ZyXEL XMG2230-52HP Anti-ARP Scan
Ally Member
So I've set up Anti-ARP scan on my switch and it seemed to work fine. As soon as I used Netscan, my device got blocked. So far so good, but so did my domain controller with DHCP running on(RTFM 😅). No problem, I added the IP-Address of my DC/DHCP to the Anti-ARP Scan Trust Host and thought everything would be fine.
But today I did a Netscan again and my device didn't block. Weird. The device I use is not domain joined and on a different switch port. As soon as I removed the trust host, it worked again? Is this a bug? Yes I could exclude the port where my DC runs on, but on that same port I also have my RD Gateway VM running on, if that one is compromised, I'd love to have Anti-ARP enabled on it. So that's not an option.
I run on firmware version V2.00(ACNO.1). Also in this firmware there is a bug considering the error count on the ports.(already mentioned that couple of months ago and ZyXEL classified this as bug, but no new firmware has been released since then)
Edit: think I found it. I filled in subnet mask 255.255.255.0 instead of 255.255.255.255, seems to work better now :) my bad
All Replies
-
Hi @nielsscheldeman ,
So glad to hear the issue has been resolved.
Regarding the next official firmware release for the XMG2230-52HP, it's currently scheduled for Q4 2026. Please follow the Switch News & Release section for any updates.
Zyxel_Judy
0
Categories
- All Categories
- 442 Beta Program
- 3.1K Nebula
- 237 Nebula Ideas
- 6.8K Security
- 740 USG FLEX H Series
- 376 Security Ideas
- 1.8K Switch
- 87 Switch Ideas
- 1.5K Wireless
- 58 Wireless Ideas
- 7.2K Consumer Product
- 319 Service & License
- 512 News and Release
- 99 Security Advisories
- 31 Education Center
- 10 [Campaign] Zyxel Network Detective
- 5.3K FAQ
- 34 Documents
- 91 About Community
- 119 Security Highlight
Zyxel Employee