title=

Setting up protection against IT attacks in the enterprise using Zyxel equipment

A typical IoT attack looks like this: the device connects to a malicious Internet resource directly or through its own VPN, downloads and installs malicious code on itself, after which it begins to be either part of a large bot farm for attacks on third-party resources and use as a resident proxy, or simply spies on your network, trying to intercept anythat data, pull information from open resources or harm in any other way. It is not difficult to protect your network from possible IoT attacks. ...
 title=

Bulletin on IoT security. Is your network ready for Internet of Things exploits?

Not so long ago, Human Security revealed an entire shadow network associated with infected devices and malicious applications. Infected were not only Android TV set-top boxes, but also tablet PCs, wearable devices and even cars. Some IoT devices may even be infected with viruses or Trojans already at the stage of their production or sale, and since it is impossible to imagine a modern company without IoT today, it is important to properly protect your network. Today's world is completely ...
 title=

Setting up GeoIP blocking for web services using pfSense, HAProxy and free IPDeny databases

One of the ways to protect a web service may be to restrict access to it by IP, including GeoIP, based on the user's location. We will set up protection without using paid services, without Maxmind, without registration and SMS Today, many organizations that transfer their services to web platforms are forced to provide an entry point to the Internet for user authentication. Even with 2-factor authentication, a web service accessible via the Internet remains vulnerable to complex attacks, the ...
 title=

Let's explore the features of Zyxel XMG1930-30HP, a switch with 2.5G/10G PoE ports and licensed L3 functions

Zyxel reasoned this way: if the L3 functionality is already determined only by the firmware, 99% choose an access switch for the sake of port density, PoE, VLAN, Multicast, and less often for static routing, then here's the base model XMG1930, which is generally L2, but slightly L3. And if your network requires advanced L3 functions, then all this is also there, just buy the appropriate license and get the core-level functionality. You can do this at any time, even when buying a device, even ...
 title=

Zyxel XGS2220-30HP - L3 Access switch for modern converged networks

This L3 layer switch has 4 x 10-Gigabit SFP+ slots, 1-Gigabit PoE+ ports for the main fleet of devices, NVR/VoIP optimized interface, support for Nebula cloud service and multi-Gigabit PoE+ ports for Wi-Fi 6 access points. That is, Zyxel has added a maximum of functions to make it the most versatile. In the Zyxel hierarchy, the XGS2220 series refers to access switches, that is, to the lowest level that serves end devices and access points. We are used to the fact that cheap maintenance-free ...
 title=

We explore Zyxel Connect & Protect and answer the main questions: is it possible to do without a security gateway?

... (stands for Connect and Protect) in the Nebula Control Center service. ... must be connected to Nebula (and what happens if Nebula is suddenly blocked ... filtering scheme is provided in Nebula Control Center: the CnP/CnP ... can be viewed through the Nebula web interface, for which you ... enabled redirect all traffic through Nebula? No, the access point downloads ... if the connection with the Nebula Control Center is disrupted, it ... , can Zyxel Connect and Protect replace a security gateway in small installations? ...
 title=

Will Zyxel Nebula survive on the sovereign internet?

What will happen to your network if the Iron Curtain suddenly falls, and the Global Internet turns into something sovereign and all cross-border channels are blocked? Let's simulate this situation and tell you how to unsign the device from Nebula without Internet access. We have reviewed the Nebula Control Center management system from Zyxel many times. This is a cloud service that allows you to configure and monitor the company's network stack via the Internet, including setting up Wi-Fi, ...
 title=

Orchestration of wireless networks in Zyxel Nebula CC: configuring horizontal traffic protection and shaping

... , in which a security gateway was installed on top, and the network was ... and IP filter, Nebula Pro for dynamic VLAN and DPPSK. NAT, for example, and ... period of Nebula Pro licenses (entirely for the organization) and CNPC (for ... -Fi password, and the neighbor has another. In the Nebula interface, there ... certain sites. Traffic shaping Zyxel Nebula Control Center has three speed ... are scary. Conclusions The Zyxel Nebula Control Center cloud management system ...
 title=

Quick setup of a wireless network via Zyxel Nebula when deployed in branches

... an opportunity when using the Nebula service. Let me briefly ... through the Nebula Control Center application. Step 2. Creating Users and Networks ... switches that support control via Nebula, and the GS1915-8 EP model ... the MAC address of the security gateway and be sure that wireless clients ... is small, cute, works with Nebula and is inexpensive. Step 5. Setting ... is organized quite interestingly in Nebula: a log is displayed separately ... download the configuration from the Nebula cloud, and you will only have ...
 title=

How Zyxel Secureporter facilitates corporate network security monitoring

... dashboards and statistics on the operation of your network's security gateway. Naturally ... based network stack management system, Nebula Control Center (NCC), to which ... Zyxel ATP100, and configure security policies. Mandatory conditions - connection to Nebula The Secureporter ... connected to the Nebula Control Center cloud system, and works both with ... except SSL Inspection and antispam, are available in Nebula, so the question ... view of Nebula Control Center, you have organizations and sites where ...