-
Seriously, your ideas could be new feature for Security!
Hello Security Forum Members, Do you have moments that if your own thoughts or ideas can make better experience when using Zyxel security products? <3 We can make your wish come true! <3 Simply start a new post here describing your fabulous ideas for features or services you wish to have! Once your ideas get lots of vote ,…
-
Virtual Firewall for Nebula (vUSG FLEX / Nebula vFirewall)
Use Case: Many enterprise and SMB customers today operate in hybrid environments where part of their infrastructure resides in public cloud services such as Microsoft Azure, AWS, or Google Cloud Platform. Competitors like Cisco (Meraki vMX), Fortinet (FortiGate VM), and Sophos (XG Firewall VM) already offer virtual…
-
Feature Recommendations & Ideas for Future Updates Firewall H
Hi everyone, I’d like to share a few ideas that could make the system even better: • NGINX Web Proxy / Reverse Proxy, similar to the well-known Docker image setup, this would be great for managing internal services securely. • SSL-VPN with 2FA support for macOS, currently, macOS users have limited options here; native…
-
Better transparency for Security Filters (DNS / URL filtering)
Hi everyone, The security features are generally very good, but sometimes it’s not clear why exactly a website gets blocked. In my case, the issue was first caused by the DNS filter, and later by the URL filter. It would be really helpful to have a way to test a domain directly in the interface and immediately see which…
-
Option to save and reuse filters in Logs or Policy Control
Hi everyone, It would be extremely helpful if we could save custom filters in the Logs and Policy Control sections. Right now, when analyzing traffic or troubleshooting, we often use the same filter conditions repeatedly, for example, filtering by source, destination, or service group. However, every time you open the Logs…
-
Improve Favorites usability sorting & persistent expanded view
Hi everyone, I really like the new Favorites feature, it’s a great addition and makes daily work much more convenient. However, it would be really cool if we could sort the items in the Favorites section manually (for example, drag & drop or alphabetically). Also, it would be very helpful if the Favorites area could stay…
-
Autocomplete not working on new Zyxel “H” series firewalls
Hi everyone, On the new Zyxel firewalls (the “H” series), the autocomplete function no longer works properly. When creating or editing firewall rules, you now always have to use the mouse to select objects, even if they already exist in your object lists. Previously, you could simply type and jump between fields using the…
-
[USG Flex H] - Enable/Disable port
Hello everyone, can be a good idea have the possibility to manage the port connection, via a flag that enable or disable the port
-
[USG Flex H Series] - Support of external mobile connectivity
Hi all, a good idea can be support a USB Dongle or directly an integrated 5G SIM reader to create a backup WAN. Can be a good idea?
-
SSO agent need to support Kerberos
User @AndB requests the SSO agent need to support Kerberos to enhanced the security. Anyone who likes this idea, please leave your comment below and give it a vote! Original post
-
DHCP List - Show device online/offline status
Hello everyone, the idea is to show, on the DHCP List, the online/offline status of a device.
-
BWM feature rule to bypass interface Egress rate limit
How this would work and be useful if you don't have a L3 switch On a FLEX 200 (non H) you limit on the interface LAN1 egress to 204800kbps but you have LAN2 and you want LAN1 to receive at full speed from LAN2 thats where this rule comes in to bypass the interface Egress rate limit by a rule LAN2 to LAN1. Now you might…
-
FLEX H BWM/interface limiting improvement
For the FLEX H to have the same BWM/interface limiting like on older models including interface limiting those per interface in a bridge and BWM interfaces that are in a bridge along with interfaces not in a bridge and the option: Router(config)# bwm control-tcp-ack Thanks
-
[USG FLEX H series] - Rename/Aliases port name
It might be useful to be able to rename a port name. This way, instead of "p1," "p2," etc. I could have "UpLink Router" "Main PC" "Raspberry" "Bedroom TV" etc. In this way, we can identificate directly the correct port connected to it's service
-
Proxy ARP option on USG to work like L3 switch
This was tested on my VPN300 but likely holds true for current models The following setup works on my XS1930-10 XS1930-10 interface IP 192.168.255.233 / 255.255.255.192 Two clients IP 192.168.255.193 subnet 255.255.255.255 gateway 192.168.255.233 IP 192.168.255.194 subnet 255.255.255.255 gateway 192.168.255.233 As the…
-
[USG FLEX H series] Allow Duplicate Hostnames in IP Reservation List for Different MAC Addresses
Currently, the system prevents an entry from being saved if the "Host Name" field is identical to an entry. It shows a "The value in this field is duplicate" error, even when the MAC addresses for the entries are completely different and unique. While the DHCP server assigns IP addresses based on the device's MAC address,…
-
[USG FLEX H series] Display Client Hostname in Logs for Statically Reserved IPs
Currently, when manually reserving IP addresses, the DHCP log records its hostname as (NULL). However, for devices obtaining a dynamic IP from the DHCP pool, the hostname is correctly fetched and displayed in the logs. User @Maverick87 would like to request an enhancement to have consistent and informative DHCP logs for…
-
USG FLEX H BWM support FQDN object
User @PeterUK requires BWM function can support FQDN object for USG FLEX H series model. Anyone who likes this idea, please leave your comments below and vote up for this idea post. original link
-
Support for Configuring Static ARP Entries on USG FLEX H Series
Currently, the USG FLEX H series does not provide an option to manually configure static ARP entries. User @Ich would like to request support for static ARP configuration in future. This suggestion originated from the post found here: Static ARP Table — Zyxel Community If anyone likes this idea, please show your support by…
-
Support FQDN wildcard for both root domain and subdomains on USG FLEX H
Currently on uOS, the FQDN object only supports the format *.domain.com, which matches subdomains (e.g., www.domain.com, mail.domain.com) but does not include the root domain (domain.com). In ZLD systems, the format *domain.com was supported, allowing both the root domain and subdomains to be covered by a single entry.…
-
Lockout users by username or IP
Hello, after reading another security idea I focused on how locking-out users with too much failed attempts really work. Differently from my idea it does not lock the user while it lock its public IP MY IDEA IS: add the choice in configure —> user group —> setting between locking by username provided and or by IP this IMHO…