-
IPSec VTI VPN access device in overlapping subnet
Hi all, i've two USG FLEX 200 connected with Point-to-Point WiFi and IPSec VPN with VTI as backup. This setup works fine, both subnets 10.50.0.0/16 and 10.60.0.0/16 can reach each other. Now I want to access 10.70.70.20/32 from 10.50.0.0/16 and 10.70.70.10/32 from 10.60.0.0/16 over the IPSev VPN (when the PtP WiFi…
-
alert
hello, i have a lot of alert in the page log : what to do ? thanks
-
Whole device trottle when passing traffic trough VPN
Hi all, I'm encountering a peculiar issue with one of my devices and am having difficulty pinpointing the cause. I was hoping someone here might have some insights. I am using a Zyxel USG FLEX 200 for a small office we have in London. It's set up with PPPoE using BT credentials, as the USG functions as both our router and…
-
Default AP Group profile inaccessible on USG Flex 700 using a converted configuration
Hi team, I've converted a startup configuration from USG310 to USG Flex 700 using your online converter. After that, I found out that editing the default AP Group profile leads to a neverending “loading” page, the same behavour happens on editing every previous profile that have been converted. I've then recreated AP Group…
-
What to do if 2FA appears to be broken?
Hi, No idea why, but appears that the 2FA at the device login is broken or does not appear anymore after username/password page. It just goes straight to the Dashboard. Has it been compromised or Is this a bug? My device is an ATP500 with firmware V5.37(ABFU.0) Should I reset the device back to hard rest/default again? As…
-
Port forwarding USGFLEX200 issue
Hi all, I am trying to redirect port 7980 to a lan IP of 192.168.1.30 Everything works well on the LAN and the device is responsive on port 80. However, when I try to access the device from the WAN it looks like the port forwarding is not working correctly. the broadband in WAN_1 is a dsl line and there aren’t any filter…
-
CLI command not found on ZyWall
Hi! Some Command`s from the CLI Reference Guide Zywall Series version 4.10–5.37 Ed. 1, 7/2023 not working on real VPN100 with firmware 5.37. I`am about "29.3 Output Control Commands" such as: show firewall-output firewall-output activate and so on. In case typing of this command device not recognize it.…
-
WAN Failover Won't Automatically Restore Back to WAN1 on Zyxel ZyWall USG110
My setup: WAN1: Cable internet WAN2: LTE router Other ports: LAN1 Configuration -> Network -> Interface -> Trunk: Disconnect Connections Before Falling Back: Enabled User configured trunk: Wan-Fallover (Spillover, wan1=active, wan2=passive) Configuration -> Network -> Interface -> Ethernet: Enable Connectivity Check:…
-
Several VPN gateways USG FLEX 500
A quick question about the USG FLEX 500. Is it possible to set up several VPN gateways in parallel? I want to implement the following scenario: VPN GW1 is set up and running. Users can access the internal LAN via L2TP/IPSEC from their devices. VPN GW2 is new and should now connect our new office directly to the…
-
Device Insight.
Very nice. But at times can be a problem. Device Insight at times have identified the device correctly, then later on identifies the device as something different. I try my best to submit the device feedback, and thanks me for submitting, but it still doesn’t recognize the device correctly. Not sure what’s going on with…
-
VPN Cli Command
Hi all, my question is: is there a cli command to reconnect a dropped vpn (ipsec site-to-site)? my issue: atp 100 is in a customer HQ; usg 60 is in branch office. Since a brand new ftth line has been installed in branch, vpn drops often and even if "nailed up" option in enabled, sometimes vpn fails reconnect and a manual…
-
Troubles with DNAT
I setup 2 Phase 2 VPN NATTED with the same GW (Phase1) in IKEv2. The Topology is this: LOCAL LAN1 192.168.7.0/24 → NATTED ON 10.64.33.0/24 - REMOTE SUBNET 172.28.0.0/16 LOCAL LAN2 172.16.69.0/24 → NATTED ON 10.64.34.0/24 - REMOTE SUBNET 172.28.0.0/16 The 2 phases 2 go Online but only 1 DNAT works, the second one nope……
-
Sometime CPU & Flash uses 95%
-
Transferring Registered USG FLEX to other Organization
Hello, good day! question.. Is there a way to transfer my registered USG flex to other Organization? I remove this USG flex to its existing Org but I can still see it under the Devices.
-
nebula.zyxel.com
-
Problems with HA
For a while it says that synchronization is in progress, and then it is interrupted when syncing HA, someone encountered such a problem, all the conditions are met, but the sync does not work and these are the errors on the primary zywall (latest firmware) 2023-08-14 22:13:44 alert File Manager ERROR: #show _zldmib…
-
SSL Inspection Pages SLOW
This is a new device and the first time on a network of 81 PPL - If I turn on the SSL inspection, pages crawl to a slow. When I turn it off, everything runs normal speeds and pages load fine
-
Usg flex series management
Hi All, What do you prefer in managing/configuring USG FLEX series? Nebula or On-Prem Thanks,
-
Device Insight Management
How can you remove devices that were previously discovered by the Device Insight service?
-
Auto disable VPN service
Hello, while configutating an ATP100 in premise mode (fw 5.37) i found that in configuration → VPN → IPSec VPN → VPN Connection there is a (new?) value: "Auto disable VPN service" Even if the words by themselves seem self-explanatory I would like to understand deeper: When the auto disabling takes effect? What do you mean…