Can i Trust a IP for SSL VPN ( we keep haing to unlock user)
Options
Afternoon
We have 30 users in 1 x office all SSL VPN into a USG 310.
We have to regularly keep connecting to the router and perform "unlock lockout-users x.x.x.x"
The WAN IP of this office is static and never changes
Can we do something so this IP address is never locked out on a bad password?
Or maybe can we extent the lockout attenpts to a higher value?
0
All Replies
-
There is no IP white list for this.
But you can change lockout maximum retry by CLI Router(config)# users retry-count xx
BTW, assume branch office most users need to access HQ site resource, I strongly recommend install firewall on 2nd office to establish site to site VPN. With site to site VPN, users in branch no need to connect to HQ site individually.
0
Categories
- All Categories
- 398 Beta Program
- 2.1K Nebula
- 117 Nebula Ideas
- 83 Nebula Status and Incidents
- 5.2K Security
- 99 USG FLEX H Series
- 247 Security Ideas
- 1.3K Switch
- 69 Switch Ideas
- 922 WirelessLAN
- 35 WLAN Ideas
- 5.9K Consumer Product
- 212 Service & License
- 337 News and Release
- 71 Security Advisories
- 21 Education Center
- 5 [Campaign] Zyxel Network Detective
- 2.1K FAQ
- 1K Nebula FAQ
- 445 Security FAQ
- 238 Switch FAQ
- 213 WirelessLAN FAQ
- 47 Consumer Product FAQ
- 142 Service & License FAQ
- 34 Documents
- 34 Nebula Monthly Express
- 72 About Community
- 62 Security Highlight