Quantcast
Channel: ZyXEL forum - dslreports.com
Viewing all 1492 articles
Browse latest View live

ZyWALL 110 - password expired, and could not be changed

$
0
0
Just for your information (might be useful to others): I suddenly had a hell of a time trying to log-in into the web interface of my ZyWALL 110. When logging in I got the message "As a security precaution, it is required to change your password". Apparently this is a new feature since the latest firmware update, that has been enabled and set to come up after 180 days by default. So it must have been 180 days since I updated the firmware. This is a good security measure in itself, but it would be better if this was communicated more clear: at least I was not aware of this change. Anyhow, the problems started when I tried to change the password through the login screen: the new password was not accepted, and I got the message "Invalid username or password". I am 100% sure that this new password was in accordance with the complexity rules as defined in the ZyXEL manual. But I tried it several times with different new passwords, all of which should fulfill the password complexity rules, but got the same message every time, and after five attempts I was locked out. So I was already afraid I had to reset my Z110 and start from scratch. But then I tried to log-in via a CLI connection, and luckily I was able to log-in (still using the old password). So I created a new admin user through the CLI, using these commands: Router> configure terminal Router(config)# username password user-type admin With this new user I could log-in into the web interface, and modify the password of the old admin user via "Object -> User/Group". After that I also could log-in again with the old user. So all fine in the end, but it was a frustrating experience...

USG60W - The admin password suddenly doesnt work. Can reset by CLI?

$
0
0
This is very strange. I've been using this USG60W for 2 years. I setup a password, wrote it down, and been using it without issue until now. After trying it a few times it locks the IP. Tried powercycling. It comes back to work as usual, but still doesn't let me login to the admin web interface. Not sure if it's a malfunction or what the issue may be. Nobody else has physical access to it (it's in my basement). If I connect through the CLI console, can I reset the admin password without resetting the router back to factory? Any assistance would be much appreciated.

USG-50 -Unknown Issue - Web Access and Hulu Issues

$
0
0
Looking for some troubleshooting guidance. In the last week and a half, my web access has been very poor (long load times before a web page fully loads) and we are constantly having to re-login to Hulu via our Roku device. I attached a PC directly to the Cable Modem and none of the symptoms exist in that configuration so that leads me back to the firewall. Troubleshooting to date: 1) Unplug power and then re-energize - Symptoms persist 2) Go back to default system config, reboot - Symptoms persist 3) Reload original config, reboot - Symptoms persist 4) Move connections to WAN2 and P5 (LAN2) to rule out bad ports - Symptoms persist I am at a loss to figure out what is wrong with the firewall. I have not made any configuration changes to the device in over a year. Speed tests are variable and sometimes timeout due to latency but then are fine other times. The only odd thing I see in the system logs after a reboot is a reference to the, "Trunk SYSTEM_DEFAULT_WAN_TRUNK alive, related policy route rules will be re-enabled." Ran full diagnostics but can't discern from that if there is an issue or not. Looking for some advice on next steps.

SecuReporter_Trial?

$
0
0
Anyone else get an email like this today? - Dear Customer, You have linked a new service to a product at myZyxel. Service Name: SecuReporter_Trial Product Name: xx:xx:xx:xx:xx:xx - I didn't sign up for any new service?

USG 50 Bad VOIP Bandwidth Rules Cut Bandwidth 90% Will Pay to Fix

$
0
0
I have CenturyLink DSL 40mb/s package. I want to try using VOIP phones, 10, for my office. The VOIP company gave me rules to implement in the USG 50 for VOIP service. I implemented the rules, except their bandwidth rules, and everything is fine. When I implement their VOIP bandwidth rules the throughput on the USG 50 drops to 4mb/s. The VOIP company tech support can't fix the rules. They want me to try the service without the BW rules. I'd like to see if I can get the BW rules fixed so their service works as it should, and I can get 40mb/s throughput. I am willing to pay for help. I am looking for an Zywall expert who could help me troubleshoot and fix the rules as a paid gig. I can pay Paypal for your help. Any takers?

