Does USGFLEX100AX support software VPN clients?

Jmax77
Jmax77 Posts: 3  Freshman Member
First Comment Friend Collector

The last step in choosing my equipment upgrade is whether it supports software VPN clients like OpenVPN. This device is already recommended for my VOIP system; but I need to know I can easily connect devices remotely and without additional hardware.

Accepted Solution

  • Zyxel_Tina
    Zyxel_Tina Posts: 137  Zyxel Employee
    Zyxel Certified Network Administrator - Security Zyxel Certified Network Administrator - Switch 25 Answers First Comment
    Answer ✓

    Hi @Jmax77,

    Welcome to Zyxel Community!

    The USG FLEX 100AX supports software-based VPN clients, such as

    • Windows Native VPN
    • Zyxel SecuExtender

    However, OpenVPN is not supported on the USG FLEX 100AX. This protocol is only available on the USG FLEX H series.

    Zyxel Tina

All Replies

  • Zyxel_Tina
    Zyxel_Tina Posts: 137  Zyxel Employee
    Zyxel Certified Network Administrator - Security Zyxel Certified Network Administrator - Switch 25 Answers First Comment
    Answer ✓

    Hi @Jmax77,

    Welcome to Zyxel Community!

    The USG FLEX 100AX supports software-based VPN clients, such as

    • Windows Native VPN
    • Zyxel SecuExtender

    However, OpenVPN is not supported on the USG FLEX 100AX. This protocol is only available on the USG FLEX H series.

    Zyxel Tina

  • Jmax77
    Jmax77 Posts: 3  Freshman Member
    First Comment Friend Collector

    I have no trouble getting the SecuExtender to connect. Windows native VPN will not. How should I have the VPN connection configured in the Windows 11 VPN native client? Does Windows require L2TP? I've managed to get this gadget all set up with very little help- which is demonstrative of the simplicity of the Nebula system. I'm just at the very last stages of getting everything working.

  • PeterUK
    PeterUK Posts: 3,946  Guru Member
    100 Answers 2500 Comments Friend Collector Seventh Anniversary
    edited August 14

    Yes Windows 11 VPN native client does work depending on how you set it up

    like for L2TP/IPsec with per-shard key you need to setup as IKEv1 Phase 1 with Phase 2 Encapsulation Transport then you need to setup the Phase 1 and Phase 2 Proposal windows defaults but can be change by here for more info here
    https://learn.microsoft.com/en-us/powershell/module/vpnclient/set-vpnconnectionipsecconfiguration?view=windowsserver2022-ps

    Phase 1
    3DES SHA1
    key group DH2

    Phase 2
    Local policy 0.0.0.0
    AES256 SHA1
    PFS none