PhilippeB  Freshman Member

Comments

  • I agree that the H series firewalls should include all the features and possibilities as previous models. Without inspection by policiy we'd run into severe problems because IP exceptions can't handle all the conditions (e.g. service, devices, user) that policy control can easily. For the good money of a H series…
  • @HendrixChana , I received the notification about an answer in this thread: But I'm unable to open it. I only get the following error messages: Can you post it once more please?
  • The answer to the last question probably solves the mystery. As you can see in the screenshot, it's a /21 network. That's why the GUI allows a pool size of 1023 addresses. My customer doesn't nee more than 500 DHCP addresses, but would like to have all of them with three digits on the fourth octet (just for cosmetic…
  • It's hard to understand why Zyxel has released the H series firewall despite the fact that the product is far away from being ready and useful. It lacks too many features and is quite unstable. We are runnig a 200H in a test environment only. By the way, does your model updates its signatures? Ours does not.
  • Another thing is the new dropdown menu which always appears in the right bottom of the screen. On huge screens it's a little bit strange:
  • We'll be very happy to try it. It is a FLEX 200H (we have it running with firmware 110ABWV1ITS-23WK50-r288617f4).
  • @PeterUK , thanks for your confirmation. We thought that there isn't a simple way. We probably solve it with a workaround and we'll define placeholders in the static DHCP table like this:
  • Hopefully version 1.20 will also contain many corrections, because the GUI crashes regularly and often there is no other option but to restart the device.
  • Are there any news? Without inspection by policy, we probably look for other models/brands. We use the function now on a countless number of USG 200 devices. Sometime, we'll have to exchange them.
  • The ATP and USG FLEX series have the possibility to have all the security services linked to one or more security policies. The Zyxel Online Web Help describes it in detail: After this is done, the IPS screen looks like this and IPS can be set to policy-based inspection: Now it's possible to link IPS to policies from WAN…
  • Kevin, thank you very much for your reply, although of course it means that our customers won't be able to use the new H series productively for a long time yet.
  • I'll explain it with some screenshots. In the previous models it was possible to link each of the security services individually to one or more security policies: This function makes it much easier to set up complex scenarios and keep a simple overview. Without this function, unneeded or even interfering security services…
  • Yes, the table in the Firmware Release Note V1.10 mentions FQDN as not supported yet. But is there a roadmap with an expected date? It's understandable that complex functions have not yet been implemented and have to be tested thoroughly. I know that the function wasn't initially available on the now called legacy devices.…
Default Avatar