Zyxel_Richard  Zyxel Employee

Comments

  • Hi @MichaelB , Yes, after internal investigation, we figured out the root cause of the case, and fixed in the later released firmware. Since the issue is fixed several years ago, may I know if you faced some issues on Dynamic VLAN as well? Best Regards, Richard
  • Hi @relja Yes, client can roam successfully in your topology. Just to make sure two things below: 1. Both APs need to have the same SSID with the same security settings. 2. Please don't put two APs too far away from each other, generally 15-20 meter will be appropriate. Best Regards, Richard
  • Hi baba, Just like I mentioned, the captive portal function on firewall prohibit unauthenticated devices from ‘accessing the Internet’, however they can still get IP address. (Just think each need an IP address to see the web page, and even send credential for authentication) Meanwhile WPA3-enterprise is authenticate users…
  • Hi baba, We can made a feature request for this. The reason why they currently don’t synchronize is because, these two mechanisms (WPA2/3-enterprise authentication and Firewall portal authentication) are made for different purpose: one is for WiFI access control, and the other is for Internet access control. so if some…
  • Hi @baba After checking the settings of your Nebula site, share our findings below: This is our currently design that separate WPA2/3-enterprise authentication and Firewall portal authentication, since one is for WiFI access control, and the other is for Internet access control. We can for sure make a feature request and…
  • Hi @baba can you enable the zyxel support under [Help > Support Request > Invite zyxel support as the administrator > save], and provide us your Org and Site name, so that we can further check your settings in? Also, when you face the certificate issue, please open your safari browser, and then enter a url "neverssl.com",…
  • Hi Sir, The client number depends on how many bandwidth/wireless resources you want to assign on each station connecting to one AP. For example, 5GHz radio can provide about 550 mbps for most current clients (Wi-Fi5 standard with2x2 antenna equipped). The more clients connecting to the same radio, the less resources each…
  • Hi @baba, Let me further explain the detail process of the first approach: 1. On the SSID Profile, set WPA3-Enterprise with NCAS (So when user want to access Wi-Fi, they have to enter the correct username/password first) 2. And on the Firewall setting page, You can then enable the sign-on method on the given subnet, so…
  • For other community members, this discussion is split from the original discussion thread below, kindly check it if you're intersted in it : https://community.zyxel.com/en/discussion/13398/wpa-enterprise-wifi-certificate-error-while-fetching-mails-from-office365. Please noted that, the sign-on function on the firewall will…
  • This discussion thread has been split to the other discussion thread. for further discussion of this case, please refer to : https://community.zyxel.com/en/discussion/13405/vlan-and-wifi-ssid-nebula-authentication-at-the-same-time#latest
  • Hi Sir, Thank you for letting us know your concern and scenario. We'll keep collecting users' opinion and see how to improve our products and make it more user-friendly. Best Regards, Richard
  • Hi Businessuer, Can you please give us more information about why you'd like to change the default setting and add VLAN ID=1 on lan1 interface? Because based in our design, by default there's no need to change the VLAN ID, and if user realize they have the requirement to modify the VLAN (especially set the VLAN"1" ), they…
  • Regarding to the VLAN setting on the firewall, it's behavior is: 1. If there's no VLAN ID set on lan1, firewall will be able to receive and reply the packets which don't have any VLAN tag on it. 2. After you add VLAN ID=1 on lan1, firewall can only reply to the packets which is tagged with "1" (And by default, most network…
  • Hi Sir, There're several ways to achieve your goals, which depends on the "Structure" and "License Status" of the contractor's Nebula Control Center, listed below: 1. If the contractor create a dedicate "Nebula org/site" for your case, They can simply use "organization owner transfer" to transfer to ownership of both…
  • Hi sir, You can use command through SSH to shut down the port 80, but every time you change the AP settings on Nebula, the Nebula will push the configuration to AP and overwrite the setting you’ve just set up (to be the same as cloud setting), therefore the port 80 will be enabled again. If you do need the command, this is…
Default Avatar