-
USG20-VPN Cant register on Nebula
Hi! I recently purchased a 2nd hand USG20-VPN. I want to use Nebula since it is easier to manage. I registered the device on myZyxel portal and added the device on Nebula Cloud service. The device is in Nebula mode(see the attached image) but Nebula still waits for ZTP(see the attached image). The device is running the…
-
VPN ikev2 ok, but don't work folders shared
HI,I have established an IKEv2 dynamic VPN between a USG FLEX 200 and a Windows 11 professional client and the tunnel works.What doesn't work is connecting the network drives and the various sql management systems with windows authentication.I tried to specify the DNS and the suffix, the server addresses are resolved, but…
-
File transfer over SSL VPn extremely slow (USG FLEX 500)
Hello, we have a USG FLEX 500, when we connect through SSL VPN, the speed of transferring files from a Windows file server to a Windows machine is extremely slow, reaching an average of 500Kbps, taking approximately 50 minutes to transfer one 179Mb file. I emphasize that there is no bandwidth control configured on the…
-
ATP200 - unable to update antimalware
After updating "Firmware Version V5.37(ABFW.2) / 2024-01-20 05:47:51" I have: Anti-Malware signatures are updated to the latest version 2.1.1.20231130.0.. (success) at Mon Mar 11 09:03:50 2024 Threat Intelligence Machine Learning (TIML) signatures are updated to the latest version 1.0.0.20240310.0.. (success) at Mon Mar 11…
-
Website Blocking Issues
I am trying to access a website we use and I keep getting an error. This started happening once I installed the Zyxel USG 700 that I am using now. I can not see anything in the logs for why it may be being blocked, but I came to the conclusion it is the router because I can get on another network, outside of the router,…
-
Single Sign-On (SSO) with an ATP 200 with no Win Server?
Hi Sry its in German: But the wrote who to use them with a Win Server who I dont have. I tought about use 2 Raspberry Pi one as active one as passive if the fail I need to be login. Is there some information how to do it? Are there some open Source ways to do it? Thanks!
-
VPN access through IPSec VPN client to a specific address using username/password on ATP200.
Hi all, I am in need to let a customer to connect to a specif server with a static address inside my network, and to not permit any other access inside the network. The client will be Zywall IPSec VPN client and my Firewall/router is the ATP200. Could you please tell me if is possible this configuration, and if yes, how I…
-
VPN not working any more after reboot
I don't know what it is, but my Flex200 seems haunted! It was up for 3 months and today I reboot it and suddenly two VPNs are not working any more. That's especially "great" since it's the last day of the month any everyone needs to enter their hours for billing… The two failing VPNs are IKEv2 with certs. I have a 3rd,…
-
How to setup for site to site with VPN and both sites have same subnet
Site A and B can connect to each other using a fake IP subnet to map to from real LAN subnet that are the same on both sites. From Site A 192.168.138.4 to 192.168.70.5 maps to 192.168.138.5 on site B From Site B 192.168.138.5 to 192.168.69.8 maps to 192.168.138.8 on site A SSL VPN From site A 192.168.141.4 to 10.255.255.3…
-
Where are the Firmware Updates for FLEX 500H ?
I cant find any firmware updates for the Flex 500 H - Firewall. There is a product FLEX 500 but not FLEX 500H in the list.
-
Policy routing for L2TP VPN
Hello everyone, In our office we have two site-to-site tunnels with external clients. Configured with SNAT and routing rules. We can access it perfectly from our office subnet, but we need to be able to access it from our users' connections through the L2TP VPN. I explain the assembled infrastructure in the diagram. For…
-
SSL VPN
I configure my Zywall 110 with SSL VPN. But I can't connect with another user.¿How configure my public IP? I connect my ZyWall 110 with LAN, but I can't connect with Internet. I use Secu Extender. I see this video but in my situation, I can't connect.
-
Net flow support
Some systems such as Auvik support net flow, as do other firewalls such has Fortinet. Could it be something added to USGs?
-
What's New ZLD5.37 Patch2
Zyxel is committed to continuously updating your devices for important maintenance. This latest release enhances all functions of security appliances including: Feature Enhancements and Consolidated Bug fixes Table: Resolved issues Upgrade your devices to ZLD5.37 Patch2 for enhanced protection against the CVE references…
-
whitelist IP address for PCI Scan
Not sure if they are asking for a 1:1 nat to the server or something else. Can someone clarigy what needs to happen on a USG firewall to "whitelist": In order to run the scan, we need you to grant access to the IP addresses listed below. If you use security software such as a firewall in your organization, you may need to…
-
Zyxel SCR 50AXE - limitations and real life use question
Hi All, I'm considering purchasing Zyxel SCR 50AXE to replace my current gateway solution. I'm using Sophos XG firewall, previously used NSG100, then USG Flex 100 till licenses ran out. Could any one advise if there is any limitation to the number of vlans, dhcp scopes / leases or firewall rules? How does it perform in…
-
SCR 50 AXE how to create secure connection to my synology NAS?
hi, my SCR50 AXE is working as follows: ISP Router → SCR50 AXE→ MY router → SYNOLOGY NAS I can access my synology NAS from the internet through the quick connect of Synology. therefore anyone in theory who knows the URL can get to the nas and try to hack it How can I protect the access from internet? can this be done on…
-
USG FLEX 200 - Blocked URL Keywords to block download of certain files
I thought I could use Blocked URL Keywords to prevent downloading of specific file types (e.g. .exe, .scr, .bat files). I have a working active Profile for Content Filtering and the Forbidden Web Sites is working for domain names. However, Blocked URL Keywords doesn't seem to do anything. For example, to block .scr files,…
-
I can't activate HA on ATP500 V5.37(ABFU.2)
Hello, I am trying to activate the HA with 2 ATP500s but when I apply the HA option on the master computer, the ATP500 restarts automatically and does not activate the HA Pro service when I have access again. That could be happening?
-
USG FLEX 50 (USG20-VPN) 5.37 (ABAQ.2) C0
Hello! I downloaded USG FLEX 50 (USG20-VPN) 5.37 (ABAQ.2) C0, but checksum on the page (https://www.zyxel.com/global/en/support/download?model=usg20-vpn) did not match the file I received. Checksum MD5 from page: EB9560A4C3B912125979A4A12E3B6076 Checksum MD5 from downloaded file (firmware.zip):…