How to allow anydesk through usg40 firewall
All Replies
-
HI @Tushar
I suppose the log is: "abnormal TCP flag attack detected, Drop"This issue occurs when the device receives packets with:
(1) ALL TCP flags bit are set at same time.
(2) SYN, FIN bits are set at same time.
(3) SYN, RST bits are set at same time.
(4) FIN, RST bits are set at same time.
(5) Only FIN bit is set.
(6) Only PSH bit is set.
(7) Only URG bit is set.
Therefore, the device detects and regards these packets as attacks.
If you are sure these packets are safe, you can log into the device and enter the following CLI commands to disable this detection:
Router(config)# secure-policy abnormal_tcp_flag_detect deactivate
Regards0 -
Hi @Tushar,
With default configuration, Anydesk is not blocked by USG.
PC2 can access PC1 by Anydesk successfully without extra firewall or NAT settings.
PC2------Internet------(WAN)USG40(LAN)------PC1(Anydesk)
If there are lots of "abnormal TCP flag attack detected, DROP" logs, you can follow the instruction from Alfonso to enter the CLI command to disable/enable abnormal tcp flags detect.
Disable detect: secure-policy abnormal_tcp_flag_detect deactivate
Enable detect: secure-policy abnormal_tcp_flag_detect activate
For example:
Router(config)# secure-policy abnormal_tcp_flag_detect deactivate
Router(config)# write
Router(config)# show secure-policy status
secure-policy status: yes
secure-policy asymmetrical route status: no
secure-policy default rule: deny, log
secure-policy tcp flag detect: no
See how you've made an impact in Zyxel Community this year!
https://bit.ly/Your2024Moments_Community0
Categories
- All Categories
- 415 Beta Program
- 2.4K Nebula
- 153 Nebula Ideas
- 99 Nebula Status and Incidents
- 5.7K Security
- 278 USG FLEX H Series
- 277 Security Ideas
- 1.4K Switch
- 74 Switch Ideas
- 1.1K Wireless
- 42 Wireless Ideas
- 6.4K Consumer Product
- 250 Service & License
- 395 News and Release
- 85 Security Advisories
- 29 Education Center
- 10 [Campaign] Zyxel Network Detective
- 3.6K FAQ
- 34 Documents
- 34 Nebula Monthly Express
- 85 About Community
- 75 Security Highlight