dslreports logo
site
 
    All Forums Hot Topics Gallery
spc

spacer




how-to block ads


Search Topic:
uniqs
8002
share rss forum feed


superataru

join:2004-12-07
Kearny, NJ

1 recommendation

USGs firmwares



superataru

join:2004-12-07
Kearny, NJ
FullTunnel Mode with Safari and Opera too.

polarisdb

join:2004-07-12
USA
Thanks superataru! I wonder when we'll see an updated user manual or support notes?

Any brave souls willing to try this on their USG50? I'm too chicken to be the first.


Brano
I hate Vogons
Premium,MVM
join:2002-06-25
Burlington, ON
kudos:11
Reviews:
·TekSavvy DSL
·Bell Fibe
reply to superataru
Cool! ..finally

quote:
40. [ENHANCEMENT]
L2TP authentication over IPSec

quote:
43. [ENHANCEMENT]
DNS support wildcard
1) Support DNS wildcard in DNS records

quote:
53. [ENHANCEMENT]
SIP ALG enhancement to support multiple server in WAN and DMZ



Anav
Sarcastic Llama? Naw, Just Acerbic
Premium
join:2001-07-16
Dartmouth, NS
kudos:5
reply to superataru
40, in practical terms means........?

43, in practical terms means........?

53..... multiple servers in WAN????? Did you mean LAN???


Brano
I hate Vogons
Premium,MVM
join:2002-06-25
Burlington, ON
kudos:11
L2TP was available on USG100 and higher until now.


Anav
Sarcastic Llama? Naw, Just Acerbic
Premium
join:2001-07-16
Dartmouth, NS
kudos:5
reply to superataru
Okay dum it down for the llama. Do you mean clientless VPN (by that I mean not via an Ispec applications such as shrewsoft) but using Microsoft OS ipsec connection.


Brano
I hate Vogons
Premium,MVM
join:2002-06-25
Burlington, ON
kudos:11
If you want to put it this way then yes, MS uses L2TP natively.


Anav
Sarcastic Llama? Naw, Just Acerbic
Premium
join:2001-07-16
Dartmouth, NS
kudos:5
Brilliant!!! Im endumacated now!!!

sckramer

join:2002-07-22
Northfield, OH
reply to superataru
I upgraded 2 usg20w's

One upgraded fine, the other is bricked with a flashing sys light--

how do I recover from that?

Thanks!

Scott


Brano
I hate Vogons
Premium,MVM
join:2002-06-25
Burlington, ON
kudos:11
Hold down the reset button for 15 seconds. That should reset the unit to defaults (all erased, IP changed to default as well as admin pass).

If that doesn't help, follow the recovery firmware upgrade procedure (consult your manual).

sckramer

join:2002-07-22
Northfield, OH
reply to superataru
working through it:

here's what it says on the console:

FLASH: AMD 16M

BootModule Version: V1.14 | 07/09/2010 11:00:00
DRAM: Size = 256 Mbytes

Kernel Version: V2.6.25.4 | 2012-02-11 02:11:53
ZLD Version: V3.00(BDR.0) | 2012-02-15 14:39:11

Press any key to enter debug mode within 1 seconds.
....................

BM cmd line: console=ttyS0,115200 root=/dev/ram init=zyinit "-r /dev/sda", address: 0x100000

Uncompressing Linux...done.
Start to check file system...
/dev/sda2: 26/17640 files (0.0% non-contiguous), 58736/70432 blocks
/dev/sda3: 89/11664 files (3.4% non-contiguous), 6794/46624 blocks
Done

INIT: version 2.86 booting
Initializing Debug Account Authentication Seed (DAAS)... done.
Setting the System Clock using the Hardware Clock as reference...System Clock set. Local time: Fri Feb 24 14:30:16 UTC 2012
INIT: Entering runlevel: 3
Starting zylog daemon: zylogd zylog starts.
Starting syslog-ng.
Starting ZLD Wrapper Daemon....
Starting uam daemon.
Starting periodic command scheduler: cron.
Start ZyWALL system daemon....
............................................Got WIRELESS_CARD_CHANGE
Applying system configuration file, please wait...
............................................Kernel panic - not syncing: Take care of the assert first

Kirby Smith

join:2001-01-26
Derry, NH
Reviews:
·Fairpoint Commun..

2 recommendations

reply to superataru
Release notes imply IPv6 is enabled. Reportedly duplicates IPv4 firewall rules automatically when upgrading. I'm completely unclear how IPv6 would interoperate with existing VLANs. Maybe it just means that the tagging, tag reading, and untagging functions in the router and switch have to work on messages with longer IP addresses.

I will be surprised if my ISP Fairpoint, presently unable to supply adequate bandwidth and latency to outside their domain, will expend effort to embrace IPv6 in the near future. But then, given some recent web rumblings raising the question of whether IPv6 security is ready for prime time, it may not immediately matter.

Bug fix list is quite long (almost put me to sleep). I thought some of the fixed issues seemed related to some I've seen raised here.

kirby


SuperTechie

@comcastbusiness.net
reply to superataru
Upgraded a USG100 w/o incident. Looks like by default IPV6 is disabled, which is probably a good thing for most. I tested End Point Security issues with Java and the SSL VPN that have been broken by the last several versions of Java -- seems like they are fixed. YEA!
Can't wait for 3.x to come out for the USG200 etc. also!


mozerd
Light Will Pierce The Darkness
Premium,MVM
join:2004-04-23
Nepean, ON
reply to Kirby Smith
said by Kirby Smith:

Release notes imply IPv6 is enabled.

