-
VPN 1000 trouble
Hello! Suddenly it started throwing me out of the session on VPN 1000 (20-40 minutes after reboot) with the following error: Wrong CLI command, device timeout or device logout. Logs cannot be viewed.
-
Problems accessing website on SCR50AXE
Hi again Trying to access skechers.dk with the Ransomware / Malware Prevention enabled but the site is blocked. Tried these settings to whitelist the site, but without result. Anyone who can help?
-
SSL Inspection Whatsapp
Hi When receiving a picture on Whattsapp Desktop App on Windows 11 i get the following Log entry (ATP500) and the picture is not downloaded: client finished Receive fatal alert message: desc = 48(unknown_ca) => Block/Reset SSL session! Certificate is up to date. Is there a solution for this? Thank you.
-
ATP100 - FW 5.36P1 - Threat Intelligence Machine Learning again out-of-date
Hi, my last firmware was version "536ABPS0ITS-23WK17-r109100". This lab firmware was send to me by private message. Now I tried to update my ATP100 via cloud firmware but that was not allowed because of this special firmware version. I then installed old firmware V5.35 and after that I clicked on cloud firmware update to…
-
Error page, when Threat Management block sites on SCR50AXE
Hi Is it possible to show the users an error page, when the Threat Management blocks access to sites. As it is now, the page only times out and the users might think that the site is offline, instead of being blocked by the Threat Management
-
Error during uploading configuration on zyxel usg 310
Dear all, I am trying to upload configuration from one Zyxel usg 310 to another Zyxel usg 310. I am receiving error 42012 - Can't convert config and error 39001 Operation is prohibited. Can you help me… Thanks in advance.
-
SecuReporter Maintenance Announcement
Dear Valued Customer, As part of our commitment to providing you with better and more efficient services, we will be carrying out a system migration process on June 3, 2023, from 10 am to 12 pm (UTC+8). During this period, SecuReporter portal services and some of their related functions will be suspended. We apologize for…
-
Syslog / CEF format
I am wondering why all logs I send to my Graylog server are prepended with the facility ID. This breaks the auto-parsing on CEF / syslog messages and one must instead handle a RAW input with custom filters. Example Log: <142>May 17 13:14:28 usgflex200 CEF:0|ZyXEL|USG FLEX 200|5.36(ABUI.1)|0|IKE|4|devID=aaaaaabbbbbb…
-
Anti-Malware False-positive or Real?
We have multiple devices reporting this detection: Virus infected SSI:N Type:Anti-Malware Signature Virus:Gen.Variant.MSILHeracles.cf775202 File:AD2F1837.HPPrinterControl_144.1.1068.0 Is this another false-positive or another distributed supply chain infection event?
-
Disable wireless radio on SCR50AXE
Hi Is it possible to disable the wireless radio on the SCR50AXE. I allready have to NWA AX110 in the setup, so i do not need the wireless radio in the router and the router is hidden in the closet, so wireless use is not optimal.
-
Content Filter licence (USG110, FW V4.73WK50)
Hello, is possible than after Content filter licence Expired, Content filter not work ? I knew we dont get updates, but, dont understand WHY not work. If I buy antivir, after buying period still running (of couurse without update definitions) - but RUNNING and detect older viruses (for example) … Thanky for answer. Vaclav
-
zywall 200 2fa stops working After Firmware V5.36(ABUI.1)
After Upgrading our USG Flex 200 V5.36(ABUI.0) on two different sites the 2FA stops sending emails and unit will loose web access after 6 hours and need rebooting. Have upgraded to V5.36(ABUI.1) and still not 2FA but no freezing yet. Also noticed "Send Report Now" under Email Daily Report no longer works. Both are getting…
-
IPSec-VPN problems
I have two sites. Site one has a USG100 and site 2 has a Flex 200. Site one is unchanged. Site 2 USE to have a Sonicwall and the two sites were connected with an IPSec-VPN. I removed the sonicwall at site 2 and replaced with with the Flex 200 and began setting up the P2P VPN again. Of course, I didn't change Site 1 config,…
-
Mac SecuExtender losing configuration
Hello All, I just rolled out IKEv2 with Google Auth 2FA to a client that has Macs. Two of the Macs (so far) have repeatedly lost their config. Doesn't seem to be a log off or reboot or anything. The config just disappears. When the software is opened again, it's back to asking for the activation code. No IKEv2 confg is…
-
FLEX200 WAN interface problem ...
The wan1 default ip is dhcp, I link wan1 to ISP modem and config FLEX200 PPP item, then I found wan1 will get two ip, one is from PPPoE(122.116.xxx.xxx), another is from DHCP(111.241.xxx.xxx), sometimes LAN pc will use 112.116.xxx.xxx as source ip, and sometimes it use 111.241.xxx.xxx, what is possible problem? should I…
-
USG20-VPN Unable to log in after upgrading the firmware
My device is usg20-vpn The original version was 4.16. To update to the latest version 5.36. I directly download the bin file of 536ABAQ1C0 from the official website Upload to the device But after the update, I can't log in with my account password. I can't get in even if I use the default account admin password 1234 I…
-
Gen.Variant.MSILHeracles.da651960 false positive?
Hi, I've started getting multiple malware notifications with this definition: Gen.Variant.MSILHeracles.da651960 False positive? I don't see references about this malware in Zyxel. Can you help me?
-
Windows 10+ IKEv2 VPN with certificate and Peer-ID-Type
Our FLEX200 VPN works like a charm with the native OSX client. Now I am trying to connect a Win10 machine to the same gateway. Gateway is IKEv2 with certificate, with Peer-ID-Type set to "E-mail" and Content is set to a made up E-mail address. Extended Authentication Protocol is set to Server Mode and the desired user…
-
Routing / Address-Objects for large services
I was wondering how to route all Zoom traffic through a certain WAN interface: Zoom Firewall Infos Does that mean I really would have to create address objects for each net/FQDN/IP in that appropriate list, then group those into several groups and create a routing rule for each group? That seems excessive at least :-)…
-
False-Positive , Office365 Sharepoint marked as Phishing in Content-Filter
Currently the Office365 Sharepoint Node dual-spo-0003.spo-msedge.net (Switzerland) is being marked as phishing. This stopped one of our customer of over 40 People to access their Sharepoint Data since early morning. Other SPO Nodes are not being marked. This probably happened, because somebody tried to use the Office365…