USG 20VPN web interface Blocked
I put an additional port on the NAT and the connection to the router dropped, at the moment I can't access the router through the browser, I've already restarted the router and the problem remains, any tips to access the router and convert what was done in the NAT?
Accepted Solution
-
As I mentioned, the CLI command can show the NAT profile and disable it.
Router# show ip virtual-server
This command will show all the virtual server profiles, and find the profile name of the rule you edit.Router# configure terminal
Router(config)# ip virtual-server deactivate <profile_name>
This command will disable the specific virtual server profile1
All Replies
-
Hello @Pedro_Brito
You can connect to the console port and access the device by SSH or Telnet, then use the CLI commands.Router#show logging entries keyword nat
This command will show the logs related to NAT, maybe you can see the logs about the change of NAT settings. Please note that the log may be washed if there are much newer logs.Router# show ip virtual-server
This command will show all the virtual server profiles, and find the profile name of the rule you edit.Router# configure terminal
Router(config)# ip virtual-server deactivate <profile_name>
This command will disable the specific virtual server profilePlease refer to the CLI guide if you want to edit the virtual server profile settings by CLI.
https://download.zyxel.com/USG20-VPN/cli_reference_guide/USG20-VPN_5.35.pdf
2 -
Thanks, i will try but something tells me I'm going to have to reset the router.....:(
0 -
@Pedro_Brito USG20-VPN have in the box the cable for console access. Consider this as opportunity to revert/disable your NAT setup. Won't be fast & easy, but might save you to reconfigure the whole device.
1 -
Does anyone know the command to disable NAT?
0 -
As I mentioned, the CLI command can show the NAT profile and disable it.
Router# show ip virtual-server
This command will show all the virtual server profiles, and find the profile name of the rule you edit.Router# configure terminal
Router(config)# ip virtual-server deactivate <profile_name>
This command will disable the specific virtual server profile1 -
Problem solved, thanks Zyxel_James for the tips, saved me a few hours of router reconfiguration :)
0
Categories
- All Categories
- 415 Beta Program
- 2.4K Nebula
- 151 Nebula Ideas
- 98 Nebula Status and Incidents
- 5.7K Security
- 277 USG FLEX H Series
- 277 Security Ideas
- 1.4K Switch
- 74 Switch Ideas
- 1.1K Wireless
- 42 Wireless Ideas
- 6.4K Consumer Product
- 250 Service & License
- 395 News and Release
- 85 Security Advisories
- 29 Education Center
- 10 [Campaign] Zyxel Network Detective
- 3.6K FAQ
- 34 Documents
- 34 Nebula Monthly Express
- 85 About Community
- 75 Security Highlight