I had to 'enable' IPv6 -- by default IPv6 was disabled. After I enabled with a check mark IPV6 seems to work -- however its far too early to tell


superataru

join:2004-12-07
Kearny, NJ
reply to superataru
My first USG100 .... crashed ... i had to go back to previous, reload backup. Did it 2 times, then worked.
I just saw the new enanchement on gui ... then back to stable one.
Grrrr ... Monday i will test it again.
Saw paper. USG100 SSL from 2->5->25 Clients.
Is it true?


Otto58

join:2001-02-26
Germany
reply to superataru
On the my USG20 speed is ok (now better?).

Theoretical speed is 50 Mbit/s »xervice.com/pictures/WAN.gif
And the CPU runs at 70 % = 15 % (idle) plus 55 % »xervice.com/pictures/CPU.gif


JimThePCGuy
Formerly known as schja01.
Premium,MVM
join:2000-04-27
Morton Grove, IL
reply to superataru
I upgraded my USG50.
Didn't make any config changes.
It still runs.
This is good.



Looks like I will be receiving nag screens on those subscription services I never signed up for.

;(


Hank
Searching for a new Frontier
Premium
join:2002-05-21
Burlington, WV
kudos:3
Yes, I noticed the same thing when I updated my USG-100. Gave several options to delay the nag, but nothing to turn it completely off.

claykin

join:2003-08-22
Fort Lauderdale, FL
reply to superataru
Anyone know if the Endpoint Security (EPS) check now supports checking x64 Windows OS? In V2.x of Zynos x64 OS would walk right by the security check.

polarisdb

join:2004-07-12
USA
said by claykin:

Anyone know if the Endpoint Security (EPS) check now supports checking x64 Windows OS? In V2.x of Zynos x64 OS would walk right by the security check.

It doesn't sound like it according to the release notes:

EPS (Endpoint Security)
1. [SPR: 090805245]
[Symptom] PC OS is 64 bits. EPS always fail when checking Firewall, Anti-virus and Windows auto update.
We current not support EPS on Windows 64bit Operation System.


Otto58

join:2001-02-26
Germany

1 edit
reply to superataru
Has anyone successfully done a downgrade to 2.21?
The downgrade (page 44 of the Firmware Release Note) does not work. The old 2.21 has problems, for instance the log is not shown.
With the use of some browsers (Safari, IE9) and some "reboot" from the Console it works!

The procedure on pages 46 - 50 leads to the same problems.


john991

@74.198.9.x
And did anyone notice the wireless card slot loss some signal strength?

With the 2.x firmware I could login via wifi or browse, but with 3.0 browsing is very slow and logging in via wifi is very slow.

I changed setting to auto and also to different settings. I.e 2, 4, 5, 7 and 8 with no change in speed. If I'm closer to the router the speed is ok.

Any ideas on this one?

Thanks

ZyXEL30

join:2012-02-27
reply to superataru
Hi if you want to download firmwares for ZyXEL devices you can find all firmwafes for all ZyXEL devices in:

»ftp://ftp.zyxel.com/

Good day

ZyXEL30

join:2012-02-27
reply to superataru
Hi agian if someone want to see the new ZyXEL firmware for USG - ZLD 3.0. just look look this link: »www.zyxel.hu/download/zld3/

polarisdb

join:2004-07-12
USA
reply to superataru
Just bit the bullet and had a clean upgrade of my USG 50 from 2.21 (BDS.5) to 3.0. I haven't tested any of the VPN stuff out, but basic functionality and WAN failover seem to be working just fine.

claykin

join:2003-08-22
Fort Lauderdale, FL
reply to polarisdb
Am I the only one that believes EPS is worthless without 64 bit OS support? How many people live in an entire 32 bit world and have only 32 bit guests visiting and connecting to their LAN?

said by polarisdb:

said by claykin:

Anyone know if the Endpoint Security (EPS) check now supports checking x64 Windows OS? In V2.x of Zynos x64 OS would walk right by the security check.

It doesn't sound like it according to the release notes:

EPS (Endpoint Security)
1. [SPR: 090805245]
[Symptom] PC OS is 64 bits. EPS always fail when checking Firewall, Anti-virus and Windows auto update.
We current not support EPS on Windows 64bit Operation System.



Gork
Ou812ic

join:2001-10-06
Bountiful, UT

2 edits
said by claykin:

Am I the only one that believes EPS is worthless without 64 bit OS support?

Well, not necessarily worthless I'd think - but certainly shows a lack of understanding or caring about the direction the market is going.

I took the plunge and upgraded the f/w on my 20W. No issues so far, other than some weird GUI issues I attribute to IE caching problems. I've ironed those out now, I think.

said by JimThePCGuy:

Looks like I will be receiving nag screens on those subscription services I never signed up for.

Yeah, boo!


Anav
Sarcastic Llama? Naw, Just Acerbic
Premium
join:2001-07-16
Dartmouth, NS
kudos:5
reply to superataru
First requested 3.01 feature, make NEVER an option for the nag screen LOL. Upgraded USG100, no issues thus far.

polarisdb

join:2004-07-12
USA
said by Anav:

First requested 3.01 feature, make NEVER an option for the nag screen LOL. Upgraded USG100, no issues thus far.

It would be nice even if that could be toggled off at the CLI.