-
zyxel flex 50 - slow speed vpn ipsec
Hi, I use a firewall zyxel usg flex 50 with latest firmware but vpn ipsec sito to site throughput is less than internet bandwidth Example: download/upload from zyxel's wan are 400/30Mb but vpn speed is 10Mb
-
Assistance Needed for Network Configuration: Removing ISP Router
Hello, I recently switched from a coaxial connection to fiber optic. During the transition, my ISP provided me with two devices: one is an ONT (Innbox G23 NT GPON) and the other is a router (Zyxel VMG8623-T50B). The fiber optic cable connects to the ONT, and then the LAN output goes into the Zyxel VMG8623-T50B router,…
-
Default sessions are too low
Hi, I would like to suggest a feature, as in increase default sessions from 1000, to at least 2000 sessions. As we have had multiple issues, where sometimes it was obvious that it was the sessions, and other times, it was just pure guesswork to enable it to resolve issues. So I want the default to be 2000 sessions.
-
zyxel flex 50 - different throughput beetwen ipsec vpn and lan ports
hi, I have an ipsec site to site vpn on my zyxel usg flex 50 with another firewall zyxel's firmware is 5.38 When I transfer a file from my client to remote server on vpn, I see a different throughput beetwen ipsec vpn and client's ethernet port. First is 64Mbps but client's ethernet speed is 10Mbps Why? My client is…
-
SCR 50AXE - bandwidth when all features ...
HI, what is the transmission bandwidth when all features are turned on. Especially when turning on Application management (something like IPS?). It takes 2/3 of my bandwidth when I turn it on. My connectivity is 300/300 Mbs(upload / download), but when I turn it on it's ~80/80. Is there any optimization possible, besides…
-
USG20 VPN - How can I set up the outbound traffic for mail to use the same IP address?
I am setting up a new mail server. One of the problems I am seeing is the server validates in and outbound traffic, which is good. I have a block of 8 IPs, 5 usable. Example: 12.34.56.57 to 12.34.56.61 usable IP's. My mail server is configured on 12.34.56.58. All outbound traffic goes through IP 12.34.56.57. This is…
-
UDP port 4500 sometime get blocked when allowed over bridge
VPN300 V5.37(ABFC.2) This dose not happen all the but have confirmed it by packet capture on VPN300 I see UDP 4500 on LAG0 and not out LAG1 over the bridge when it is allowed fix is to reboot the VPN300 Here is a cut down of the network setup
-
ZON support for Mac Sonoma
-
Zon support
will Zon support be available for Mac Sonoma for the switches?
-
USG20-VPN Console cable pinout
Hello, I own a USG20-VPN firewall, and I want to connect its serial port to my Moxa device (out-of-band network). The issue is that Moxa rj45 pinout is not the same as let's say Cisco's, or other vendors, which means that I always have to build my own serial cables, and that I cannot use the one that shipped with my Zyxel…
-
Log Report
Hi everyone, I continue to receive dozens of emails from an ATP500 even though the sending of logs in the PolicyControl is not enabled, even sending emails is not enabled from Secureporter. How can I find the source of these emails? Thanks for your help.
-
Howto request: BWM for IPSec/L2TP/VPNs
This howto https://mysupport.zyxel.com/hc/en-us/articles/360010431759--ZyWALL-USG-How-to-configure-BWM-QoS-on-Zyxel-firewalls reports how to configure specifically VoIP/SIP rule for BWM. Mostly can be replicated with some other considerations for other services/applications/service group. Fine. What about create a proper,…
-
VLANs FLEX 200 + XGS 1930 + HP Switch
Hello, how can i setup a 3 Vlan - VLAN1 (private) VLAN20(guest) VLAN30 (TV spot) VLAN1 (DHCP - 192.168.232.1) - i whant to see all servers and clients VLAN20 - This is isolated clients (DHCP 192.168.50.1) but can see PC and TV from VLAN1 VLAN30 (DHCP 192.168.100.1) - isolated TV, but can see PC and TV from VLAN1 I have…
-
USGFlex200 Enable IP Blocking For External DB alert but don't block !
In our USGFlex200 with Gold Security Pack, we use an "External IP Block List". Logs alert us about "Malicious Connection" based on "Ip Reputation" but don't block connections !!! (Access Forwarded). What is wrong ? Firmware version is V5.37(ABUI.2). Thanks for help
-
No traffic in VPN IPSec Site-to-Site
Hi, I need to setup a IPSec Site-to-Site VPN with a third party. We use a Zyxel USG, while the third party device is unknown. My local lan is 192.168.1.0/24 , in the vpn settings the Local Policy is 10.9.230.144/29 and the Remote Policy is 172.16.0.0/12 I followed this and this guide, the VPN connection is established, but…
-
USG 110 to USG Flex 200
Good evening everyone Recently I had to replace a USG 110 and chose the USG Flex 200. According to the USG Configuration Converter, you can only convert the USG 110 to the Flex 500 and not to the Flex 200. But the USG Flex 500 would be overkill for 2 people. Is there a way to convert my USG 110 configuration for the USG…
-
Problem with VPN configuration for Android 12 and above
Hi, We have ATP100 (version: V5.38(ABPS.0)). We are unable to configure VPN connection using IKEv2. It is unable to start VPN connection. The following message appears. Here is our VPN connection and VPN gateway setup. We have a public IP address. I have one more question, is there another connection option for Android 12…
-
Port mirroring feature
Hello, I can't find any reference guide to port mirroring in a USG FLEX 700. Can anyone confirm if this is even possible? Thanks in advance. Regards
-
Routeing rules not failing correctly if interface ping is enabled
VPN300 V5.37(ABFC.2) so this is the setup only with more rules When without VPN300 interface ping check on VLAN443 on Zywall 110 I block from VLAN443 to VLAN443 the rules disable correctly then when I remove the block the rules come back on line. But if I have VPN300 ping check on interface VLAN443 to no-ip.org and…
-
Why has the geoip update policy changed?
Hi Zyxel team. Previously, I asked questions on this community forum about the geoip update. I was told the Geo IP database would not change frequently. I had one or two updates per week on USG20W-VPN, now it's been more than a month that the database has not changed without error message, it's just "up to date". Why this…