-
Troubles with DNAT
I setup 2 Phase 2 VPN NATTED with the same GW (Phase1) in IKEv2. The Topology is this: LOCAL LAN1 192.168.7.0/24 → NATTED ON 10.64.33.0/24 - REMOTE SUBNET 172.28.0.0/16 LOCAL LAN2 172.16.69.0/24 → NATTED ON 10.64.34.0/24 - REMOTE SUBNET 172.28.0.0/16 The 2 phases 2 go Online but only 1 DNAT works, the second one nope……
-
Sometime CPU & Flash uses 95%
-
Transferring Registered USG FLEX to other Organization
Hello, good day! question.. Is there a way to transfer my registered USG flex to other Organization? I remove this USG flex to its existing Org but I can still see it under the Devices.
-
nebula.zyxel.com
-
Problems with HA
For a while it says that synchronization is in progress, and then it is interrupted when syncing HA, someone encountered such a problem, all the conditions are met, but the sync does not work and these are the errors on the primary zywall (latest firmware) 2023-08-14 22:13:44 alert File Manager ERROR: #show _zldmib…
-
SSL Inspection Pages SLOW
This is a new device and the first time on a network of 81 PPL - If I turn on the SSL inspection, pages crawl to a slow. When I turn it off, everything runs normal speeds and pages load fine
-
Usg flex series management
Hi All, What do you prefer in managing/configuring USG FLEX series? Nebula or On-Prem Thanks,
-
Device Insight Management
How can you remove devices that were previously discovered by the Device Insight service?
-
Auto disable VPN service
Hello, while configutating an ATP100 in premise mode (fw 5.37) i found that in configuration → VPN → IPSec VPN → VPN Connection there is a (new?) value: "Auto disable VPN service" Even if the words by themselves seem self-explanatory I would like to understand deeper: When the auto disabling takes effect? What do you mean…
-
Zywall 310 - 2 ISP by PPPoE on 2 different WAN ports using vlan 7
Hi, Is there any chance to setup a vlan 7 on 2 WAN ports(Base Port 2 + 6) as I need to connect 2 modems both needig vlan 7 to connect. Thanks so much BR K.
-
I have some questions for those of you who have setup HA with 2 ISPs
We're looking to remove some SPOF in our network . . . Following one of Zyxel's guides on HA/VRRP seems simple enough, but I'm far from being a network engineer. I'm wondering what happens after a failover when we have an Exchange server and site-to-site VPN, among other things, in our environment. What additional…
-
limit bandwidth for specific vlans
At a customer we use a site to site vpn connection. In the near future we will use an scan device, which creates very large files, which have to send over this site to site vpn connecion. I'm wondering is it possible when i put this scan device on a specific vlan, can i limit the bandwidth usage over this vpn connection,…
-
Zyxel USG
i have an question about an issue we have many times. for our customers we use the Zyxel USG firewalls, and use SSL VPN connections. Often when new firmwares are available, remote users cannot login anymore. Secuextender just doesn't sign in. For example this morning. i am running secuextender also on my laptop. i just can…
-
secu extender macos ventura
Hello, I have a problem with a mac os ventura, the Secuextender software works during installation and no longer works when restarting the computerThe error message: ZyWALL SecuExtender was unable to connect to its helper tool and must now quit. Please ensure that ZyWALL SecuExtender has been correctly installed and isn't…
-
USG20-VPN Crash
Good morning since yesterday all my usg20-vpn are crashing. After reboot it works fine for a few minutes and then crashes again. The web gui shows the message "server busy"
-
Kein rdp-Zugriff auf Firmennetz mit SSL-VPN
Hallo, der Aufbau einer SSL-VPN mit dem SecuExtender von meinem Win10-PC zu einem Firmennetz über eine USG40W klappt ohne Probleme. Siehe Abb. 1. und Abb. 2 Der Win10-PC bekommt de IP 192.168.100.10 zugewiesen. (siehe auch Abb. 3) Aber ich bekomme keinen rdp-Zugriff auf den Arbeitsplatz 192.168.100.140 oder 1xx im…
-
USG20-VPN FIRMWARE UPGRADE
Good morning sir, I tried many times to upgrade my USG20-VPN. My version is V5.30 and i want the last one. I have tried to download the 5.37 firmware and tried to upload it manually : "Firmware upload is always in progress" (i try many times between 30 minutes and one hour waiting), i tried to let the system automatically…
-
Getting DNAP Packet DROP trying to NAT in a Zyxel - Here's the trick
This had me stumped for a bit. I have an HTTPS service that needs to be accessible from the outside. But the server is setup with the standard port 443. Since that's used elsewhere, we setup a 1:1 NAT Rule for port 7443 → port 443 and setup a firewall policy that was basically this: From: WAN To: DMZ IPv4 Source:…
-
ddns
Dear all, by configuring ddns on a Zyxel FLEX 100 I get following errormessage: "Update the profile my_dyndns has an unknown result." Does anybody know what this could be? I tried 2 versions: dyndns24.ch and no.IP. Thanks in advance Regards Heimo
-
Flex 700 Guest Vlan Isolation
I have 8 vlans on my GS1920-24HPv2 switch (1,10,20,30,40,50,60,70), with 70 as my guest vlan that are connected to the USG Flex 700 as subnets. I want to isolate vlan 70 (guest) from all other vlans and only allow it to access the WAN. What is the easiest way to set up security policies to block all traffic to the other…