[USG Flex H] - Enable/Disable port

Maverick87
Maverick87 Posts: 45 image  Freshman Member
First Comment Friend Collector
edited September 30 in Security Ideas

Hello everyone,

can be a good idea have the possibility to manage the port connection, via a flag that enable or disable the port

1 votes

Active · Last Updated

Comments

  • Zyxel_Tina
    Zyxel_Tina Posts: 294 image  Master Member
    Zyxel Certified Network Administrator - Security Zyxel Certified Network Administrator - Switch 50 Answers First Comment
    edited October 1

    Hi @Maverick87,

    Thank you for sharing your idea with us! To better understand your request and evaluate it further, could you please help clarify a few points:

    • Could you share more about your usage scenario? In what situation would you need to quickly enable or disable a port connection? (Any examples would be very helpful.)
    • Just to confirm, are you referring to something like this screen, where there would be an additional toggle or column to quickly activate/inactivate a port?
    image.png

    Your input will help us better capture the requirement and consider possible improvements.

    Zyxel Tina

  • Zyxel_Tina
    Zyxel_Tina Posts: 294 image  Master Member
    Zyxel Certified Network Administrator - Security Zyxel Certified Network Administrator - Switch 50 Answers First Comment

    Hi @Maverick87,

    As we noticed that you have edited the post's subject, we would like to kindly remind you that I have also revised my response. Please check it in the previous comment. Thank you!

    Zyxel Tina

  • Maverick87
    Maverick87 Posts: 45 image  Freshman Member
    First Comment Friend Collector

    Hi @Zyxel_Tina ,

    I've changed the subject, I'm referring to a USG Flex H series.
    Can be helpful deactivate an unused port for completely deny the access to the system just for security, to reduce the network's attack surface, and to prevent unauthorized device connections. Disabling unused ports, you ensure that only approved devices can connect to the network, protecting against unauthorized access.

    And yes, I suppose to insert a enable/disable flag into the Interface —> Port path.

    Thank you

  • Zyxel_Melen
    Zyxel_Melen Posts: 3,976 image  Guru Member
    Zyxel Certified Network Engineer Level 1 - Switch Zyxel Certified Network Administrator - Switch Zyxel Certified Network Administrator - Nebula Zyxel Certified Sales Associate

    Hi @Maverick87

    Currently, you can remove the ports from the interface member list to prevent the port been unauthorized connected.

    At beginning, all ports are assign to interface.

    image.png

    To change the port member of ge3(P3 and P4 only), we can remove p5 and p6.

    image.png

    Only use p3 and p4 for your firewall, remove interface ge4 by following:

    image.png image.png image.png

    Then you can remove interface ge4 and get this result:

    image.png
    Zyxel Melen