-
Connect clients on LAN 1 to server on LAN 2
Apologies if this is trivial but I could not find an answer via Google and I am not a trained network engineer. Based on the network diagram below, how-if possible-should I configure the USG40? Thank you.
-
Migration Zywall USG 1000 to USG 1100
Hello, we are using an old Zywall USG 1000 and bought a USG 1100. The online converter does not support Zywall USG 1000 => USG 1100. Is there a way or workaround on how to migrate or convert the configuration? Thank you!
-
Usg20-vpn firmware upgrade
Hi, I have a USG20 VPN that needs to be updated.Current firmware is 4.30 The latest upgrade says "If the firewall running with previous version then ZLD5.00, we recommended upgrade to ZLD5.10 C0 or later version to Standby partition first before upgrading to ZLD5.31" And the notes for firmware 5.30 (oldest available at the…
-
IPSec Gateway - why is no DPD option for IKEv2 available?
The IPSec VPN Gateway Settings offer, for Phase 1 of IKEv1 (advanced settings) a "Dead Peer Detection" (DPD). In contrast, IKEv2 doesn't offer such a detection. Why not? Also for IKEv2 the USG is able to recognize a dead peer and is showing its state in the VPN Connection table with a colored or greyed connection symbol,…
-
ATP100 no switch on backup when master connection fall
Hi. I've a little problem with an ATP100, updated today. On WAN port there's terrestrial Antenna with PPP autentication, On OPT there's a standard router for ADSL for backup. Today antenna's connectivity broke, but while the lan cable was inserted there was no switch on backup. If you unplug the cable, it switch on backup.…
-
flex 100 and secureporter show 1 hour
Hello owner of flex 100 do you have problems regarding secureporter show 1 hour on secureporter portal ? pls. write back. Best pio
-
USG Flex 100 Problem with Content Filter, Signature Updates, etc... etc...
Greetings, I am using the User Guide USG FLEX 100_V5.31.pdf to verify the settings. The unit is registered and licenses are valid: The App-Patrol Signature update works, the Anti-Malware and IPS cannot be updated??? In Web Content Filter no matter what URL I enter I always getwhen testing a URL: The result is that users…
-
Parental control is not working
Hello , I have Zyxel PMG5617-R20BI tried to enable parental control to block facebook but it didn't work.I tried following option. Can anyone help me how I can get it working ?
-
USG20-vpn firwmare upgrade
Hi, I have a USG20 VPN that needs to be updated.Current firmware is 4.30 The latest upgrade says "If the firewall running with previous version then ZLD5.00, we recommended upgrade to ZLD5.10 C0 or later version to Standby partition first before upgrading to ZLD5.31" And the notes for firmware 5.30 (oldest available at the…
-
Configuration issue with fw USGFLEX100
Hi at all, We tried to configurate a USG FLEX 100 for a customer but i encountered some problems. Our lab network enviroment is: - Router ip 192.168.3.1 and a static public IP; - FIrewall NSG with a WAN Interface 192.168.3.4 and a LAN Interface 192.168.1.254 (already configured in our Nebula) - Switch Layer 2 with the…
-
USG 200 : 2.20 to latest
Hello, I have a USG 200 zyxel, and I finally got around to updating this router. I saw on the forums that it is necessary to upgrade the versions little by little.Unfortunately, I can't find the versions between 2.20 and the latest (both in the portal with the registered router and in the download center). Could you help…
-
Interface General and GRE tunnel bug
VPN300
V5.31(ABFC.0)ITS-22WK31-r104914 Was testing making a
GRE tunnel and found this bug when an interface is set to General with
getting an IP by DHCP when you make a tunnel GRE on that interface to
connect to a remote gateway the interface blocks sending GRE until
you change interface to external then it works.
-
Accessing Resources Across a Site-to-Site Tunnel when Connected via SSL VPN
Hello, I have a question about accessing resources across a S2S tunnel when connected to an SSL VPN. Currently, we have multiple sites. They are all connected with an IPSEC VPN. When on site, a user can access any resource at any site on any port (that is allowed by policy). Users working remotely connect with an SSL VPN…
-
NAT Stops After Sometime
We are using Zyxel USG310 and NAT is configured on Dyndns. After 10 to 15 days the NAT or port forwarding stops automatically. To resolve we have to restart the firewall. The firmware of the firewall is latest 4.72(AAPJ.0). Please assist.
-
ZLD4.33 WK35 Critical Security Patch
I'm noting in the weekly updates https://support.zyxel.eu/hc/en-us/articles/360005438274-Weekly-Firmware-Support-Version-Lab-Version It mentions apply due to critical security patch. I usually deploy only when general release versions arrive. Should we be following these interim patch releases?
-
vlan
hello I have a usg20 vpn, I am trying to make lan1 (p5,p6) hermetic to lan2 (p3) I don't want my devices on lan2 to be able to communicate with lan1 how can we do ?
-
blocking wpad connections..?
@all,is there a way to block wpad connections or does it have to be allowed? As far as i understand, wpad is like a proxy, so a firewall cannot look into the traffic which is handled with it. Or does even the Zyxel FW handle wpad and acts therefore as a proxy. I am a bit lost here, searching the www does bring any light in…
-
SSL_ERROR_UNSUPPORTED_VERSION USG20
hello, I have a usg20 router, I don't know the version. I haven't been able to access the web interface for a while now. with any browser, I have this message: Error code: SSL_ERROR_UNSUPPORTED_VERSION ....
This website may not support TLS 1.2, the minimum version supported by Firefox thanks !
-
Easily Manage Your Employees’ Devices with Astra
Easily Manage Your Employees’ Devices with Astra In most SMBs, tech staff are already under heavy workloads, leaving little time to hunt down threats that require immediate action. When it comes to endpoint device security, get started in minutes with Astra cloud-based service that makes management easy. We are excited to…
-
ATP series - Wildcard FQDN doesn't seem to work
I have a wildcard FQDN address in object for *.antispamcloud.com to be used as source in Security Service>IP Exception to an internal IP. That exception doesn't work with the latest signature update - all mxXXX subs to *.antispamcloud.com is being blocked at the moment - i have fixed it by unticking Exploits in IP…