-
SSL VPN block access USGFLEX100H
Hello I'm configure an SSL VPN (OPEN VPN CLIENT) but firewall block it (ACCESS BLOCK). I think there is something wrong on security police but I don't find solution. Can you help me? Thank you
-
No sessions for traffic through the bridge
USG FLEX 200H V1.30(ABWV.1) All sessions click search no sessions for traffic that goes through the bridge show? And yet the dashboard seems more correct for the total sessions
-
SSL VPN - Push DNS domain - route
Hi everyone, I'm starting to find myself comfortable with the H series firewalls, especially for the VPN part. I was used to creating configuration files with custom Linux servers, where I inserted this code: push "dhcp-option DNS xx.xx.xx.xx" push "route 192.xx.xx.xx " push "dhcp-option DOMAIN xxxx.local" For traffic…
-
OpenVPN very slow (usg Flex200H 1.30 patch1 )
hello with our usg flex 200H (FW 1.30 patch 1) remote vpn with openvpn is very slow to open large files. browsing in remote file server is fast but when we open large files (for exemple a 27 mo dwg file) the bandwith stucks at 2mb/s max (we have fiber connection between office and remote user) IPS scan is disable
-
FLEX 100 H - policy route and next hop
On my old USGs I could select the vpn tunnel as the next hop. On the flex 100 h I have no option under the policy routes. I created to site to site vpn tunnel, but no option. Is there something new that I don't know or understand? Thanks for the help!!
-
Timeout for WebSocket KeepAlive
Hello everyone, I would like to know if it is possible to change timeout for WebSocket KeepAlive because sometimes it is too short and you have to re-login in the device: to complete the configuration you are doing with FlexH series devices.
-
FLEX100H: Domain Zone Forwarder not go through Policy-based IPsec VPN
As a follow-up question to: The configuration of Site1 and Site connected through Policy Based VPN: There is a DNS server in Site1 (Server1) for internal domain. Clients from Site1 us Zyxel1 as DNS server. Queries to local domain are properly forwarded to Server1. A Domain Zone Forwarder for local doman to Server1…
-
FLEX200HP V1.30(ABXE.1)C0 issues with UK BT PPPOE
Hello, I am a UK user with BT broadband. I use a draytek 166 UK version as modem and have PPPOE connection linked to the P1 of my FLEX200HP Since V1.30 patch 1 the FLEX200HP has dropped the connection with the PPPOE and now keeps saying 'ERROR: Failed to dial.' when I try to connect manually from the WEB GUI. Can you…
-
FLEX100H: Traffic from Zywall not go through Policy-based IPsec VPN
Hi, I have two sites connected by Policy-based IPsec VPN (created with wizzard) as: Site1 Site2 -Zyxel1 ←Policy-Based IPsec VPM→ -Zyxel2 -Server1 -Server2 A VPN is working, traffic flow between Server1 and Server2. However, I could not access Server2, from Zyxel1. There is no response to:Zyxel1> cmd ping Server2, and I…
-
Flex 100HP - wrong "password changed date" value
Hello everyone, I went for a walk among the settings of the new Zyxel family POE firewall and I noticed that the firewall tells me that yesterday (2024-10-10) I changed my password: I never changed it since first installation (2024-10-04).
-
Firmware USG20
Good morning, everyone, I have found an old Firewall USG20 with firmware 3.30, I would like to use it for testing but I need to upgrade it at least to firmware version ZLD 4.20 to be able to use it. Support is no longer active and I can't find the 4.20 firmware download anywhere, could someone kindly give me a link or a…
-
FLEX100 + GS1200-5HP v2 and VLAN
hi, I have a Flex 100 firewall. On one port, there is a trunk, including VLAN55, going to GS1200-5HP2 switch. The switch has two relevant ports for this question: one of them is in trunk mode, where the trunk includes VLAN 55, connected to NWA1123 -AP. The other port is untagged, and set for VLAN55. Now: traffic flows…
-
Odd MAC to no where
V1.30(ABWV.1)ITS-24WK47-m6271 So its fixed now but was really odd I had a VLAN47 with a reserved IP 192.168.255.41 to MAC VMtestPC the VMtestPC get the IP does the ARP to the gateway 192.168.255.39 send a ping but then the gateway send the reply to this known to me MAC Microsoft_f8:a1:0a (00:15:5d:f8:a1:0a) even if I ARP…
-
WFH VPN impacted after updating 100H to 1.30(ABXF.1)
Two days ago updated my 100H to the latest 1.30(ABXF.1) from 1.21 firmware version to resolve the issue of the device locking up/freezing every 3-5 days at random times (hopefully I will find my answer by next week). My new issue is that my business computer VPN connection is now so slow that it takes 20 seconds to open a…
-
SSL inspection
We use two USG Flex 200 H and on both devices we have problems with SSL inspection. The problem is that the websites load extremely slowly. Some pages not at all. I don't know whre I can make a mistake because the settings are simple. Is here someone who have the same problems. Is this a bug of the firmware? We use the…
-
USG FELEX 500H, Request failed with status code 500
Device update does not work! The update does not work through Nebula! Even though I bought the license, nothing changed!
-
How to Setup a NAT Rule (Port Forwarding)
I would like to know how to set up port forwarding for my QNAP NAS with the Zyxel USG Flex 200H. The menu at USG FLEX200 is slightly different from the old USG110
-
2 ISP (WAN 1 and WAN 2 ) USG FLEX 200
I need to create two vlans on LAN 1 Vlan 1 -> bussines network --> WAN 1 but failover to WAN 2 Vlan 2 --> private network --> WAN 2 but failover to WAN 1 Can you help me on how these two Vlans should be configured? Thanks in advance.
-
USG FLEX200 HP Update problems
Hello I am trying to put a new USG FLEX 200 HP into operation. It is currently running with firmware V1.10(ABXE.0) Unfortunately I cannot connect to the update services. I get the error: Device Registration Status: Not Registered Request failed with status code 500 The device is registered in Nebula. I also see that there…
-
Big FQDN list cause UI and FLEX H lockup
FLEX 200H 1.30(ABWV.0) So I have a group (one big one with 2 in) of FQDN and its causing a lockup here is the list I also have a big list of SMTP address ranges This is a Error after a reboot / object address-object address "office_com" "type" "fqdn" "*.office.com" "expire_ttl" "true" / object address-object address…