyxel USG FLEX500 router? Answer: If you need to add a second IP address on your Zyxel USG FLEX500 router, you can use the CLI (Command Line Interface). This method allows you to manually configure the second IP…
-
[ATP/FLEX] How do I allow a specific lan client to access the device on a Nebula firewall?
Scenario : How do I allow a specific IP address to access the device on a Nebula firewall? Answer : For instance, if a user wants to allow the IP address 192.168.1.33 to access the firewall and deny other clients from accessing it, please refer to the steps below to set it up STEP1. Please navigate to Site-wide > Configure…
-
[ATP/FLEX] Does the Nebula firewall support IP/MAC Binding feature?
Question : If an on-premise firewall user switches to a Nebula firewall, does the Nebula firewall support the IP/MAC Binding feature like the on-premise firewall? Answer : Yes, the user can navigate to Site-wide > Configure > Firewall > Interfaces > lan interface > Static DHCP table to add it. Please refer tot this FAQ :…
-
[ATP/FLEX] How do I add multiple IP addresses to one wan interface?
Question: How do I add multiple IP addresses to one wan interface? Answer: Currently, firewall on Nebula mode doesn't support virtual interface.
-
[ATP/FLEX] Is it possible to disable a allow rule security policy in nebula?
Question: Is it possible to disable a allow rule security policy in nebula? Answer: To disable an allow rule in Nebula's security policy, navigate to Configure > Firewall > Security policy. You can then disable the specific allow rule you want to modify. Note: "Implicit allow rules" can not be disabled.
-
[ATP/FLEX] Why the firewall cannot access the Nebula in Monitor Mode again?
Scenario : The user may encounter a situation where, after removing the device (in Monitor Mode) from the org and adding it to the license & inventory again, the device still cannot be online in Monitor Mode on Nebula. What is the possible reason, and how can this be resolved?" Answer : The possible reason is that the user…
-
How to Configure VLAN to Access Internet but Isolate from Other VLANs
Question: How can I configure VLAN interface to access the Internet but prevent it from accessing other VLANs? Answer: * testvlan can access Internet * testvlan cannot access other internal subnets To achieve this configuration for VLAN interface, follow these steps. You don't need to create extra security policy rules. 1.…