<?xml version="1.0" encoding="UTF-8"?>

<rss version="2.0" xmlns:blogChannel="http://backend.userland.com/blogChannelModule">

<channel>
<title>ZyXEL forum - dslreports.com community</title>
<link>http://www.dslreports.com/forum/zyxel</link>
<description>ZyXEL forum current topics</description>
<language>en</language>
<copyright>Copyright 2007, dslreports.com</copyright>
<pubDate>Wed, 08 Feb 2012 22:19:42 EDT</pubDate>
<lastBuildDate>Wed, 08 Feb 2012 22:19:42 EDT</lastBuildDate>

<image>
<title>dslreports.com</title>
<url>http://i.dslr.net/bbrdisc1.gif</url>
<link>http://www.dslreports.com</link>
<width>19</width>
<height>18</height>
<description>bbr disc</description>
</image>

<item>
<title>VPN Tunnel - Accesing remote side servers from USG device.</title>
<link>http://www.dslreports.com/forum/remark,26863213</link>
<description><![CDATA[Hi guys, i am looking for some assitance and help with configuring vpn tunnel between USG200 and USG20W.
Schema of network is as below:

REMOTE OFFICE MAIN OFFICE
192.168.16.0/24  / INTERNET /  192.168.0.0/24  /RADIUS Server: 192.168.0.5/
|WIFI with WPA2-Enterprise|

I have successfully build VPN tunel between remote office and main office. Computers on each side can access each other. Only one problem is USG20W at REMOTE OFFICE, I need to setup Wireless with security level set to WPA2-Enterprise with Radius server located at MAIN Office site, but USG20W cannot access any host located on main office network side (so radius server is also unreachable). I checked by logging into USG20W SSH that if I execute ping or trace command to Radius server (192.168.0.5) all packets are routed thorough WAN connection and command result is as follow:

Router> ping 192.168.0.5
PING 192.168.0.5 (192.168.0.5) 56(84) bytes of data.
From xx.xx.xx.xxx icmp_seq=1 Destination Host Unreachable
From xx.xx.xx.xxx icmp_seq=2 Destination Host Unreachable
From xx.xx.xx.xxx icmp_seq=3 Destination Host Unreachable
/Where xx.xx.xx.xxx is next hop to internet./

I susspect that problem is that packets outgoing from USG are not router through VPN Tunnel but are send through default gateway not encrypted so I added Policy Route:
INCOMING SOURCE DESTINATION DSCP CODE SERVICE NEXT-HOP DSCP SNAT BWM
------------------------------------------------------------------------------------------------------------------------------------------------------------------
ZyWALL any NET:192.168.0.0/24 any any VPN Tunnel Preserve none 0

After that result of ping command is as follows:

Router> ping 192.168.0.5
PING 192.168.0.5 (192.168.0.5) 56(84) bytes of data.
--- 192.168.0.5 ping statistics ---
3 packets transmitted, 0 received, 100% packet loss, time 2016ms

I feel that i am missing something. Any help will be very appreciated.

Gadulowaty

PS. I also need to mention that:
1. "Use Policy Route to Override Direct Route" is SET (CONFIGURATION->NETWORK->ROUTING)
2. "Use Policy Route to control dynamic IPSec rules" is SET (CONFIGURATION->VPN->IPSEC VPN->VPN Connection)]]></description>
<guid isPermaLink="true">http://www.dslreports.com/forum/remark,26863213</guid>
<pubDate>2012-02-07 08:31:22</pubDate>
</item>

<item>
<title>usg50, vlans, switch</title>
<link>http://www.dslreports.com/forum/remark,26855331</link>
<description><![CDATA[Been using the USG50 for just over a week now and am making the next move on the network, "VLANs". Already using subnets but keep getting told that VLANs with the subnets are the correct way to setup the network.

Bear in mind that this is a home network, but the main reason for using multiple subnets was to keep broadcast and arp traffic from spreading on the data network from the video network.

The question to cut to the chase, should I take Lan 1 and Lan 2 from the USG to 2 different ports on my Cisco (Linksys) SLM2024 and assign VLANs to match or just use 1 cable from Lan1 to the switch and setup VLANs in the USG on LAN1?

