VPN100 to USG FLEX 500H Upgrade Path
Freshman Member
I am getting ready to replace our VPN100 with a USG FLEX 500H. When I go to the online configuration converter and select VPN100, the only option for the target is USG FLEX 200 and USG FLEX 200H.
Is there a path from the VPN100 to the USG FLEX 500H or do I need to configure the 500H manually?
P.S. I tried multiple times to submit this to support via the online submission form and the form never submits.
All Replies
-
Hi @MattKRRA
VPN100 doesn't support to convert the configuration to USG FLEX 500H since the physical hardware difference. It only support to USG FLEX 200H/200HP.
However, it is recommended to do the conversion to USG FLEX 200H first so you can copy some part of settings, like security policy & security services, for reducing the configuration period.
About the failed submit via the online submission form, could you share the site/URL that you submitted?
Zyxel Melen1 -
Hi Zyxel_Melen
Are you saying that I should convert the VPN100 configuration to USG FLEX 200H and then load it into the USG FLEX 500H as a starting point?
The URL of the submission form I had trouble with is:
0 -
Then idea is the format of VPN100 and FLEX 500 H are different like how objects are listed in the config
so if you convert the VPN100 configuration to USG FLEX 200H you can't use it for 500H but the config file of the convert has compatibility listing of objects so you save the config of 500H open config 500H open then convert for 200H and copy and paste bits of the setup so if you have 200 address objects you can move them over to the 500H config file
0 -
No, convert the VPN100 configuration to USG FLEX 200H and then load it into the USG FLEX 500H will not work.
Please allow me to share the steps:
- convert the VPN100 configuration to USG FLEX 200H to get converted configuration.
- Access to your USG FLEX 500H and download the start-up configuration.
- Open USG FLEX 200H configuration and copy parts of configuration to overwrite the same part in USG FLEX 500H configuration.
These part only: "dos-prevention", "anti-malware", "app-patrol", "content-filter", "dns-threat-filter", "external-block-list", "ip-reputation", "IPS", "sandbox", "snmp", "url-threat-filter", "address-object" exclude interface-subnet type, "service-object" if you created manually before. - Other part is recommended configuring manually since might relate with interface settings.
Zyxel Melen0
Categories
- All Categories
- 442 Beta Program
- 3K Nebula
- 231 Nebula Ideas
- 131 Nebula Status and Incidents
- 6.6K Security
- 671 USG FLEX H Series
- 360 Security Ideas
- 1.8K Switch
- 87 Switch Ideas
- 1.4K Wireless
- 56 Wireless Ideas
- 7.1K Consumer Product
- 307 Service & License
- 500 News and Release
- 96 Security Advisories
- 31 Education Center
- 10 [Campaign] Zyxel Network Detective
- 5.1K FAQ
- 34 Documents
- 89 About Community
- 111 Security Highlight
Zyxel Employee
Guru Member