Configure Zyxel NXC2500 - Help Me

$
0
0
Hi everyone, I have a Zyxel NXC2500 to configure. As AP I have a Zyxel NWA5121-NI to be controlled by the Zyxel controller, but if I reset everything and I connect everything automatically, of course the AP gives me the IP DHCP of the VLAN1 (172.16.1.1) configured in the initial Wizard of the controller, but I would like to connect the AP to a single ethernet port (Ex. P6) of the controller, using the DHCP enabled on that port, I have also succeeded but I could not go on the internet with the AP even if I had configured the Routing rule (P6 to WAN) and related firewall rule. Can you tell me how easy I can configure this AP to have its own LAN on the P6 port of the Zyxel controller? I connected the WAN to port P1 in DHCP. Thank's in advance

ZyXEL USG-50 IPv6 6in4 problem - solved

$
0
0
IPv6 routing to 6in4 tunnel not working - Fixed. I did read all the posts I found on the net about the problem, and none of those helped at all. After thinking it hard, what could be wrong and might be needed to make it work. I found out that the problem was that I had configured POLICY ROUTE, exactly as all the instructions say. but that's the source problem. If the network is routed, there has to be route to the next routing hop. After adding ::/0 routing to STATIC ROUTE with next router hop ip, everything started to work perfectly. Also ping and traceroute work without issues. This configuration works great with Kuusitunneli (fi only) & HE.NET's tunnelbroker. FYI.

1:1 nat problem

$
0
0
Hi, I got a usg 310 working with a rules of 1:1 nat xxx.xxx.xxx.45 with static route to a mikrotik wich is not doing nat only route; last week I want to replace it with a new USG1100, I transcribed all the rules but 1;1 nat not working, i can make ping from zyxel to the server and viceversa in the lan zone, but it can not access from internet, heres the rare thing when I put the ip xxx.xxx.xxx.46 the rule work and can be access from internet. I delete all the rules and put only the 1:1 nat rule and the policy security with the same result, disable the polciy security control and got the same result. I try differents firmwares from v4.25 to the latest with same result. If can someone give me a clue I will appreciate. INTERNET | ZYXEL WAN XXX.XXX.XXX.43 LAN 192.168.99.1 (STATIC ROUTE 172.16.254.0/24 FROM 192.168.99.2) | MIKROTIK 192.168.99.2 (NO NAT, ONLY ROUTE TO ZYXEL) 172.16.254.1/24 | 172.16.254.2 1:1 XXX.XXX.XXX.45

certificate for zywall

$
0
0
Is there a way to get a certificate and install it for an internal zywall or you are stuck with using the provided self-signed certificate that is still using rsa ? Thanks.

USG 50 Bad VOIP Bandwidth Rules Cut Bandwidth 90% Will Pay to Fix

$
0
0
I have CenturyLink DSL 40mb/s package. I want to try using VOIP phones, 10, for my office. The VOIP company gave me rules to implement in the USG 50 for VOIP service. I implemented the rules, except their bandwidth rules, and everything is fine. When I implement their VOIP bandwidth rules the throughput on the USG 50 drops to 4mb/s. The VOIP company tech support can't fix the rules. They want me to try the service without the BW rules. I'd like to see if I can get the BW rules fixed so their service works as it should, and I can get 40mb/s throughput. I am willing to pay for help. I am looking for an Zywall expert who could help me troubleshoot and fix the rules as a paid gig. I can pay Paypal for your help. Any takers?

USG 60W as access point.

$
0
0
Hello everyone! I need help with getting it to work. At the moment we switched to USG310 USG310 ( 192.168.0.210) USG60W ( 192.168.0.209) I've done this On USG60W, go to CONFIGURATION > Security policy > Policy Control, turn off "Enable Policy Control". Go to CONFIGURATION > Security policy > ADP, turn off "Enable Anomaly Detection and Prevention". Go to CONFIGURATION > Wireless > Controller > Registration Type, select "Manual". USG60W is not plugged into USG310 LAN port directly. Usg60w plugged into commutator in the same network. How do i make it work? I found old topic here someone said it needs to be bridged. Can any 1 help? Thanks.

ZyXEL NBG6515 IPv6 WLAN

$
0
0
I have 6rd tunnelin on Linux server on the network, now the IPv6 traffic on the WLAN (WiFI) interface of the NBG6515 is incredibly slow. Around 3-4 kilobytes/s. Short background: 1) There's no problem, if I'm using alternate WiFi (bridge) access point connected directly to the ZyXEL usin ethernet. 2) All other devices work perfectly on ethernet with IPv6. 3) Even the same end devices on alternate access point (same network) or ethernet work perfectly using IPv6. 4) Link Local (IPv6) and public IPv6 address traffic does work without problems to devices on LAN from WLAN. 5) This is just to make clear, that the problem is NOT my 6rd encapsulation, forwarding of firewalls. Problematic network route: 1) IPv6 end device on WLAN (tablet, phone, laptop) 2) ZyXEL WLAN access point (IPv6 link-local) -> Ethernet port (switch) 3) Linux server on ethernet port, doing 6rd (6in4) encapsulation 4) ZyXEL Ethernet port (IPv4, via NAT) -> WAN Route 1-4 is reversed for return traffic. And if, 1 and 2 are connected using ethernet, instead of WLAN, there's no problem. Or if I use alternate WLAN AP on ZyXELs ethernet port. Assumed problem scenarios: 1) Packet routes from WLAN cause some kind of internal collision on ZyXEL causing packet loss. 2) ZyXEL processes the traffic as broadcast traffic for some strange reason, and rate limits it. Only thing I still think I could test, is replicating the same packet flow using IPv4 alone. Where traffic is just bounced by the Linux server. It would tell me if the internal collision scenario is potentially true. Any pro-tips? AFAIK, this is something I can't really solve without ZyXEL support. Another obvious solution would be just replacing the router with something better. Posted to ZyXEL forum. https://homeforum.zyxel.com/discussion/1895/zyxel-nbg6515-ipv6-wlan-performance

