-
Seriously, your ideas could be new feature for Security!
Hello Security Forum Members, Do you have moments that if your own thoughts or ideas can make better experience when using Zyxel security products? <3 We can make your wish come true! <3 Simply start a new post here describing your fabulous ideas for features or services you wish to have! Once your ideas get lots of vote ,…
-
Use External Block List only option
Very simple really a option to use only External Block List for IP Reputation filter
-
Manual configuration of OpenVPN server
We currently have very limited say on what is going on with the OpenVPN server, being able to modify manually the config (even if only available from command line) would be great. Some users might need different split tunnel configuration.
-
More than one roaming IPSec server config for Flex H (like we were able to do with Flex)
-
BWM feature rule to bypass interface Egress rate limit
How this would work and be useful if you don't have a L3 switch On a FLEX 200 (non H) you limit on the interface LAN1 egress to 204800kbps but you have LAN2 and you want LAN1 to receive at full speed from LAN2 thats where this rule comes in to bypass the interface Egress rate limit by a rule LAN2 to LAN1. Now you might…
-
On site reputation filter allow list only
So here the thing I can't use the reputation filter due to a problem with FLEX connecting to the servers (routeing Zywall out a given WAN if you have more then one) to check but at the same time what if you want to fully control what is allowed and whats not sure you could add a option to check Allow List only but if you…
-
USG FLEX H - external block list also blocks traffic from WAN to ZyWALL
User @SiegfriedH found that USG FLEX H - external block list doesn't block traffic from WAN to ZyWALL. Since this is the current spec, we create an idea post for the enhancement. Original post
-
Wireguard?
WireGuard® is an extremely simple yet fast and modern VPN that utilizes state-of-the-art cryptography.It aims to be faster, simpler, leaner, and more useful than IPSec, while avoiding the massive headache. It intends to be considerably more performant than OpenVPN. WireGuard is designed as a general purpose VPN for running…
-
Support FQDN wildcard for both root domain and subdomains on USG FLEX H
Currently on uOS, the FQDN object only supports the format *.domain.com, which matches subdomains (e.g., www.domain.com, mail.domain.com) but does not include the root domain (domain.com). In ZLD systems, the format *domain.com was supported, allowing both the root domain and subdomains to be covered by a single entry.…
-
USG FLEX H BWM support FQDN object
User @PeterUK requires BWM function can support FQDN object for USG FLEX H series model. Anyone who likes this idea, please leave your comments below and vote up for this idea post. original link
-
SSO agent need to support Kerberos
User @AndB requests the SSO agent need to support Kerberos to enhanced the security. Anyone who likes this idea, please leave your comment below and give it a vote! Original post
-
[USG Flex H] - Export to external services some usefull metrics
Hello everyone, I've a domotic house, in which I have Home Assistant as my central hub to manage curtrains, lights, networks devices, electrical plugs and so on. It's interesting to have some metrics on about the network performances, external WAN IP, how many devices are connected, and somethings help to manage the…
-
Virtual Firewall for Nebula (vUSG FLEX / Nebula vFirewall)
Use Case: Many enterprise and SMB customers today operate in hybrid environments where part of their infrastructure resides in public cloud services such as Microsoft Azure, AWS, or Google Cloud Platform. Competitors like Cisco (Meraki vMX), Fortinet (FortiGate VM), and Sophos (XG Firewall VM) already offer virtual…
-
Configuration migration tool support across different firewall hardware spec.
Currently, the configuration conversion tool only supports the models with similar hardware specifications. Due to hardware and port layout differences, migration across models with different architectures is not supported at this time. Some users have requested a feature that allows transferring settings between firewalls…
-
Don't hide DNS filtering rules on Flex H series
Hello, When creating a DNS filtering rules, it in reality creates two (one for lan to wan, one for lan to Zywall). Could you not hide the second rule ? (Like it was the case on non H Flex series)
-
SAML integration to Microsoft Entra ID with VPN authentication
We would like to request the implementation of SAML 2.0 support in the Zyxel USG H Series firewalls to enable Client VPN authentication via Microsoft Entra ID. Currently, achieving this setup requires our customers to deploy a costly Site-to-Site VPN to Azure and maintain Microsoft Entra Domain Services, which adds…
-
USG FLEX H support speed test diagnostic function
User @henriquev hopes USG FLEX H support speed test diagnostic function. Anyone who likes this request, please feel free to leave your comment and give it a vote! Original post
-
[USG Flex H Series] - Two Factor Auth with Mobile Auth notification
Hello everyone, I've enabled the Two-Factor Auth, but every time that I would like to login into the Web Admin Portal, the interface ask to me to enter the 6-digit MFA code. It's possible to change this behavior for receive a notification on the Mobile Auth App and accept/decline? If is not possible or this is a missing…
-
Limit internet traffic on Quota basis
Hello all, As the thread title says, can it be possible to limit the internet traffic on the quota basis? Means, Once the assigned internet traffic quota is exhausted for the specified period the internet speed will reduce or the firewall will stop giving access internet to the particular client. To be more clear, Let us…
-
SecuReporter Settings Support for USG FLEX H Series in NCC
Currently, SecuReporter configuration options are only available via the local GUI. (Note: SecuReporter settings in NCC only apply to USG FLEX/ATP Series and USG LITE 60AX.) Therefore, user @GiuseppeR would like to request support for SecuReporter configuration in the Web GUI in future. This suggestion originated from the…
-
FlexH 1.36 uOS - missing period time check connectivity
Hello everyone, on Nebula there is NOT the "Period" of time about checking WAN connectivity. For example you want shorter time than the default 30 sec: So the only way to modify it is via local UI