Comments
-
Thanks for that info ! Great to hear, sorry it will have taken so long. Still, if a current (and still honestly very new) Flex unit is not included, that will mean I'm migrating clients away from Zyxel products.
-
Thanks !!
-
I have a device still on V5.00(ABUJ.2) but the update notes recommend upgrading to "ZLD5.10 C0 or later version first before upgrading to ZLD5.20" Is your documented procedure even *SAFE* for ANY unit more than one version behind ?
-
Agree with Trilogy. This is the height of incompetence.
-
We need 2FA via an OTP app (Google Authenticator, MS Authenticator) for VPN. By contrast, have you (Zyxel security team) REALLY thought through offering "increased" security with a 2-factor mechanism that requires exposing the Zyxel externally ? Thank-you for trying to keep on top of things, but you're several steps too…
-
Hi Zyxel_Can - thanks. In this case, specifically a USG20VPN.
-
Thank-you. But you're missing part of the point of my post. The guide for 4.35 says " * Recommended upgrade to ZLD4.32 C0 or later version first before upgrading to ZLD4.35. " Where is 4.32 ? It's not there, not the firmware, only the PDF. So it's safe to jump to 4.33 when the 4.35 guide calls for 4.32 ? Can you confirm…
-
Hi @ Nebula_Chris - awsome, thanks !
-
Hi @Zyxel_Can , could you please provide a direct link for documentation for this ? The current demo here https://flex500.zyxel.com/ext-js/index.html# only shows the old email or sms options :-/
-
Huge disappointment. Just quoted a (lovely) ATP500 and it won't be able to provide 2FA for VPN yet.
-
So this "BIG" announcement for 2FA is *no* different than what we already had: Google Authenticator for ADMIN account logins to the Zyxel device, only. IIRC that's been available for a while now. In 2012, we need to be able to have 2FA for VPN access, that does not require punching a HUGE HOLE in our firewall to allow…
-
This was solved by Zyxel_Emily - thank you so very much !! The fix is: "The IP address pool for IKEv2 cannot conflict with WAN/LAN/DMZ subnet even if they are not in use.Please check the pool of IKEv2 again." With a screenshot suggesting a configured IKEv2-Pool address object, with IPs from 100.100.100.1 - 100.100.100.10…
-
Thanks very much !
-
Hi, I would love to get this working ! However, I'm in the US and can't download the referenced PDF, http://www.zyxel-tech.de/files/New-Gen_USG_IKEv2_iPhone.pdf Could anyone please share all of the specified settings for phase 1 & phase 2 ? Thank-you in advance, be it @Zyxel_Emily or anyone else.
-
+1 !!!