Comments
-
Yes, that's my hypothesis too. And that's very unfortunate from my perspective as I won't have access to those channels (or if I could, it would most probably be more expensive and awkward in terms of maintenance. It's unfortunate also since ZyXEL is a brand I trust (and use, as I also own an USG60 and a managed switch at…
-
Hi Tony, thanks for the feedback. Yes, I did see those products too in the catalog, but if you look further you'll notice that for the newer ones (the AX line) there's not even a data sheet nor a detailed specs page, and you can't find them (or, well, I couldn't find them) in the support pages to check whether any firmware…
-
Thanks Peter. I should find a box to give this job to, and study a bit of bind as I recall reading it requires some consciousness in configuring it not to open some security concern. But it might be instructive on the whole.
-
Hi Peter, thanks for the feedback. A bind DNS on another box and make the USG point at it ?
-
10 each. I have no idea whether they are too many or an acceptable number. Is there somewhere I can look at for a guideline ?
-
Yes I have groups of FQDNs. Legitimate IMAP FQDNs ed SMTP FQDNs for my different email accounts are grouped, with related dedicated TCP services, in two respective groups and two respective security policies (e.g. I don't want anything in my LAN to connect outside to spam the world via an obscure SMTP server).
-
Hi Peter, thanks for your attention as well. I've not tried to inactivate/re-activate the rules indeed (surely I'll do it next time). But I did check the FQDN were translated and they did. As for your other question, I don't have 1st level FQDNs, I rather have imap.google.com and smtp.google.com
-
Thanks Jerry, I keep a note for the next (unpredicatable) time it happens. It'd be complex to connect to the console as the firewall is strictly fit within a small rack in my basement, I usually have to disassemble the rack to access the rear of the appliance. Anyway, if circumstances allow for it, I'll give it a look, I'm…
-
HI roadrunner, thanks for taking care of this. The info looks promising. In the meanwhile I completely removed anything pertaining the client on my Mac (not the USG60, which is happily working). I'll take care of these info this notwithstanding, I suspect they might turn out useful again in the future. Regards Peppe
-
Thanks Zyxel_Stanley for your attention too. I apologise for the delay. The problem is that even AppClean doesn't detect the app as installed by specifying any search string like "zyxel" "zywall" or even only "zy", neither it accepts a drag&drop from any content within the above path in my previous message. My situation…
-
Thanks @CHS for your attention. I should have mentioned that the problem is that there's no trace in the Applications folder of the app, neither looking for ZyXEL nor SecuExtender or similars. It's just that I can see this running process: <div>/Library/Application Support/ZyXEL…
-
That was it Mark ! Thanks a lot not only for your attention, but since you got it right and solved my problem, the admin GUI is now fully usable via IPSec as well. Thanks again. Peppe
-
Thanks for paying attention to this Charlie. No, unfortunately it didn't help. Indeed, it looks that the problem is not of a mere routing, since at first I can easily (quickly indeed) reach the login page of the USG GUI. It's once I'm authenticated (and I do, I can see it in the logs apart from seeing the login page…