-
USG60 upgrade path to latest firmware
A new customer is already owner of USG60, but is quite outdated the firmware.In fact, the firmware installed is dated 2015, version 4.15, latest firmware available is 4.72 WK28.Customer is remote customer, currently I cannot travel to be onsite and make the due diligence: backup configuration, reset to default, update to…
-
More details about USG20-VPN and configuration conversion tool and future support
https://www.zyxel.com/promotions/usg-configuration-converter-20130829-760081.shtml This page states Question 3: Does this Configuration Converter work with the USG20-VPN to USG FLEX? Answer: No. The Configuration Converter does not support the USG20(W)-VPN series. Why?USG20-VPN (after badge engineering, USG50 Flex) is a…
-
USG 500 FLEX: IPSec Site-to-Site behind Double NAT only possible in Aggressive Mode?
With our previously used Draytek Vigor 3910 it was possible to establish an IPSec Site-to-Site VPN connection in Main Mode even behind a double NAT, that is: The Draytek was connected to another (CPE) router for Docsis Internet access. Now the USG 500 FLEX is connected to that same Docsis router but seems to not being able…
-
myZyxel
Hello, I need support to complete a task on the myZyxel platform. I have 2 accounts, with 2 separate email addresses, and for some reason we've registered some devices on the first account and some on the second.I would like to know if it's possible to transfer all devices on one of these accounts. Then I need to cancel…
-
Self signed certificate in certificate chain issue with e-mail notification setup...
Hi. When I try to setup the e-mail client for notifications in USG FLEX 100 the e-mail server test fails due to the ''Self signed certificate in certificate chain''. I need to use TLS/SSL ''Implicit mode'' (aka no starttls) on port 465 and with server authentication, no exeptions in my company security policy. My question:…
-
L2TP VPN not working on IoS with DDNS?
Hi. I just got DDNS for my business dynamic IP. Everything work flawless as before exept one thing. None of my Apple devices can connect to L2TP anymore... How can this be when the windows computer connects (with built in VPN client in Win 11) without issue on the same L2TP setup? Is it not possible for ios devices to…
-
SSLVPN not able to connect to LAN1
LAN1 client (10.10.100.9)SSL VPN client (10.10.200.11)SSL VPN client can not ping 10.10.200.1 SSL VPN client (SecuExtender) connect successfully (including 2FA with email) try all different suggestions, need help pleaseI'm missing a security rule or routing problem ?Where should I check the log ?
-
IPS - lots of "Reject Receiver" on mail servers communication
Some users message me that not all emails coming in and out. I found that in logs have alot of:signature ID 111646 - Ipswitch IMail Server List Mailer imailsrv.exe Buffer-Overflow Vulnerability with action Reject Receiver on communication between my local mail server and ISP mail server when receiving emails. Also found…
-
How do I allow Youtube TV to play on Roku or Smart TV when it is behind ATP200?
I have ATP200 between my Internet connection and Mesh Wifi. I am unable to access Youtube TV on either Roku or Smart TV.Any suggestions? (Apologies if this has already been answered)
-
ATP 100 doesn't forward ports
Hello, everyone,on an APT 100, I configured the NAT rules, policy control, in the log I see that an access forward was performed, but I can't reach my web server at port 80.If I try to reach my web server internally it works.
-
SMS Service for Two Factor Authentication is down (admin login and SSL VPN)
Good morning The Zyxel SMS service for two factor authentication (2FA) for the USG series Firewall is now down for 24 hours. We use it on all our customers firewall for SSL VPN and the admin login on the firewalls. So, now it is impossible to remotely login the firewall or set up a VPN. What is happening? Zyxel seems not…
-
ATP 500 with SFP-LX-10-D - SFP port dead?
Hi everyone We've recently deployed a fully updated ATP 500 with a SFP-LX-10-D module as the WAN port. Unfortunately, we're struggling getting it to work. We have Activated/Enabled the interface but for some reason the SFP module is not being registered in the management interface, nor does the LINK and ACTIVITY lights…
-
USG60 - SSL VPN conect but "this connection is untrusted"
Hi, I need some advice. I set up a USG60 SSL VPN, everything works, but every time I connect I get this message "This connection is untrusted. How to solve it ? I have it for the occasional house connection. Thanks
-
Nebula Default Security Rules Do Not Apply ?
Hi everyone, My USG Flex 100 is connected to Nebula with 5 VLANs defined, one of which is connected through an IPSec tunnel to Azure, and one other has a webserver connected to it (on site). Nebula shows me the default rules as : In summary, LAN connections are allowed from inside (LANs to Any and LANs to Device) and…
-
New enhancements coming to our Astra service now
Hi Astra users! Thank you for your
feedback, we took our mission seriously. We rolled out our sleeves up and got
the enhancements done. Every feedback from you was collected and analyzed. Thus, we’ve
added some really useful new features that will make your experience on Astra
service just more user-friendly. Here are some…
-
SSL VPN does not work after Mac Monterey 12.5.1 Update
Hello everyone, We have a ZyWall VPN 300 firewall with 30 Win and 1 Mac client. Last week everything was working fine, but not after the weekend. We did the firewall update to V5.31 and the Mac client did the update to Monterey 12.5.1, because of the Mac security issue. All Win clients are working fine, but our Mac client…
-
License Flex 500 in Belarus
Good afternoon. Does streaming antivirus work in Belarus? Are there any subscription restrictions in the Republic of Belarus for Flex 500?
-
ZyWall ATP 200
We have a problem with ATP 200, often the connection is slowed down, running a Speedtest does not go beyond 70-80 Mbps, it is a 500Mb fiber, if I restart the Firewall returns to work regularly. The firmware is updated to the latest version. Thank you
-
DoH or DoT setup in ZyWALL?
Hi. Is it possible to configure the ZyWALL (USG Series) DNS to use DNS over HTTPS or DNS over TLS for ZyWALL DNS Queries? If not, will it be possible in future updates? I have seen some consumer brand routers having this ability using DoT and it is quite handy indeed.
-
SecuExtender randomly disconnecting from USG310
At my client office they are using the SecuExtender VPN Client (SSL_VPN_Client_4.0.4.0) but getting randomly diconnected without any reason. I let them use a wired connection from home and a ping logger tool (ping 8.8.8.8 -t) to be sure it is not the home provider causing disconnect issues. There is no packet loss, so the…