評論
-
Hi. Have same issue on ATP 800 and old 1100 devices. In my situation help change preshared key on both devices. "Helps only change Authentication method on both side. If it was certificate, than change on preshared key, Or vice versa." I wrote in topic
-
🤦♂️ I wrote, the issue start after update to V5.36(ABIQ.1)ITS-23WK21-r109592, that = 5.36P2. So i let you know, that problem continues.
-
The issue returns with bigs steps. We change old unsupported usg 1100 to new great supported the best ATP 800 some months ago. FWs on ATP were V5.35(ABIQ.0)ITS-23WK12-0331-230301541 & V5.36(ABIQ.1)ITS-23WK21-r109592 now installed. On atp around 60 ipsec tunnels to other ZW: 27 to old usg1000, others to ZW110/Flex50w/100.…
-
Zyxel days wo shit in pants: 0
-
Hello. 6 day on 5.36-23wk17 wo reboots. still testing. P.S. on 5.35 device works properly around 1 month, so wait.
-
i don't see fw for zywall 110/usg 1100.
-
Don't install yet. Test initial 5.36. Many-many reboots. After next reboot change to WF.
-
Hi. 1 i can't share screenshot, i can share messages about ARP attack from central syslog server 2 All Zyxell firewall devices. vpn_l3 & vpn_l2 interfaces on problem ZW device. All devices connected via vpn_l2 interface, its ISP L2 VPN. In logs, ARP goes from vpn_l3 mac, that disabled & don't connect to other ZW. 3 Yes,…
-
Access Denied. Is this 5.36 FW, that hangs device?
-
Mmm…no. Because we downgrade FW, because our sites don't work.
-
3 new unexpected reboots on weekends. Thanks for great holidays days!
-
Hi all. Same issue on 4.73p1/5.36. As i see by logs, the problem in memory leaks. A look in to history data: ZW 110 4.73 memory usage ZW 110 4.73p1 On memory usage more 85% device starts hanged. USG Flex 50W 5.35 memory usage USG Flex 50W 5.36 memory usage That shit never ending😥
-
4.36 same problem
-
Hello @Zyxel_Kevin I wrote on 4th line of question that "Adding them to whitelist don't help" Config: service-object DNS_TLS tcp eq 853 idp anomaly white-list activate idp anomaly white-list allow_dns_tls source local_range_ip destination dns service DNS_TLS activate Traffick blocks with messages src="ip_from_…
-
Yes, i mean that. In beginning this 2 VTIs was in 1 default ipsec zone. After i remove vti999 grom ipsec zone and add to new custom zone cloud, traffic not start blocking. Accepts by rule PSec_VPN to IPSec_VPN