title=

Setting up Tailscale on the Zyxel USG Flex 500H gateway

Tailscale can now be centrally deployed on the security gateway. We'll tell you how to deploy Tailscale and Headscale on the Zyxel USG Flex500, cross internal networks, organize an exit node, and use unique features, from publishing local services to mesh routing via NAT and firewall. Medium-sized offices and home labs require a flexible solution that allows users to securely connect to a corporate or private network from anywhere in the world. One of the most convenient tools for this is ...
 title=

Setting up GeoIP blocking for web services using pfSense, HAProxy and free IPDeny databases

One of the ways to protect a web service may be to restrict access to it by IP, including GeoIP, based on the user's location. We will set up protection without using paid services, without Maxmind, without registration and SMS Today, many organizations that transfer their services to web platforms are forced to provide an entry point to the Internet for user authentication. Even with 2-factor authentication, a web service accessible via the Internet remains vulnerable to complex attacks, the ...
 title=

VPN orchestration from Zyxel: we configure any tunnel scenarios, even without knowing the gateway addresses

The Nebula cloud Controller from Zyxel allows you to create VPN scenarios with Multi-WAN, in which you do not even need to specify gateway addresses and connection parameters. Lazily clicking the mouse, everything is configured and monitored by itself. We are considering how it works. Until now, for many network administrators, VPN tunnels present difficulties, especially when you simultaneously implement both client access to the node and communication between offices. It's not easy enough ...
 title=

Impregnable NAS: hardening and protecting Synology

A modern NAS is quite capable of protecting itself from most attacks and guaranteeing not only the continuity of the service, but also the inviolability of the stored data. Even with minimal settings and following the manufacturer's recommendations, the NAS can become an impregnable fortress for an attacker, so reliable that you can connect the device directly to the Internet without a Firewall, leave it literally in an unguarded place (which is important for peripheral installations), being ...
 title=

Zyxel WAX650S review and test: flagship access point with Secure Wi-Fi technology

The flagship access point with Smart Antenna technology allows you to install a VPN tunnel directly between yourself and the office gateway, so that all working resources in your own VLAN are available to the user. It is also now possible to configure authentication via Google Auth for even greater network protection. Today we are considering the top Wi-Fi 6 access point made by Zyxel. This is a truly "omnivorous" access point, designed for installation both in rooms with a large ...
 title=

Zyxel USG Flex 500 review: testing speed and exploring enterprise security gateway capabilities

The new series of gateways focuses on the speed of operation, and in the "Antivirus + IDP" mode, it does not fall below 800 Mbit/s LAN-WAN. In part, this was achieved due to two antivirus engines: you can either check each file through the built-in bitdefender with updated signatures, or cloud verification by McAfee means by sending hashes of downloaded files to the servers. The number of threats faced by the owner of a local or public network is growing every day. Now, in addition ...
 title=

Zyxel ZyWall VPN2S and NWA1123-ACv2: VPN router for small office

A simple device that you can use to disable your employees ' access to entertainment sites, block Internet access to entire categories of websites, set up a fast VPN and fault-tolerant operation of two providers. Go back to the days when the VPN gateway was a large metal piece of hardware that could only be configured by a specially trained system administrator. Today dictates new conditions: more and more employees work remotely, continuing to work hard even during vacations. And when in ...
 title=

5 PFsense packages to install for your network's VPN gateway

Using packages allows the basic installation of pfSense to remain compact, but allows users to install only the packages necessary for their conditions. In this article, you will find a list of the top 5 pfSense packages that you will most likely need to set up your corporate network. Each package includes a brief description of what the package does and how it can help your network. One of the features of pfSense is its ability to expand with packages. Using packages allows the basic ...