Zyxel SMS Service for 2FA is down
Good morning
The Zyxel SMS service for two factor authentication (2FA) for the ATP series Firewall is now down for 24 hours. We use it on all our customers firewall for SSL VPN and the admin login on the firewalls. So, now it is impossible to remotely login the firewall or set up a VPN. What is happening? Zyxel seems not doing anything, no announcement or any idea when it will be fixed.
Due to COVID-19 (Corona Virus) people should stay home and use home office by connecting with VPN, but this is not possible as 2FA is not working and nobody can login or set up a VPN.
Seems Zyxel just adds the cheapest service - probably some guys even got money from ViaNett - and then let the users alone. Unbelievable!
Cheers,
Rolly
All Replies
-
Hi @Rolly
What device and firmware are you current using?
Can you collect the diagnose info and private message to us?
Here is the step to collect diagnose info
Go to Maintenance > Diagnostic > Diagnostics > Collect > click Collect now
It will take 5~10 minutes to collect
After done the the collection
Go to Maintenance > Diagnostic > Diagnostics > Files to download the files and private message for us.
Share your feedback through our survey, make your voice heard, and win a WiFi 7 AP!
0 -
Hi Jerry
First, I have to explain the SMS Service to you, as you don't understand that it is impossible to log in without the SMS service once activated.
The idea of the SMS service is to have a two factor authentication (2FA), so you do not only need the username and password, but you also receive an SMS with a code. This code you enter during the login process to the firewall.
So, if you do not receive an SMS it is not possible to log in the firewall. Therefore it is also not possible to access any diagnostic data.
Don't tell me like other people to exclude some user or protocols from the 2FA, as you know, a chain is only as strong as its weakest link.
Finally the problem was caused by the SMS provider that was offline for two days.
For such cases normally companies implement a small set up backup-codes - like Zyxel did with Nebula - or use a backup provider.
Cheers,
Roland
0
Categories
- All Categories
- 415 Beta Program
- 2.4K Nebula
- 144 Nebula Ideas
- 94 Nebula Status and Incidents
- 5.6K Security
- 237 USG FLEX H Series
- 267 Security Ideas
- 1.4K Switch
- 71 Switch Ideas
- 1.1K Wireless
- 40 Wireless Ideas
- 6.3K Consumer Product
- 247 Service & License
- 384 News and Release
- 83 Security Advisories
- 29 Education Center
- 10 [Campaign] Zyxel Network Detective
- 3.2K FAQ
- 34 Documents
- 34 Nebula Monthly Express
- 83 About Community
- 71 Security Highlight