Setting Up Zyxel Router

0 views
Skip to first unread message

Danny Hosford

unread,
Aug 5, 2024, 7:38:37 AM8/5/24
to carprabgueblet
Myswitch is currently working with a basic VLAN 1 or default setup - as if the switches involved are 'dumb'. I want to add a few VLANs on a LAGG between my GS1920-24v2 and my router, which runs pfsense.

Unfortunately I cannot find any tutorials that explain setting up this switch that aren't either years out of date or relate to different Zyxel products using a different GUI or to switches from other manufacturers. The GS1920-24v2 manual refers to specific sections in detail, but does a poor job of explaining how different sections work together and in what order to make changes to the configuration.


I especially don't understand how to retain what is currently working and add to it without messing it all up! I have had to factory reset everything multiple times and wasted countless hours - hence this plea for help!


Existing LAN network and access to management GUI's on router and switches is the typical 192.168.1.0/24. Ideally I would like to change this, but that can come later - right now with the router, two switches and the AP to manage via web gui's on this subnet I daren't make any changes. How to go about making that change might be a future question!


Port 16 connects to a 5-port TP-Link PoE switch and from there to a Unifi U6 Access Point (VLAN aware) - I think this should be Tagged as it will carry VLANs 1, 33 (GUEST) and 44 (CAMS) ? VLAN trunking box ticked?


(I will also have to figure out the TP-Link PoE switch's configuration. It has a non-PoE port no. 5 that does data only and which should therefore be Tagged as a trunk port. But I'm not really asking for help on a TP-Link device in a Zyxel forum!)


As I said with everything currently working on the default VLAN 1 on the GS1920-24 connecting to pfsense, and also to my AP via the TP-Link PoE switch - essentially everything is currently working as if the switches involved were 'dumb'. However there is no Guest Wifi and no security cameras or audio devices connected to any ports on any switch.


Your understanding is correct. However, in the default VLAN setting of the switch, the PVID is 1, so it assigns VID 1 to incoming untagged packets and forwards them with VID 1. Therefore, both tagging and untagging Port 16 (connected to TP-Link) on the GS1920-24v2 to VLAN1 are acceptable.


Regarding Port 13 connected to the pfsense router, upon reviewing the pfsense router settings, there's no option to configure the VLAN ID for the LAN interface. Therefore, you will need to set your GS1920-24v2 Port 13 with VLAN 1, untag, and the packets will be forwarded as LAN1.


As for the Port 16 connects to a 5-port TP-Link PoE switch that I think needs to be able to do VLAN too or if you can connect all CAMS to one switch you can make that untag to port 16 and tag to port 13 VLAN 44 then port 17 with to Access Point switch untag to port 17 and tag to port 13 VLAN 33


"As for the Port 16 connects to a 5-port TP-Link PoE switch that I think

needs to be able to do VLAN too or if you can connect all CAMS to one

switch you can make that untag to port 16 and tag to port 13 VLAN 44

then port 17 with to Access Point switch untag to port 17 and tag to

port 13 VLAN 33"


Thank you both once again for your replies. I'm still trying to wrap my head around it all. Then I have to find a fairly big chunk of free time to get it all set up and troubleshoot. Given ongoing health problems I don't know when that will be but I'm a lot clearer on the basic plan thanks to your support.


I then had to go through so many steps to regain access to the router by finally removing the device from Nebula portal and resetting the firmware numerous times. I even downgraded the firmware but that still didnt help.


We sincerely apologize for any inconvenience caused. If you encounter any persistent problems, kindly provide details about the issue or outline the actions leading to it. If possible, include a screenshot or video recording of the problem.


Here exact the same problem. Also when setting up WIFI settings by the local IP or Guest wifi settings ik actually creates the WIFI acces by name but impossible to set Password so now i am stuck with open WIFI. Can only reset to and then use the standard name and password. I do not want that.


I tried with support to slve the WIFI problem. No luck untill now. I tried different browsers on MAc and also on Windows with no luck. Support can create through Nebula a new WIFI name with password and their conclusion is that there is nothing wrong with the system. But clearly seen here it is a more wide spread problem.


