-
TLS 1.2
Please assist to know How TLS 1.2 is enabled on Zyxel USG 1900?
-
Slow/capped(?) upload speed behind vpn (router in bridge mode) - PPPoE ISP
Dear all, Since switching our ISP (now fiber instead of copper) three weeks ago we experience a much too slow upload speed of only constant 25 Mbits/s where it should be close to 1 GBit/s. DS is as expected around 900 Mbits/s. All direct internet access measurements, not through any VPN. I am dead sure it's too slow as our…
-
USG 110 / VPN Configuration Provisioning not working
Hi, I'm trying to get this to work on a USG110. Setting up an IKEv2 tunnel works fine, but the Configuration Provisioning does not. I've configured the port for e.g. 448 or 4433 and configured a matching Security Policy allowing these ports to go to ZyWall itself. But it doesn't work. on an iPhone, using Safari the page is…
-
Ubiquity vs USGFlex700
Hello, I use USGFlex700 and I want to setup Ubiquity WiFi. I have setup some IP adress pools on USGFlex: The first pool is an interface defined as DHCP for 192.168.4.0/24, on which Ubiquity switch is plugged, into which Unify Controller and all APs are plugged (all of them are on 192.168.4.0 subnet) I have then defined two…
-
TLS 1.2 Enabling
How can I enable TLS 1.2 and disable older versions on USG 1900?
-
How do I configure the ZyWALL for a L2TP server behind NAT?
Topology: Network Conditions: Router WAN IP: 59.124.163.151 ZyWALL WAN IP: 192.168.10.33 Configuration on the router: Add a NAT rule for the router. Allow L2TP services. L2TP server: 192.168.10.33 L2TP service: IKE, NATT, L2TP-UDP Configuration on the ZyWALL/USG: IPSec VPN Gateway IPSec VPN Connection: The local policy is…
-
USG FLEX 50W Configuration Files Cleanup
Hello Forum, After upgrading firmware and making the necessary changes to the USG FLEX 50W unit, is there a reason to keep the following files: ezmode-config.conf autobackup-0.00.conf startup-config-bad.conf I wanted to make sure these are not needed for something in the future, or if they can be recreated as needed. Just…
-
50% packet loss after cable modem upgrade???
This is a REALLY weird one. So our cable company came out and upgraded our old router. Nothing wrong with the old one - just they're slowly migrating to new hardware. Within 5-10 minutes after the upgrade, we start losing voice path on VoIP (one direction) and the network gets really shaky. I start up a few pings to Google…
-
USG20W-VPN Firmware Migration from 4.25 to 5.35
I recall upgrading somewhere FW around 4.31 or 4.33 where I got locked out of our USG20W-VPN, after updating FW. I need to update customer's from 4.25 to 5.35 (and maintain configuration migration) without messing with existing configuration (including Port Forwards & VPN settings), or getting locked out. I captured the…
-
Traffico internet da pc
Buongiorno vorrei sapere se esiste un monitor per poter controllare il traffico internet da singolo pc da un usg20-vpn, grazie
-
Astra Zyxel
Hi, I use Astra VPN for the gadgets(tablets,phone) and I want to add a member with a device that has a family kid account on it. The invitation doesn't work,I mean that the email is not received by the family kid account and more than that, in the Google Play, the app Astra is not available. Some help?
-
Zyxel ATP500 ipsec: no inbound packets
Hello Zyxel Cracks! I come from the Fortinet world and I'm stuck with a problem that I can't solve. I have a Zyxel ATP 500 (5.32) and a Fortigate. I want to set up a site 2 site VPN between these 2 devices. So I have defined the gateway on the Zyxel and then the VPN Connection. The IPSEC tunnel is successfully established.…
-
no default SNAT usg310 himself
Hello I have USG310 V4.73 my wan2 has a virtual ip wan2:1 (IP:AA.BB.CC.DD) with ssh I have to add snat to ping internet( ping 8.8.8.8 source AA.BB.CC.DD )but how can I add the virual IP in the default snat for the router himself.?? Now I can not update time, update firmware from cloud ect ect thx in adv
-
USG Flex 100 L2TP VPN problem with shared folders
Hi everyone, I have a working L2TP VPN Remote Access on a USG Flex 100 installed in a office. Connecting a PC with hotspot from my phone I simulate an external connection and it connects. When I try to navigate to the server in the office through IP it doesn't respond. What I'm looking for is: PC1 uses the VPN to the…
-
Can't unlock user IP.
I'm trying to unlock user but unlock command doesn't work. How to force this IP to be unlocked? BTW why this option is not visible in GUI?
-
USG 200 LAN <> LAN speed slow
Firmware Version V5.35(ABUJ.0) / 2022-12-23 01:44:09 Hi Ive got port 5 in LAN1 192.168.11.1 Port 6 in LAN1 192.168.12.1 Ports are detected 1000/FULL Both in same zone so no firewall / security in between. Happy with all networking devices / hosts. Performance ok with no zywall in between. File copy between ports (say…
-
URL filtering - only custom white list allowed
We are using a USG FLEX 500 and we want to set up a white list based URL filtering on specific client IPs. For example this is my white list: *.tello.com *.att.com *.verizon.com How can I configure the firewall so that only these addresses can be accessed from behind the IP address 192.168.0.50. Thank you!
-
USG310 reboots & sometimes hangs up
Hello, Hi,I have a problem with the USG310. In my opinion, this is a software bug. I test the setup on two physical devices and the symptoms are the same. The device restarts every few days(~1/7days). Here are the logs part: debug ,default , , , , , kernel: [536754.180111] Log Date: 1679963744, fwVersion=Firmware Version:…
-
Restrict access to a specific IP
Hi, I addmit that I didn't digg too much…it is easier to ask here questions :) What I would like to do: I want to restric internal trafic to a server for only a specific MAC address(Ip address) and any other MAC(IP address) that tries to comunicate with the server to be rejected, therefore if I have 192.168.1.2, 3,4,5 as…
-
DNS settings for dual WAN on USG FLEX 500
Hello, I would like to have DNS forwarders for dual WAN, that actually use the corresponding DNS for the WAN that is used. The DNS's used are fromthe providers and they don't allow request outside their network. One of my WAN's is a static ethernet interface and I can't specify a DNS there. The other one is PPPoE and that…