-
DoH, DoT supported by Zyxel firewall
This discussion was created from comments split from: DoH or DoT setup in ZyWALL?Description: How to set up DoH, DoT on ZyWall?Click like if you think the feature is useful and beneficial.
-
Interface enable when ping fails
Two routers one with
192.168.247.1 the other with 192.168.247.254 client is setup with
192.168.247.2 with gateways 192.168.247.1 and 192.168.247.254 you
want to allow one working gateway at a time. 192.168.247.254 will
ping 192.168.247.1 the interface drops ARP from 192.168.247.2 waiting
for 192.168.247.1 to go off line…
-
SSL/TLS filtering must have extension server_name
For Content Filter the
SSL/TLS traffic must have extension server_name or else block option.
-
Ambiental statistics available into dashboard
With CPU, memory session, option to add the temperatures of the security appliances into dashboard.
-
Next-Gen/VPN Firewall in the next 5-10 years to be
All 10Gb ports Speed test by TCP to hit 10Gb throughput All ports Configurable no more WAN/LAN given ports And most importantly all models with front Console port :)
-
Integrated with Tufin SecureTrack
This discussion was created from comments split from: Security Policy Hits Description: Integrated with Tufin SecureTrackClick like if you think the feature is useful and beneficial.
-
DHCP mode and SNAT support for Remote Access (Client Role) IKEv2 VPN
DHCP mode for Remote
Access (Client Role) IKEv2 VPN where it gets a IP from the other end. SNAT by DHCP IP for
Remote Access (Client Role) IKEv2 VPN currently it will use the USG
the LAN subnet which may not work if the other end wants you to use a
IP as given above to SNAT from.
-
Better USG Flex hardware choices for IPS and AV throughput
Look at more processor cores, better processor cache, or more RAM to improve USG Flex performance for IPS and AV throughput in next designs while paying attention to cost. The USG Flex 100, 200, and 500 suffer an average performance drop of 65% comparing AV to SPI Firewall throughput, while if you don't use AV the…
-
FQDN for remote gateway address for tunnels
-
USG Log viewer - filter by country
I wish to have country filter in log viewer to see whats happening on connections faster. Maybe by name or some kind of dropdown.
-
Real DMZ made easy
Will fix my ISP DHCP problem with my current real DMZ problem too Big ask to solve my ISP problem with DHCP. — Zyxel Community
-
Please add wireguard!
Can you please add wireguard to the USG/Zywall products?
-
2FA on USG FLEX, ENTER to confirm token
Hello When I login to my USG flex, I configured 2FA. When it loads the page where I have to fill the 2FA token box, it does not accept an ENTER key to continue. I have to click the button with a mouse click. Would it be possible to code the form so it accepts and ENTER keystroke as wel?
-
VPN configuration provision for IOS/Android client
This discussion was created from comments split from: VPN Configuration Provision for IOS/Android client. Description: Current VPN Configuration Provision only support for IOS. If it could support for Android will much better. Then user could download VPN configuration by themselves after logging to web portal no matter…
-
Enable/disable logging multiple Security Policy Control rules
It would be very handy to be able to enable/disable logging on multiple Security Policy Control rules at once, just like enable/disable the rule itself!
-
Last Conneection
Dear ZyXEL Team, Is it possible to have in the VPN section the last connection date from a user, as we have the creation date currently, it would be just a new column or perhaps somewhere else. In terms of security, it will be useful, so we can create some policy like : "All account which did not connect using VPN since 2…
-
2 factor authentication with google authenticator
This discussion was created from comments split from: ipsec vpn with 2FA Description: Currently two factor authentication only support for SMS and Email. But without external server. e.g. Google Authenticator. Click like if you think the feature is useful and beneficial.
-
Maximize Bandwidth Usage after Guaranteed Bandwidth to use default priority
When making a rule with
Guaranteed Bandwidth with high priority the Guaranteed Bandwidth can
go upto the set limit at that high priority and with Maximize
Bandwidth Usage checked any Bandwidth after Guaranteed Bandwidth
limit then uses default priority rule.
-
Use last know ARP check for Connectivity Check
When Connectivity Check
is enabled it send a ARP which it does not need too if the USG has
done a ARP check before. When you have many routing rules with a 5
sec check period this can cause a ARP flood which some ISP rate limit
to 2-3 ARP a sec causing a drop in connection. The ARP check only then needs to be done if ping…
-
"User type" user could change password themselves
This discussion was created from comments split from: Change VPN password Description: User type user could changes password in session page after logging to WebGUI. Then client could manage password themselves.