-
How can I configure IPv6 to IPv4 on wan interface of my USG LITE60AX?
USG LITE 60AX does not support to config with IPv6 IP address.
-
How to establish an VPN connection with the USG Lite 60 AX by the macOS Sonoma native VPN client?
Question : How to establish the VPN connection with the USG Lite 60 AX by the macOS Sonoma native VPN client? Answer : This article will guide you on how to establish an IKEv2 VPN connection with the USG Lite 60 AX using the macOS Sonoma native VPN client. Navigate to Site-wide> Configure > Cloud authentication > To add a…
-
How to reboot ATP or USG FLEX device on Nebula?
Question: How to reboot ATP or USG FLEX device on Nebula? Answer: To reboot ATP or USG FLEX on Nebula, go to Devices > Firewall > Live tools and click "Reboot device".
-
Why is the ADP allow list not working for IP spoofing detection on the USG FLEX?
Question: Why is the ADP allow list not working for IP spoofing detection on the USG FLEX? Answer: The ADP allow list is designed for "traffic anomaly" detection. The IP spoofing attack falls under Protocol Anomaly, not Traffic Anomaly. Therefore, adding the IP address to the ADP allow list will not affect IP spoofing…
-
How to Restrict VPN Access by AD Group
Question: How is it possible to use group from the AD server to restrict VPN access? Answer: * Log in to the NCC portal. * Navigate to 'Site-wide > Configure > Firewall > Firewall settings', then adding external user group * Create a new secure policy by specifying the group that needs VPN access.
-
Is there a way to change the names of our WAN interfaces on Nebula?
Question: Is there a way to change the names of our WAN interfaces to make it clearer which ISP is behind a certain interface? Answer: The interface name of the default interface wan1 and wan2 cannot be modified. You can only edit the interface name of new added interfaces by clicking "+Add".
-
How to Configure an Allow List to Bypass Captive Portal on Nebula
Question: Is it possible to add an IP/MAC address to bypass the captive portal authentication on a Nebula managed firewall? Answer: You can follow the guide to configure allow list to bypass captive portal on nebula. * In the LAN interface, configure IP/MAC binding for clients. Note that on Nebula, bypassing the captive…
-
How to reboot USG Lite 60AX on Nebula?
To reboot USG Lite 60AX on Nebula, please go to Site-wide > Devices > Security router > Click Reboot device tab > Click Reboot button
-
Is SecuReporter option available on all firewalls?
Question: Is SecuReporter option available on all firewalls? Answer: SecuReporter is supported on all ATP and USG FLEX Series.
-
Why is there a session mismatch on Nebula?
Question: Why the total sessions displayed on Nebula does not match with the sessions shown on the console using the command show conn ip-traffic source? Answer:Different commands display different types of session data. Specifically:Router> show conn ip-traffic sourceThis command shows only the forwarding sessions by…
-
How to Fix 2FA Landing Page Showing as Unsafe?
Question: My users are upset about the 2FA landing page showing as unsafe. What can I do to fix this? Answer: Currently, Nebula does not support importing third-party SSL certificates. However, you can avoid the unsafe warning by changing the 2FA link from HTTPS to HTTP in your VPN profile. This will stop the browser from…
-
Why is the save button not appearing in iPadOS for SecuReporter?
Question: There is no option to turn off SecuReporter Weekly/Monthly/Daily Report on my iPad. I can swipe off the report, but no save button appears. Answer: Currently, SecuReporter is designed for a horizontal desktop view and is not optimized for vertical mobile screens. This is why the save button might not appear when…
-
How to setup static IP on SCR50AXE via local web gui
1.Key in Gateway IP address : 192.168.168.1(default) web gui amd log in 2. Click the icon on the connectivity column 3. Edit the WAN interface to manually set up static IP for the WAN interface
-
How to turn off Wi-Fi on model USG LITE 60AX
Navigate to Configure >Security Router > SSID settings Disable the enabled button, then the Wi-Fi on USG LITE 60AX will be disabled.
-
USG LITE 60 AX - IPTV Interface
The IPTV interface feature in the USG LITE 60 AX is designed to support triple-play services provided by ISPs. These services typically include IPTV, internet access, and VoIP. However, in this implementation, we focus on IPTV and internet access, with VoIP potentially being added in future updates. Background: Triple-Play…
-
[ATP/FLEX] What is the syntax of field "group id" in External User Group?
Question: What is the syntax of field "group id" in External User Group? How I can find the Group ID on a Windows Active Directory server? Answer: You can enter the command to view the group list. C:>dsquery group Example: CN=testgroup,CN=Users,DC=cso,DC=com
-
[ATP/FLEX] Where is the SIP setting for firewall on Nebula?
Question: Where is the SIP setting for firewall on Nebula? Answer: You can configure SIP ALG settings in Configure > Firewall > Firewall settings > SIP ALG.
-
Does SCR 50AXE support optional to enable/disable upnp?
SCR 50AXE does not support to enable/disable upnp function.
-
Does USG LITE 60AX support authentication access?
Does USG LITE 60AX support authentication access? The USG LITE 60AX does not support authentication access. Below are important considerations regarding authentication access: The USG LITE 60AX may stop broadcasting its SSID under specific conditions, particularly when Nebula provisioning employs unsupported sign-in or…
-
How to enable Smart MESH on USG LITE 60AX
MESH on USG LITE60AX: To enable the MESH feature on the USG LITE60AX by extending the wireless network in your local network, please register both USG LITE60AX and Nebula Aps on the same Org. 1.Navigate to the Site-wide >Configure >Security Router >Router settings Enabled the smart mesh option on USG LITE60AX 2.Navigate to…