The goal is:

10.1.1.254/24 USG50
10.1.1.0/24 Main Data Network
10.1.20.0/24 vlan20 IP Camera network
10.1.30.0/24 vlan30 NAS & SetTop Boxes for TV Network
10.1.40.0/24 vlan40 Wireless APs

10.1.1.253 Cisco SLM2024]]></description>
<guid isPermaLink="true">http://www.dslreports.com/forum/remark,26855331</guid>
<pubDate>2012-02-04 23:14:01</pubDate>
</item>

<item>
<title>Need P-660R-D1 firmware upgrade advice?</title>
<link>http://www.dslreports.com/forum/remark,26854612</link>
<description><![CDATA[I just purchased a ZyXEL P-660R-D1 to replace the modem that I am renting from CenturyLink. I discovered that the version that I purchased does not have the same features that the CenturyLink supplied modem has. I was hoping that there would be a firmware upgrade that would add the features available in the CenturyLink rented modem. When I opened the firmware upgrade page of the modem that I purchased, 340ANJ3D0 was shown as the installed version. The firmware shown on the CenturyLink modem's firmware upgrade page is: 3.40(AGE.5)C0. I went to the ZyXEL website and found the following firmware listed for the P-660R-D1:

3.40(AGE.5)C0 &#9;5/27/2011
3.40(AGE.4)C0 &#9;1/15/2010 
340ANJ3D0 &#9;6/25/2009
3.40(AGE.3)C0 &#9;4/24/2009

Would anyone reading this thread know if any of the listed firmware other than the 340AJN3D0 would be compatible with the P-660R-D1 that I purchased or how I could find out. There is no version information label on the bottom of the modem. I don't want to brick the modem by installing the wrong firmware.]]></description>
<guid isPermaLink="true">http://www.dslreports.com/forum/remark,26854612</guid>
<pubDate>2012-02-04 18:31:26</pubDate>
</item>

<item>
<title>Zyxel NBG334W for just wireless access</title>
<link>http://www.dslreports.com/forum/remark,26839630</link>
<description><![CDATA[Hi:
   I am working with a NBG334W wireless router.  I would like to just use it as wireless access point, using the main router for the primary network for DHCP. It is now being used as a double NAT configuration.

   If I turn off the DHCP server on the Zywall and plug the cable from the primary router into the LAN port on the Zywall, will that give me a wireless network access point with the IPs form the main router being issued over the wireless???

Thanks,
fox7

  ]]></description>
<guid isPermaLink="true">http://www.dslreports.com/forum/remark,26839630</guid>
<pubDate>2012-02-01 12:36:57</pubDate>
</item>

<item>
<title>Wireless NWA3560-N central management mode</title>
<link>http://www.dslreports.com/forum/remark,26621830</link>
<description><![CDATA[Hi,

Has anyone used these yet?

With multiple AP's, in central management mode, can you set each AP to a single SSID name? To have a single unified wireless network--

Thanks!]]></description>
<guid isPermaLink="true">http://www.dslreports.com/forum/remark,26621830</guid>
<pubDate>2011-12-05 13:15:39</pubDate>
</item>

<item>
<title>New USG Datasheet on Zyxel.com shows better performance</title>
<link>http://www.dslreports.com/forum/remark,26819842</link>
<description><![CDATA[Check out the V4 datasheet.  ftp://ftp2.zyxel.com/ZyWALL_USG_20/datasheet/ZyWALL%20USG%2020_4.pdf

I immediately notice the Firewall throughput for the USG20/50/100/200 have all been increased.

