ChrisGer  Ally Member

Comments

  • Hi together, @bdb disableing the SNAT is only one part and do not fix the double SNAT as described. In your case All traffic from the Devices, that are attached to the USG is by default routed trough the WAN Port to the FritzBox -> that's by default working. You have to tell the FritzBox (by static route settings) where…
  • Hi @bdb it looks like, you are useing the fritzbox for VoIP and router from your ISP. As already mentioned by @PeterUK , you should be able to config a routeing rule at the fritzbox, that forward all traffic from 192.168.1.x to 192.168.1.1 (WAN interface USG20). At the USG20 you had to disable the SNAT to forward the…
  • Hi Glou, i've a short view in your post and reported problems with a USG. The USG60W is connected to your ISP Router (WAN1 to ISP Router) ? correct ? Have you disabled the NAT on the WAN Interface of the USG to avoid double s-NAT ? if not sure, check the option on the USG go to Configure icon, Network, Interface (TRUNK at…
  • hi @Zyxel_Stanley correct, if the WK19 is running, the AP show offline (grayed) and after a rollback the AP is up and running without any interaction/changes in the infrastructure. Regards Christian
  • Hi @Zyxel_Stanley thx for the quick response. compared to your screenshot, my USG has only a "slight" difference. 4.33-WK19 Status = grayed (not active) CPU Usage = 0% IP-Address = served by USG -> correct. Modell = NWA-3560N Group = correct one displayed LED Status at AP PWR/SYS = green ETHN = active WLAN1 and WLAN2 = off…
  • Hi @Zyxel_Stanley i've upgraded to 4.33Wk19 and my CAPWAP AP got a IP but not the AP-Group CFG trough CAPWAP :( after restarting the USG with 4.32WK52, the CAPWAP AP (attached to the USG) is comeing up successful :( any ideas ? e.g. convert from 4.32WK52 is incorrect to 4.33Wk19 ? No changes at the infrastructure.... only…
  • Hi @Zyxel_Stanley thanks for the quick response 😀 by your experiance, is it recommended to use V4.32(AAKZ.0)ITS-WK52-r86652 until v.435 is released in Q4/2019 or to upgrade to v4.33(AAKZ.0)ITS-WK19-r88384 to have the fixes from ITS v.4.32 and the new fixes from 4.33 ITS in place/production ? Thanks and Regards Christian
  • Hello @Zyxel_Stanley i know, it's perhapse not the correct thread, but you losee about 4.33 WK19. Is there any estimation, when the USG60W Firmware is on the Level (all ITS fixes are embedded) to V4.32(AAKZ.0)ITS-WK52-r86652? V4.32 ITS is stable, but i got the info a view time ago, the ITS features are not in 4.33 Pacht0…
  • @AriesUpNorth; @Zyxel_Stanley hi together, in some cases SIP-ALG must be disabled, cause i've two vendors (Zyxel and another one) :) where SIP-ALG is not 100% working and disconnect sporadical a call :) I've disabled SIP/ALG rebooted the USG to load the SIP deactivation and configured the in/outbound rules as required and…
  • @StefanLogar if you mean, the USG do not check for new firmware releases - that sideeffect is not given in my infrastructure, cause cloud services like dropbox, amazon are by default blocked at my ISP firewall. there a several request to zapimg.cloud.zyxel.com.s3-website-us-east-1.amazonaws.com and…
  • @Zyxel_Charlie / @Zyxel_Cooldia Please do not hit me, if i reply to @StefanLogar in german and not in english :/ yes, it's a pure english plattform, but i hope you understand, that's easier to talk to a community member in the native language directly :) i send him my activities to setup a USG behind a isp router (in my…
  • hi @StefanLogar is your external ISP Router (IP looks like AVM default IP) :) ? be carefull, ifh your USG40W and the ISP Router acting as SNAT Router device.With double SNAT you can have some side effects included :) I've a USG between LAN and DMZ Zone and behind a Layer7 Firewall, that is connected with the ISP Modem. ;)…
  • @Zyxel_Stanley and @Jigen i agree with Stanly his checkup. perhapse you can also see blockings in the LOG, if you enable the "default" rule at the end of the rule set? if you enable the LOG, are there any blocking information by your WiFi device (source-IP) ? If you use the USG60W iwith default config, the IP subnet tell…
  • Hi @Jigen how exactly does your topoligie look like (some more details), e.g. vLAN Support and Zone Object existing for the WLAN config ? Any MAC Filter probile existing in your WLAN config ? regards Christian
  • Ok, it could be a solution to change the old USG20 (EOL/EOS) device to a new 40/60 device. but the content filter is a seperate license that must be paied on top (1yr or 2yr subscription). Regards Christian
Default Avatar