USG20w-VPN WiFi Issues (No Internet)

$
0
0
Hi Guys, Suddenly the guest wifi of my customer stopped working, his son hit the reset button thus we had to restore config..Upon restore i noticed the guest WiFi does not grant internet access, wifi connects but says NO Internet.. I disabled Guest and enabled the main SSID which works no problem..I was wondering if there's a firmware bug and also if there's a way to block traffic to the LAN with the main SSID as a temp solution. As always your help is much appreciated :)

USG60 IDP service blocked a SEVERE attack but also NORTON INTERNET SECURITY

$
0
0
Hi all! I'm writing only now, I'm really busy in this period. Time ago the USG60 IDP service blocked a "SEVERE" attack while a Windows client through Firefox browser opened a website that today doesn't exist no more. While the USG60 blocked it, the user waiting the full load of that site seen a message from the NORTON INTERNET SECURITY software that blocked the same attack from the same IP that the IDP blocked. I'm curious: the IDP blocking attempt gone good or bad? I think this UTM appliances are sold for a good reason, blocking all threats in them cause they cannot reach the entire network, am I thinking right? So if the IDP really blocked the attack, that was a bad script and something more in that website, why the NIS also blocked it? Is it reasonable thinking the IDP not worked well? I know, I know, if I remember what was the threat we'll talk with details in the hands but really what do you think? I'm talking about a Zyxel USG60 but for sure could ever be a Cisco, Sonicwall, etc....with UTM services activated. Happy New Year!!

L2TP from Win10 to ZyWALL 110 closes - Received delete notification

$
0
0
I created a VPN setup based on the Wizard, like the one described https://www.youtube.com/watch?v=BYxcjcOxybs or http://www.iholken.com/index.php/2015/07/19/setup-vpn-l2tpipsec-tunnel-between-zywall-usg-and-windows-phone-8-1-or-iphoneipad/comment-page-1/ and the fact is that it worked just a month ago, but suddenly the VPN stopped working. I have attached screenshot from the log, looks like the tunnel builds and then closes. Does anybody experience the same, or do you have an advice how to troubleshoot the issue?

How to access modem from LAN

$
0
0
I have ZyWALL 5 router and modem D-Link DSL-520B. Modem allows its configuration using IP 192.168.1.1. How to access modem configuration page from LAN side of the router? I tried to make new POLICY ROUTE: Type of service - Any, Precedence - AnySource: Interface LAN 192.168.11.10 (start/end addresses)Destination: 192.168.1.1 (start/end addresses)Routing action / Gateway: 192.168.11.1 (LAN gateway)Ping to 192.168.10 IP doesn't work. Web access doesn't work neither... Is there any way to make it work?

Upgrading Account - USG40 - Can It Handle?

$
0
0
Upgrading from 150/10 Mps to 300/20. It appears to stall out @ about 19xMps. Not sure if I will need to upgrade. and: Wondering about the 400 Mps throughput, is that split in half (up/down)? If so, that's about right and looks like I'll need to upgrade. :( Can I temporarily disable FW to test throughput? (Just curious). Thanks Forum! :)

Facepalm ZyXEL/IIS

$
0
0
Not exactly an endorsement for a security product company that this URL returns a default IIS page...

Subscriptions Expired?

$
0
0
Brand new USG 60. At first it showed a year before expiration (sometime in 2020). But after messing around with upgrading FW and trying to import .conf file something changed. FW updated to latest (4.32x), but so far unsuccessful importing .conf file (covered in another thread). Manually setup device just enough for access, but then they just expired. :( Perhaps we don't get subscriptions even if it's new because it's an older series device? Zyxel TS seemed to indicate the year before expiring was correct? Was looking forward to having them for awhile at least.

USG40 new firmware

$
0
0
Looks like new firmware for the USG40 yesterday. V4.33(AALA.0)C0
Viewing all 1492 articles
Browse latest View live


<script src="https://jsc.adskeeper.com/r/s/rssing.com.1596347.js" async> </script>