Rancid or oxidized support for USG

tsch
tsch Posts: 9  Freshman Member
First Comment
edited April 2021 in Security
Does anyone Know if there is support for the Zyxel USG's for Rancid or Oxidized. I was unable to connecct with them to the Zyxel USG's. Has anyone already tried connect them and was successful, if so can you share your config ? 

All Replies

  • Ian31
    Ian31 Posts: 174  Master Member
    5 Answers First Comment Friend Collector Sixth Anniversary
    An interesting tools.

    I just test rancid and works for the first part of clogin.
    It can auto login to USG and run CLI commands in a script file.
    # clogin -f .cloginrc -x myscriptfile.txt 192.168.1.1
    With cron job then I can schedule an automatic configuration change task. 
     
    About the configuration backup and differ part.
    It need to modify the "rancid" Perl script to support zyxel USG device. 
    That's a little bit above me that didn't learn Perl script.
  • Ian31
    Ian31 Posts: 174  Master Member
    5 Answers First Comment Friend Collector Sixth Anniversary
    @tsch
    Here comes the modified rancid script I test with rancid 2.3.8 on my raspberry pi3.
    Replace "rancid-fe" and  add "zldrancid" into /var/lib/rancid/bin directory.
    Enjoy !

    Note:
    I just test with the basic configuration backup to CVS repository.
    The filter function of password, snmp,etc. might not work.
  • tsch
    tsch Posts: 9  Freshman Member
    First Comment
    Rancid 2.3.8 is very old. Do you have a newer Version of it. Also  Oxidized would be very interesting.

Security Highlight