Bình luận
-
Do you have other tunnels setup? I suggest you use strongSwan VPN Client
-
Is "Enable IP/MAC Binding and DHCP Enforcement" checked for LAN2?
-
One might only like email-based 2FA authentication over Google Authenticator or your not able to have Google Authenticator At this time for my setup that a hope Kay gets round to looking at 2FA just does not work with firewall on for some reason. So what I don't know is does 2FA page meant to work over the VPN tunnel when…
-
If your setting up a device with static IP on LAN2 for it to get to the internet you need to set the gateway and DNS both can be to the LAN2 interface gateway. If ping to 1.1.1.1 works but not DNS you need to have a firewall rule from LAN2 to zywall or if DNS works but timeout to 1.1.1.1 you need from LAN2 to WAN
-
Likely to do with zones did you given VLAN20 a zone? then you need from LAN1 zone to VLAN20 zone
-
set for VPN connection for Policy for Local policy to 0.0.0.0
-
Yes FLEX H can be configured as standalone I think you need under Clients will use VPN to access Local Networks Only (Split Tunnel) as for the other thing are you talking about this bit on non H models? the admin service control? you can lock down access to Flex H by policy control not tested access to FLEX H over VPN but…
-
Ok thanks was just checking
-
Ok update this got fixed in V1.31 with the added Secondary IP box but sadly no way to do DHCP with Secondary IP box :(
-
With H models you have to config from scratch
-
@Zyxel_Kay I still have a problem in needing to disable the firewall completely to get to the 2FA Authorization Page for some reason I can either give you remote access to a test PC with VM or you can have my config to see the problem which ever is best if you like to take a look for me. However with the firewall disabled…
-
Just updated firmware today V1.31 and it still only used running slot the standby slot still old V1.21(ABWV.0)ITS-24WK43-1022-241001089
-
update so not a Ghost but when I disabled DHCP options for Ge4 this removes added interfaces / vrf "main" interface ethernet "ge4" ipv4 address "192.168.255.253/26" But as to why traffic like PoP going to 192.168.255.253 works is to do with NAT rules even if 192.168.255.253 interface is removed NAT acks as a interface for…
-
OK Kay so one 2FA via Goole Authenticator dose not work on FLEX200H for VPN even if I set to a LAN interface go to HTTP://192.168.255.235:8008 I get no page even with a firewall rule allow from any to Zywall for port 8008 only when I disable the firewall do I see the Authorize page and even then when tested with SSL VPN…
-
Do you also have routeing rules with ping check? as I have found that interface ping check and routeing ping check for the same WAN interface don't play nice