I assume this is due to the pending V3.x firmware?  If so, bring it on!!]]></description>
<guid isPermaLink="true">http://www.dslreports.com/forum/remark,26819842</guid>
<pubDate>2012-01-27 10:01:57</pubDate>
</item>

<item>
<title>Port opening on Zywall USG100</title>
<link>http://www.dslreports.com/forum/remark,26806352</link>
<description><![CDATA[I need to access security module behind LAN1, with specific program, that is supposed to communicate with the module over port 9000. I have given the module static ip and its connected to switch GS2200.
On USG I have created two address objects one for WAN1-interface-public ip and second for LAN1-HOST-module static ip. Also I added service SECURITY tcp starting port 9000, ending port 9000.
Then I created NAT rule interface WAN1, original ip WAN1 address object and destination LAN1 address object, protocol mapping type service and selected service I created Security. Then added firewall rule from wan1 to lan1 allow for the same service. Did I somethingh wrong or I have to setup something else, possibly on swith or does it have to do something with SNAT now.]]></description>
<guid isPermaLink="true">http://www.dslreports.com/forum/remark,26806352</guid>
<pubDate>2012-01-24 06:18:48</pubDate>
</item>

<item>
<title>Which model for ip tunnel</title>
<link>http://www.dslreports.com/forum/remark,26825274</link>
<description><![CDATA[Helli,
I have a usg100 for 40 clients using rdp. Further i have 40 phones for voip to trnsfer over a privat ip tunnel to a cloud.
What model can i use here for, another usg 100?

I know i can use one usg for both, 2 wan ports, but it's veryimportant for stale network. I think the rdp router willhave more maintenance because and i want to make sure the voip network will notgo down.

Ant suggestions for hardware solutions?]]></description>
<guid isPermaLink="true">http://www.dslreports.com/forum/remark,26825274</guid>
<pubDate>2012-01-28 16:11:17</pubDate>
</item>

<item>
<title>thinking about buying this- VLAN Support</title>
<link>http://www.dslreports.com/forum/remark,26691126</link>
<description><![CDATA[i want to setup a few VLANS on my home network and i dont have the proper setup right now.

i was thinking about buying this, or something very similar, for my main router/gateway

ZyXEL ZyWALL USG100
http://www.newegg.com/Product/Product.aspx?Item=N82E16833181087

and this for a switch on my network

HP J9449A#ABA ProCurve Switch
http://www.newegg.com/Product/Product.aspx?Item=N82E16833316155

before i buy the zyxel, i figured i would post in here and see if anyone could give me some feedback.

example...i am familiar with the sonicwall brand and alot of the features their devices say they can do require the enhanced OS/firmware to be installed before it works.

i just want to make sure that i dont purchase this zyxel only to find out that for vlan support it requires some type of upgrade/license (hidden cost).

TIA.]]></description>
<guid isPermaLink="true">http://www.dslreports.com/forum/remark,26691126</guid>
<pubDate>2011-12-23 15:47:14</pubDate>
</item>

<item>
<title>DHCP pool size issue</title>
<link>http://www.dslreports.com/forum/remark,26794250</link>
<description><![CDATA[Have been setup as 10.1.x.x/255.255.255.0 with a pool of 219 addresses. Site has run out of addresses to assign, so I need to setup a larger pool.

Changed LAN IP netmask to 255.255.0.0.

Tried to increase DHCP pool to 400, but the Z5 reports "DHCP Pool Size Error"

The only thing that seems to work is bumping the pool over to 10.2.x.x and setting it to 253, but that's not going to be enough.

What am I missing here?]]></description>
<guid isPermaLink="true">http://www.dslreports.com/forum/remark,26794250</guid>
<pubDate>2012-01-20 19:08:19</pubDate>
</item>

<item>
<title>Zyxel USG 300 and multiple public ip addresses</title>
<link>http://www.dslreports.com/forum/remark,26814787</link>
<description><![CDATA[Hi!

I'm wondering if I can do a setup, and if I can how to do it.

I have a range of public ip addresses, for the moment I only use one. I have configured a couple of NAT and firewall rules to allow users to reach smtp, http and https.
I want to use the SSL VPN but dont understand how to do it. If a user surfs to the USG300 WAN ip the user will reach my webserver through the NAT and virtual server.
My question is, Can I assign port 3 (WAN2) another public IP address, and then publish the SSL VPN on that port/ip.

Best Regards
Lasse]]></description>
<guid isPermaLink="true">http://www.dslreports.com/forum/remark,26814787</guid>
<pubDate>2012-01-26 03:46:01</pubDate>
</item>

</channel>
</rss>

