-
USG FLEX 200 wan1 interface cannot send packets
I have ISP, i've tested a lot of devices on it - and they works - send and recieved pings and traffic, then i've plugged this cable to WAN1, i can ping gateway from USG FLEX 200 but not further, i see incoming pings from outside "Security Policy Controlpriority:1, from ANY to ZyWALL, ICMP Type:8, service PING, ICMP Type:8,…
-
ip filter on port forwarding
Buon Giorno, è possibile applicare il port forwarding solo ad alcuni ip pubblici per limitare l' accesso al servizio pubblicato sulla porta aperta ? Grazie
-
ZyWall 310 firmware upgrade
Hi - I've inherited a ZyWall 310 on v4.35, which I want to upgrade to the latest 4.70. Can I do this in one step...? And can I back up the system settings so that I can revert/restore it if there's any problems...? I'm new to this system so any other thoughts, dos/donts appreciated, thanks!
-
How to connect & Configure my Zyxel USG20 VPN firewall with ONT Router of my ISP
Hi, I have a Zyxel USG20 VPN Firewall. Recently, i migrated
to a new ISP who provides fiber connection. So i got an ONT Router in premises
provided by the ISP with static IP configured. When requested to configure the
router in bridged mode (I wanted it on bridged mode, so i can configure Zyxel
with the same static IP…
-
Connect a Zyxel USG20 Firewall to ISP Modem (Router Mode) for Internet
Hello Everyone, i have a Zyxel USG 20 VPN Firewall. The ISP Modem is a Fiber ONT device which is setup with a static public ip & can only be set in Router mode. (Bridge mode isnt working). The eth0 port of the ISP modem is connected to the USG WAN port. The LAN port of the firewall is connected to a network switch which is…
-
Default DNS resolution on USG FLEX
How does DNS resolution work, by default? System -> DNS config page is absolutely empty, I haven't set a forwarder yet. So I would expect the device not to resolve addresses. But, instead, it resolves. It can act as DNS server for clients, it resolves in CLI.That's not a real issue but a thing I'd like to understand.How…
-
Unexpected reboot then increased loopback traffic
On 15th December our ZyWall 310 unexpectedly rebooted. Since then PRTG shows a lot of increased traffic on the loopback interface (showing a "lo" in PRTG). Is there a way I can work out the source of this traffic?
-
[Bug USG210] After upgrade lost of modified DCHP settings
- In FW slot 1 I have V4.65(AAPI.1).- I made there different DHCP modifications like setting DHCP from server to relay, deleting static addresses and add some IPv6 DHCP stuff. - In FW slot 2 I uploaded V4.70(AAPI.0) and rebooted.- After reboot I have lost these modifications and it seems that I got all DHCP settings from…
-
PPP Over Cellular on USG firewall
Hi,I have a USG60 and like to check if it may be possible to initiate PPP connection over cellular? I tried to create the PPP profile however from the base interface, I dont see cellular for selection; thus I like to check if it may support PPP over cellular? For the cellular, it connected via USB modem Any suggestion is…
-
Missing Address Objects after upgrading to v4.70(AAAA.0) in Web UI?
Has anyone else noticed that Address Objects (IP Address) are no longer visible in the Web UI after the upgrade? I can still find them via the CLI, just not the WebUI. Note: I can still see Subnet and Interface Subnet Addresses - just nothing else is showing
-
Computer DB9(male) to USG60 DB9(female) serial cable setup
Is there a writeup describing the way to connect a typical PC DB9 male computer serial port to the DB9 female console port on the USG60 ?I found this article about how to get the debug mode to do a lost pw reset, but how to set up the cabling is harder to find. Thanks!
-
USG110 & WAX650S - Managed AP Mode
I have a usg110 and a AP WAX650S I'd like to manage the AP from the usg110, so i configured the usg->Wireless->Controller to "Always Accept" but under Wireless->AP Management the AP does not show up According DHCP the AP has an IP from the connected LAN. What can i do or am i doing wrong? Regards Daniel
-
SSL VPN not working
Hello everyone, we recently switched to the Zywall 110. Everything is working fine (great product!) but the SSL VPN. Whenever I try to connect using the SecuExtender, it asks me if I want to trust the Zywall certificate, then thinks for some seconds and tells me I got disconnected. I've upgraded to the latest Firmware and…
-
USG110 FW update - details lost in startup-config
End of December we've updated our USG110 from 4.65 AAPH.1 to 4.70 AAPH.0 without problems. Today one of our SSL-VPN User tried to log-in the first time since the update and complained that this was not longer possible. We've checked the USG and it has been turned out that this user account was missing completely. But he…
-
SSL VPN Disconnect due to invalid packet size
We ran into a weird issue with a user today - not sure how to get around it. User is on Windows 11. SSL VPN v4.0.4. They connect no problem. Get their 2FA prompt, then when they tap authorize, they get disconnected. The USG40 (recently upgraded to v4.70) logs show this: it's 100% reproducible. And yet... here's where it…
-
Windows 10 Secuextender 4.0.4 cannot connect to USG110
Hi, anybody can help me ? On one notebook with Win10 now Secuextender cannot connect fo our server. Secuextender and Tap client is enabled and installed. I think it will be Win10 problem ... on log is : SecuextenderHelper.log : [ 2021/12/15 17:51:58 ][SecuExtender Helper] Request(88): REMOVE 0/2873532501 15 4294967295…
-
USG310 - bundle licence period
My USG 310 suddenly died and have to send it to repair. What with bundle licence I activated with it month ago? It will last during out of service period?I bought new fw as replacement and USG310 will stay as backup hardware in cabinet.Is there any way to suspend it until it will be used again?
-
MacBook L2TP connection disconnects constantly
I’m having trouble with frequent disconnects when making an L2TP over IPSEC connection from a MacBook Pro. Here's some initial information about my environment: - ZyWALL 110 running firmware 4.70 (AAAA.0) - MacBook Pro running Monterey v12.0.1 (also happened on previous OS version) Behavior - MacBook successfully connects…
-
Unable to Remote Access Zyxel USG20 VPN Firwall from External IP
Hi, I have a Zyxel USG20 VPN Firewall with a static WAN IP, which i use time to time to remotely manage from internet. I also have several NAT & SSL VPN configured. Recently my NAT & SSL VPN weren't working. When i checked, the remote access of the firewall (https://wan-ip) also didn't work. Note: The Remote Management…
-
ZyWALL not sending gratuitous ARP on WAN for NAT addresses after failover
Hello, we have two ZyWALL 1100 with HA Pro in the datacenter. From the provider, we get two uplinks. We publish the servers over 1:1 NAT. Example:Gateway (ISP): 1.1.1.1/24WAN IP (ZyWALL): 1.1.1.2/24NAT IP: 1.1.1.10/24, 1.1.1.11/24, 1.1.1.12/24 and so on The NAT IPs are only used on NAT rules and not configured as secondary…