Apologies for any inconvenience caused. We have received your feedback, and our team has confirmed the existence of the issue. We are actively working to implement a solution and will provide updates on our progress. Thank you for your understanding.


Thanks all for your replies. I did manage to resolve this issue eventually a few days back. The way I did this, was to again restore the device to its factory defaults by downgrading the firmware as follows:


This then restored everything back to its factory defaults and made the Wireless page load again. All other pages are loading as expected and the device is no longer associated with the Nebula portal. Also bare in mind that I did remove the device from Nebula prior to downgrading the firmware.


I am now waiting for Zyxel to provide a new firmware which correctly upgrades the device, but please indicate if we do need to still toggle the "Restore Default Settings After Firmware Upgrade" checkbox on?


The issue I am facing:

Pi-hole seems to be blocking ads as connected via ethernet to my Zyxel VMG4825-B10A router and Windows PC as evidenced by blank ad spaces on news websites and such. But the admin panel does not show anything being blocked, and just a total of 6 queries despite much internet usage. Other devices running off the router are not having ads blocked. Zyxel interface is confusing to me as to where to enter the DNS settings.


What I have changed since installing Pi-hole:

Just trying to find proper place(s) to enter DNS settings in the router configuration. See three screenshots for the three places that seemed to be where I needed to enter the DNS information. As another post on here mentioned in screenshot 1 under DNS values Zyxel routers require you to enter both DNS server 1 and 2 fields. In screenshot 3 I put the hostname as raspberrypi.local because it required me to enter a hostname.domainname which I was unsure of. Any guidance would be appreciated, thanks for the help


In addition, I noticed you configured for a hostname raspberry.local.

.local ist the domain name reserved for the mDNS protocol and shouldn't be used with DNS.

Avoid setting it as your local domain aka search domain aka search suffix.


Try entering Pi-hole's IPv4 twice.

If that doesn't work, try 0.0.0.0 as second.

If that is rejected as well, put in an unused(!) IP from your router's reserve, i.e. outside of your router's DHCP pool range.


I have set up my Orbi and it is working fine, however my Zyxel Router from my internet company is still broadcasting a Wi-Fi signal. I assume I need to change the outer to work in Bridge mode. There are 3 setting (ADSL, VDSL and ETHWAN). Does anyone know which should be set to brisdge mode?


It appears this router can be used with different internet connections. Perhaps if you supply the exact model number, we can look at the User Manual and help you log into the router and find the correct setting. (Or, you could call the Internet Service Provider and ask them how to set it into bridge mode. They get this kind of call frequently and may even offer to log in and do it for you.)


Simply removing the Xyzel WiFi signal can probably be done no matter what "mode" the router is in. Most ISP routers have an option to disable the WiFi. Some even have an external button (but that is rare these days.


Since you've mentioned from the previous thread that it's working using a mobile hotspot, what we need to look at is your router's settings. If you have a knowledge to access your router's settings, here are the settings to look at:


I appreciate your quick response. I suggest that you contact your router or network provider for other settings on your router, so they can walk you through with the steps. Also, please provide the following information below:


To check device firmware and operating system version, please follow the steps on this link. Also, we'd be happy to take a look into this for you. Please fill out this form with all the needed information then let me know once done.


These instructions will provide guidance on how to configure CleanBrowsing on a CenturyLink router, specifically using images from the ZyXEL C1100Z router. You can find the user guide for this device here: -and-routers/zyxel-c1100z.html


I have been beating my head about this for the last week or so and it had drove me to drink (Really short drive by the way). I have CenturyLink DSL Service with a modem that they provided (ZyXEL PK5000Z), this is a modem/Wi-Fi router. What I am trying to do is have my Time Calsule be the Wi-Fi router so my AirPort Express can extend the network and do what it does to get my devices connected. When ever I have my Time Capsule connected to the modem, it will drop the internet connection within 10 min to 30 min, but when I have the modem wired to my Mac it stays connected for days. I have tried many different configs and putting the Time Capsule in "Bridged" mode with the ethernet cable in both the internet port and LAN port... same problem. If anyone could please help me get this setup, that would be amazing... plus this would save me from having to call the CenturyLink Tech Support line.

3a8082e126
Reply all
Reply to author
Forward
0 new messages