-
Remote IPSec VPN | How to change port
Hello, We do use SecuExtender as VPN client As in topic, how do I change port from https (443) to something different perhaps 8443 to download configuration from server while being outside of my company. If I allow https then my Zyxel is accessible from WAN and I don't really like that idea. I just need a port to get…
-
USGFLEX 100H update by file.
Hello, I have this version of firmware V1.30(ABXF.1)ITS-24WK47-m6271 on USG100H, due to performance issues that were solved, but I need to update. How can I get the update file? Can I only update the USG100H via the internet? Can you send me the file to perform the update locally by uploading the file? What would be the…
-
Flex 700H stops responding
Does anyone with a 700H have issues with the firewall just locking up and stop responding? Only way to recover it is to pull the plug and start again. Have the logs writing to USB and can see nothing in there that points to why it just locks up. Did have the firewall connected to a 3800 switch via DAC cable but recently…
-
Standalone and / or Nebula ?
I have been using the "Standalone" management believing I had to pick Standalone or Nebula and stick with that choice. Can I use either AND both Standalone and Nebula management styles at the same time, which ever one I want, anytime I want? Does Model matter, I have a 700 and a 700H.
-
CLI dhcp enabled false v GUI dhcp selected.
Maybe I'm reading the output of the CLI wrong. But my vlan12 has dhcp on, but the cli says false. Why does the CLI say "false"?
-
700H set SFP vlans to "Tagged"?
700H multiple vlans on a 10G sfp uplink. How or where do I make sure the SFP Port p14, is "tagged".. I do not see tagged or untagged anywhere, under the internal interfaces. I see "Trunk", but that appears to be WAN only. This 10G sfp is an uplink to a switch, with multiple vlans on the switch and the same vlans configured…
-
VPN migration USG Flex 700 to Flex 700H
Bonjour, With Flex 700, VPN, L2TP, site to site and client to site, with 30 users, how do you migrate VPN settings to 700H? Thank you for your help.
-
AD authentication problem
Good morning,after updating a usg-flex100h to the latest firmware, I configured access in vpnssl via AD authentication, I can join the domain, but if I do the test on a user it tells me that it is not part of the chosen CN group even though it is.
-
How do you setup BWM to reserv some BW for SSLVPN road warriors users ?
The Flex H interface doesn't have anymore a way to use "SSLVPN zone" as an interface to define BWM rules. We can only use WAN or LAN interface. What is the best way to define a BWM rule to catch all SSLVPN traffic ?
-
restore configuration
Hello, For example: let say i have an usg flex, and rearanged the ports. Like: ik gave p1 the name WAN, and further i configured P2, p3 p4 and p5 as LAN. Wan is dhcp, lan is 192.168.1.1 with dhcp server turned on. I make an backup from the config in nebula. When i do a factory reset of te flex50h. the orinal names and ip…
-
Import Part(s) of a converted configuration file?
I used the "Configuration Converter" USG Flex 700 to 700H. Could I manually edit the configuration file for only the items I want to import? For example, I would like to export only the ipsec-vpn tunnels from the working 700 and import those tunnels to the 700H. It would be easier to edit the tunnels then make them from…
-
AP Log Settings
Please add more detailed log categories to the "AP & APC" log settings (similar to the router's log category settings). Currently we can only enable/disable logging. When enabled, the APs spam my syslog collector with nuisance logs (like system monitoring, interface statistics). The USG and Flex routers allow for…
-
VPNSSL OpenVPN
Hello everyone, they can create multiple openvpn ssl vpns in order to access different subnets based on the account (in the classic firmware versions it was possible)
-
Flex H BWM monitoring
Is there a way to monitor bandwidth usage for individual rules? Currently, without visibility into how much bandwidth each rule consumes, it's challenging to verify if the rules are behaving as expected.
-
Can this ARPing be stopped?
With FLEX H it tries to ARP on a WAN interface outside the given IP WAN it should not be needed to be done and my ISP does ignore them but best not to have them sent out also ARP broadcast when doing ping check ever 5 seconds plus more if you do another ping check rule in routing it would be best to only do a ARP broadcast…
-
Inactivate Internal Interfaces
Is there a way to inactivate/disable internal interfaces? Out of the box, the H series has ge3 and ge4 interfaces. I usually want the same untagged interface across all ports. However, I am unable to inactivate the ge4 interface and I have to assign it to at lease one port so that port is stuck on a different subnet. On…
-
Feature Request: VPN Policy IP Address Objects
When setting up IPSec VPN Phase 2 policies, it gives an option to select an address object. However, it limits objects to a "Host" or "Subnet" objects. Please add the ability to select "Range" and "Interface Subnet" objects as well.
-
USG Flex 500H Passive device HA mode MFA error
Hello, We have enabled MFA for the admin user. When the Passive device becomes active we cannot access the gui because the MFA is not working. When the Primary device returns active, we can access the gui normally. Tried with firmware 1.32 ga and 132ABZH0ITS-0423-250300903 Thank you
-
H Series AP Controller Support
Can you please add support for some older APs on the AP controller. I have a bunch of WAC6103D-I and NWA5123-AC HD APs at customer sites that do not appear to be supported by the AP controller on the H series routers. This is problematic as I try to upgrade customers off of the USG series to the Flex H series.
-
BWM Multiple Priorities
The H series BWM rules allows for setting a Priority (0-7)as well as download and upload limits. Documentation says that any given BWM rule can use any available extra unused bandwidth. However, it is not clear on BWM conflict resolution. How is extra bandwidth divided between rules of differing priorities as well as rules…