-
Flex H Models Routing Protocols e.g. BGP
I am missing routing. Static and Policy is just some basic stuff. Where are advanced routing protocols? BGP - really important since Internet standard!? Not even RIP? OSPF? In the old Flex 700, I had eg. BGP routing - although sadly only through the shell, but at least it was there AND working - in my case in conjunction…
-
Inconsistent firmware versions
The release date is different on the cloud compared to my device, the version numbers are the same, but date different and I can't upgrade. Something looks wrong?!
-
IPSec VPN (USG20-VPN) upgrade USG Flex 50
I am configuring an IPSec tunnel on a USG Flex 50 (USG20-VPN). The scenario is Vodafone station in DMZ on IP firewall 192.168.0.5. Using the configuration wizard I proceed with the simple steps. I use the configuration in Non-SecuExtender IPSec VPN client mode. I load it on the PC, it creates the configuration but if I try…
-
captive portal
on the usg flex 200 i used the captive portal option (through nebula). But the flex 50h doesn't support this in nebula. I find an option on premise captive portal. but not much to configure. I remember in the zywall 110 you got also an local captive portal. is it possible to configure something like this locally with the…
-
Converter Is Not Useful... (Not usable at all actually, updated!)
Tried the converter from a FLEX 100 to a FLEX H 100 and the result is much less than good: All my users are gone (only admins) DHCP items were skipped Content Filtering trust and block lists are gone Havent tried to load it, but it may not be worth the debugging.
-
It is possible to have vlan associated with the 2 fiber ports.
It is possible to have vlan associated with the 2 fiber ports, p13 and p14. When I go to configure the vlan I can only select the p13 or p14 port, on the copper port instead it is possible to associate it on multiple ports.
-
Please reboot the device first, then perform the firmware upgrade.
I have a USG FLEX 200H running Firmware V1.32. When I tried to upgrade to the latest version, the web GUI showed that the device needs to be rebooted beforehand. I'm not sure why a reboot is required before upgrading the firmware. Could you please clarify?" Here is my current resource usage 2. The device has been…
-
H Series - Virtual Server NAT loopback bug?
Hello everyone, it seems only to me or on H firewalls, the loopback in the virtual server does not working? I followed this guide to avoid making mistakes. To keep the IP in your example: From the internet I can correctly reach the internal web servers (Net → 192.168.168.31:80) work. If I open a browser from an internal IP…
-
How to disable alla the filtering services USG flex 500
I have a message like Web Page Blocked!! You have tried to access a web page which belongs to a DNS Filter category that is blocked. This is wrong because it comes from an IP that is part of our office, we spend hours in troubleshooting before we see it. I see many services activated and bundled with the USG. How can I…
-
images
I really hope this is not true: With the flex 200 i was able to make one default template. When i copied this image to a new customer, and added the usg flex 200 i got an perfect new configured firewall with our settings etc. (vlans and everything). This seems not possible with the 50h. It would be very dissapointing if…
-
usg flex 50h
What does this mean? We are MSP, it has an gold security pack. Why TRY this for free? Do we need an extra license to use this?
-
usg flex factory reset
I'm wondering, what is the base image for an USG flex h series? the on premise one? or the nebula one? When i do an factory reset, what will happen? I found out, the complete image in nebula is gone complete different then the usg flex 200. for me this is scary. Someone walks in, press the factory reset and everything is…
-
USGFlex200H: Possible overheating?
Hi, I've lost my internet connection today. Firstly I thought it would be my internet provider but this wasn't true this time because I was unable to login to my USGFlex200H. When I tried to call the internal IP of my USGFlex200H no login mask showed. I then checked the hardware device and it was looking good. The PWR/SYS…
-
Migrating from USG210 to FLEX500H
I downloaded file startup-config.conf from my USG210 V4.73(AAPI.2). I was able to convert it FLEX500 successfully. I then go to the migration tool to convert from FLEX500 to FLEX500 H and I get this error.
-
USG Flex 500H HA mode firmware upgrade with MFA
Hello, We have two 500H in HA mode and we would upgrade the firmware. We are trying to follow these instrutions from the manual: Firmware Upgrade on Paired Zyxel Devices 1First, upgrade the firmware to the passive device. 2After upgrade, the passive device becomes the active device and handles all traffic during the…
-
Flex 500 H - import DHCP list
Hello. I am a new member of the community here so at the outset I would like to welcome everyone. I'm getting the brand-new Flex 500H ready to go. I have to transfer configuration from Flex 200. While in the latter I see an option to import DHCP table, in 500H I don't see such possibility. (I am talking about web GUI)…
-
Will H-series support 2FA via email for SSL VPN?
With previous ZLD-based firewalls, we were able to use 2FA via email method for SSL VPN. It was very simple for the end-users and fulfilled the 2FA requirement of most business cyber insurance policies. On H-series with the free OpenVPN client, the end-user needs to manually open a web browser and navigate to the…
-
H-series missing VPN 2FA option for external(AD/LDAP) users
Is there a timeframe to add back the ability to enable VPN 2FA for External-Users on the H-series? We normally use external-users/external-groups to centrally manage the allowed VPN users. On the H-series, there is no way to do 2FA for these external users without using an (expensive) 3rd party service such as DUO. The…
-
USG Flex 200H: Unknown and unwanted VPN connection tries
Using: USG Flex 200H / Firmware V1.32(ABWV.0) I've configured IPSec VPN (IKEv2) to allow access behind the Firewall. But no one was using a VPN connection in the past days. But I'm seeing many VPN connection tries in the log. All are from outside my home country (Germany). I'm seeing tries from USA, China, Great Britain.…
-
Anti-Malware and Sandbox configuration on USG200H
Hi, I'm trying to configure the anti-malware module and the sandbox module without success. Both modules are enabled, but the statistics remain empty, and if I run a test with the eicar file, it passes through the firewall. I don't have any data in the statistics, and I don't have any events in the logs. Does anyone have…