[NEBULA] NSG urgent patch has been released!

Nebula_Bayardo
Nebula_Bayardo Posts: 179  Zyxel Employee
5 Answers First Comment Friend Collector Seventh Anniversary
edited April 2021 in Nebula

Dear Nebula users,

On November 18th, a new NSG firmware patch has been released on Nebula Control Center fixing an issue identified in previous firmware released (October 28th). The issue causes the device loosing connection with Nebula under some unstable network cases; while the network functionalities keep running, the device is incorrectly displayed online on NCC and no statistics data or settings are being updated. Rebooting the NSG is required to reestablish the communication with Nebula again.

Make sure your device is properly connected to NCC and proceed to perform a firmware upgrade through the Firmware management page. Please be reminded that upgrading the firmware will imply a reboot of the device, therefore, an interruption on your network.

For more information about the new firmware version and its patch, please check our release note.

Comments

  • Alfonso
    Alfonso Posts: 257  Master Member
    5 Answers First Comment Friend Collector Second Anniversary

    Hi @Nebula_Bayardo

    Thanks for the information.


    Could you give us more information about the following topic:

    Non-Nebula VPN peers support IKEv2 and VPN Tunnel Interface for Azure static route support.

    Thanks in advance.

  • Nebula_Bayardo
    Nebula_Bayardo Posts: 179  Zyxel Employee
    5 Answers First Comment Friend Collector Seventh Anniversary

    Hi @Alfonso

    Azure supports two types of VPNs:

    • Policy based VPN : Requires IKEv1 and allows spoke sites to reach hub (Azure) site only. Supported by Nebula from day 1.
    • Route based VPN: Requires IKEv2 and allows spoke sites to reach hub or other spoke sites. Supported by Nebula on last major release.

    Nebula now supports IKEv2 and VTI creation to achieve the connection with Azure Route based VPN. You can find it in Security Gateway> Site-to-Site VPN> Non-Nebula VPN peers> IPSec policy.

    Hope it helps you!

    Bayardo

  • Zyxel_Chris
    Zyxel_Chris Posts: 705  Zyxel Employee
    Zyxel Certified Network Administrator - WLAN Zyxel Certified Network Administrator - Nebula Zyxel Certified Sales Associate 50 Answers

    Hello @Alfonso

    Sure, I'm working on it will update to FAQ once finish the handbook.?

  • Alfonso
    Alfonso Posts: 257  Master Member
    5 Answers First Comment Friend Collector Second Anniversary

    Thank you both very much.

  • CommsCo
    CommsCo Posts: 22  Freshman Member
    First Comment Third Anniversary
    edited November 2019

    Tried the update on two NSG 50 and two NSG100.

    Three have updated after a physical reboot, but one, despite two reboots, still remains on the previous version - any ideas?

  • Nebula_Bayardo
    Nebula_Bayardo Posts: 179  Zyxel Employee
    5 Answers First Comment Friend Collector Seventh Anniversary

    Hi @CommsCo after rebooting the NSG, can you see statistic data being updated on NCC?

  • CommsCo
    CommsCo Posts: 22  Freshman Member
    First Comment Third Anniversary

    Yes, but still no update to the firmware.

  • Zyxel_Chris
    Zyxel_Chris Posts: 705  Zyxel Employee
    Zyxel Certified Network Administrator - WLAN Zyxel Certified Network Administrator - Nebula Zyxel Certified Sales Associate 50 Answers

    Hello @CommsCo

    I'll PM you for the detail information, please check the inbox message.?


    /Chris

  • Zyxel_Chris
    Zyxel_Chris Posts: 705  Zyxel Employee
    Zyxel Certified Network Administrator - WLAN Zyxel Certified Network Administrator - Nebula Zyxel Certified Sales Associate 50 Answers

    Hello all,

    Update the status, the root cause is because the DNS fail to resolve the firmware server domain name, the issue gone after change the DNS server IP. case closed☺️


    /Chris

Nebula Tips & Tricks