-
Flex 200 - L2TP Pre-shared Key
I want to be sure I understand how the router isolates Preshared Keys. It is my understanding each defined gateway can have it's own unique key. So an ipsec site-to-site gateway can have it's unique key and my l2tp gateway can have it's own unique key. Currently I cannot create an l2tp vpn unless the pre shared key is the…
-
My SCR50AXE is auto rebooting, How can I diagnostic?
SCR 50AXE is security router base-on cloud management, this router is very so many problem. it's auto reboot every times. The longest time I could use it was 2 hrs. I confirm it's not related about my ISP. because I have another access point. it still normal. (I have connected with DHCP mode.) I try to fix with myself…
-
Remote access over VPN
Hello, I solve access to NAS server behind non public IP (SBG3500) without Dynamic DNS services. We have a puplic IP on other site (USG110) and IPSec VPN connection to SBG site.How can I configure access to the NAS over Port forwarding and VPN? Topology is here. Thank You
-
USG FLEX 500H - FQDN issue
There is no way to insert an object with FQDN. FW v.1.20 (last)
-
SSL Certificate download has failed myzyxel-dot-com
I face this problem since some days on a Zywall 1100. Automatic Certificate update fails Current version: 1.1.117 From: 0240407-16:20:12 Also manual update fails SSL Certificate download has failed. (failed) at … Can anyone help? Thank you.
-
zyxel flex 50 - slow speed vpn ipsec
Hi, I use a firewall zyxel usg flex 50 with latest firmware but vpn ipsec sito to site throughput is less than internet bandwidth Example: download/upload from zyxel's wan are 400/30Mb but vpn speed is 10Mb
-
Assistance Needed for Network Configuration: Removing ISP Router
Hello, I recently switched from a coaxial connection to fiber optic. During the transition, my ISP provided me with two devices: one is an ONT (Innbox G23 NT GPON) and the other is a router (Zyxel VMG8623-T50B). The fiber optic cable connects to the ONT, and then the LAN output goes into the Zyxel VMG8623-T50B router,…
-
Default sessions are too low
Hi, I would like to suggest a feature, as in increase default sessions from 1000, to at least 2000 sessions. As we have had multiple issues, where sometimes it was obvious that it was the sessions, and other times, it was just pure guesswork to enable it to resolve issues. So I want the default to be 2000 sessions.
-
zyxel flex 50 - different throughput beetwen ipsec vpn and lan ports
hi, I have an ipsec site to site vpn on my zyxel usg flex 50 with another firewall zyxel's firmware is 5.38 When I transfer a file from my client to remote server on vpn, I see a different throughput beetwen ipsec vpn and client's ethernet port. First is 64Mbps but client's ethernet speed is 10Mbps Why? My client is…
-
SCR 50AXE - bandwidth when all features ...
HI, what is the transmission bandwidth when all features are turned on. Especially when turning on Application management (something like IPS?). It takes 2/3 of my bandwidth when I turn it on. My connectivity is 300/300 Mbs(upload / download), but when I turn it on it's ~80/80. Is there any optimization possible, besides…
-
USG20 VPN - How can I set up the outbound traffic for mail to use the same IP address?
I am setting up a new mail server. One of the problems I am seeing is the server validates in and outbound traffic, which is good. I have a block of 8 IPs, 5 usable. Example: 12.34.56.57 to 12.34.56.61 usable IP's. My mail server is configured on 12.34.56.58. All outbound traffic goes through IP 12.34.56.57. This is…
-
UDP port 4500 sometime get blocked when allowed over bridge
VPN300 V5.37(ABFC.2) This dose not happen all the but have confirmed it by packet capture on VPN300 I see UDP 4500 on LAG0 and not out LAG1 over the bridge when it is allowed fix is to reboot the VPN300 Here is a cut down of the network setup
-
ZON support for Mac Sonoma
-
Zon support
will Zon support be available for Mac Sonoma for the switches?
-
USG20-VPN Console cable pinout
Hello, I own a USG20-VPN firewall, and I want to connect its serial port to my Moxa device (out-of-band network). The issue is that Moxa rj45 pinout is not the same as let's say Cisco's, or other vendors, which means that I always have to build my own serial cables, and that I cannot use the one that shipped with my Zyxel…
-
Log Report
Hi everyone, I continue to receive dozens of emails from an ATP500 even though the sending of logs in the PolicyControl is not enabled, even sending emails is not enabled from Secureporter. How can I find the source of these emails? Thanks for your help.
-
Howto request: BWM for IPSec/L2TP/VPNs
This howto https://mysupport.zyxel.com/hc/en-us/articles/360010431759--ZyWALL-USG-How-to-configure-BWM-QoS-on-Zyxel-firewalls reports how to configure specifically VoIP/SIP rule for BWM. Mostly can be replicated with some other considerations for other services/applications/service group. Fine. What about create a proper,…
-
VLANs FLEX 200 + XGS 1930 + HP Switch
Hello, how can i setup a 3 Vlan - VLAN1 (private) VLAN20(guest) VLAN30 (TV spot) VLAN1 (DHCP - 192.168.232.1) - i whant to see all servers and clients VLAN20 - This is isolated clients (DHCP 192.168.50.1) but can see PC and TV from VLAN1 VLAN30 (DHCP 192.168.100.1) - isolated TV, but can see PC and TV from VLAN1 I have…
-
USGFlex200 Enable IP Blocking For External DB alert but don't block !
In our USGFlex200 with Gold Security Pack, we use an "External IP Block List". Logs alert us about "Malicious Connection" based on "Ip Reputation" but don't block connections !!! (Access Forwarded). What is wrong ? Firmware version is V5.37(ABUI.2). Thanks for help
-
No traffic in VPN IPSec Site-to-Site
Hi, I need to setup a IPSec Site-to-Site VPN with a third party. We use a Zyxel USG, while the third party device is unknown. My local lan is 192.168.1.0/24 , in the vpn settings the Local Policy is 10.9.230.144/29 and the Remote Policy is 172.16.0.0/12 I followed this and this guide, the VPN connection is established, but…