-
VLAN DNS Server
Hi all, USG FLEX 100W running latest FW. I have configured multiple VLANs and they work but there is something I do not understand. One VLAN has a few ports separated on my switch and clients only connect via a wired connection. VLAN config is follows: Network → Interface → VLAN → DHCP setting: DHCP: DHCP Server IP Pool…
-
Struggling with SSL-VPN Setup / Policies
Hello Experts, I'm pretty new to the USG Flex 100H and I'm struggling with setting up SSL-VPN on my USG Flex 100. Setup: - USG FLEX 100H, Firmware 1.10(ABXF.1) - WAN GE1 → VLAN on top of it for PPPoE provider connection (ID7; static IP) - LAN GE3, 192.168.10.0/24, VLAN110 (192.168.110.0/28, internal server), VLAN120…
-
Zyxel USG100 Network
Hey guys I have a basic question to USG 100 networking. I have the following network: I want to make the server (192.168.3.10) accessable for the computer (192.168.1.10). I have my firewalls on default reset. I am trying to ping through the network to see if my network is working. I already made the WAN-interfaces pingable…
-
How to setup internal VLANs on USG Flex 100H
Hello Folks, I'm pretty new to Zyxel USG Flex H-Series so I need Help in setting up VLANs. I know the basics of VLANs and how they are handled but I'm comming from total different vendors (Sophos/Cisco). Setup goal: The LAN-Interface (ge3) has the subnet 192.168.10.x . Additional to that I need 2 VLANs on this interface: -…
-
Failure SecuReporter
Failure when trying to enter SecuReporter ALERT Unexpected exception occurred during login. My firewall is Zyxel USG110. Please a solution to this error. Thanks!
-
Flex 500 Full Tunel SSLVPN with 2FA Authorization Problem
Hello, We have set up SSLVPN + Windows AD + Two-FA (Email) on Flex500. The setup has been completed and tested successfully. However, the client has another requirement, which is to use SSLVPN Full Tunnel. But this creates a contradictory situation: When the user authenticates with the Windows AD username and password and…
-
fail-over via routeur lte3301 plus mode pont sur usglex100
Bonjour, Actuellement tous nos sites distants sont reliés via un réseau local en fibre optique. Adressage IP en 192.168.x.x / masque 255.255.248.0 . L'année dernière suite à des travaux sur la voie publique, un tractopelle a sectionné un tronçon de fibre et de facto à coupé le réseau entre l'un de nos parkings et les…
-
ZyWALL 110 Firmware Upgrades (4.20 - 4.73)
We have temporarily added a second location so I need to pull one of our old Zywall 110 units out of retirement. I want to update it from 4.20 to the latest 4.73 firmware. Unfortunately, when I log into the portal, it only offers 4.73. I checked the FTP server and cannot find a Zywall 110 folder. I'm sure there is a…
-
[Event Closed] Buy three years of license and get a USG FLEX Firewall
[Event Closed] Thank you for your interest in our special promotion! This event has now concluded. Stay tuned for upcoming deals and offers that can help you enhance your network security. If you have any questions or need assistance, feel free to contact us. Your security, our priority!…
-
How to set up SBG3300 as an AP?
Hello I would like know what is the procedure of setting my zyxel SBg3300-NB00 as an access point
-
LTE firmware for SBG3600
LTE performance is really poor with current LTE module firmware, but found recommendation to upgrade LTE firmware to get improved 4G performance, but can't find new firmware anywhere Current Firmware Version: ALT3100_04_05_06_10_B8_LO Zyxel site offer only system firmware and it doesn't upgrade LTE firmware. Where I can…
-
ZyWall USG 100
Hey guys I have a USG 100 at home to try to learn something about. I reseted the ZyWall so everything is default. Why is a Server accessable in the DMZ zone but not on Lan1? By default the security rules are all the same (any), so the server should be accessable also on Lan1 or do I miss something? Best regards
-
Crypto-Boost command - released or not?
Hello! Is the "crypto boost-tcp" officially released in version 5.37P1 or not? Performance of upload via L2TP oder IKE v2 sees a massive increase. Is it safe for production use? Best regards, Jochen
-
ATP200 Anti-Malware is blowing up on Microsoft.VCLibs.110.00_11.0.51106.1_x86__8wekyb3d8bbwe.Appx
Message is: Virus infected SSI:N Type:Threat Intelligence Machine Learning Virus:Malicious Virus File:Microsoft.VCLibs.110.00_11.0.51106.1_x86__8wekyb3d8bbwe.Appx I've scanned the hash and it's Undetected in VirusTotal. The IP address that is being connected to it is associated with edgecastcdn and the IP is not listed in…
-
ATP IPSec VPN
Hello, I'm currently testing an IPSec VPN on our ATP. It's working correctly when connected outside the company. However, it does not work if we are connected to the internal Wi-Fi and I'm not sure why. The SSL VPN (also Zyxel) that we have been using (not set up by me) works internally. We also have a Site-to-Site VPN…
-
USG 110 - Firmware 4.73 Patch 0 WK50
Hello, where is possible download latest build 4.73 WK50 for USG110. Here -https://support.zyxel.eu/hc/en-us/articles/360005438274 is only WK23 for download. Thanks for help ! Vaclav
-
resolver-query-timeout
Just a quick question what have you set the resolver-query-timeout for DNS to be? I ask because it seems like its set to 1000ms
-
Difference between ATP and FLEX Series
I used to think that Sandboxing was only available on ATP Series, but now I see the gold security pack with sandboxing is also available on FLEX Series. According to specsheets the ATP's are within the same number only slightly more performant, which makes me think that only the ATP800 is relevant for extra performance…
-
Google Authenticator App Usage With SSL VPN On Flex 100H Question
Hi, We have just purchased a Flex 100H and about to setup SSL VPN Am I correct in thinking that if you setup a SSL VPN User to use Google Authenticator as the 2FA option you have to manually go to the Zyxels 2FA site after connection to input the code ? We plan on using the Secuextender Client If so is there a way to…
-
my uag 4100 showing log "Traffic from any to any rejected."
my uag 4100 showing log "Traffic from any to any rejected."and stop athenticating users.