beautypg.com

6 vpn rules (manual) > add/edit, Table 51 configuration > vpn > manual-key ipsec – ZyXEL Communications Centralized Network Management Vantage CNM User Manual

Page 135

background image

Chapter 6 Device Security Settings

Vantage CNM User’s Guide

135

The following table describes the labels in this screen.

6.3.6 VPN Rules (Manual) > Add/Edit

Select Manual from

Figure 60 on page 129

to proceed to the next screen.

Table 51 Configuration > VPN > Manual-Key IPSec

LABEL

DESCRIPTION

#

This is the VPN policy index number.

Name

This field displays the identification name for this VPN policy. Click the hyperlink to
edit the VPN policy.

Active

This field displays whether the VPN policy is active or not. A true signifies that this
VPN policy is active; false signifies that this VPN policy is not active.

Local IP Address

This is the IP address(es) of computer(s) on your local network behind your device.
The same (static) IP address is displayed twice when the Local Network Address
Type
field in the VPN - Manual Key - Edit screen is configured to Single Address.
The beginning and ending (static) IP addresses, in a range of computers are
displayed when the Local Network Address Type field in the VPN - Manual Key -
Edit
screen is configured to Range Address.
A (static) IP address and a subnet mask are displayed when the Local Network
Address Type
field in the VPN - Manual Key - Edit screen is configured to Subnet
Address
.

Remote IP
Address

This is the IP address(es) of computer(s) on the remote network behind the remote
IPSec router.
This field displays N/A when the Remote Gateway Address field displays 0.0.0.0.
In this case only the remote IPSec router can initiate the VPN.
The same (static) IP address is displayed twice when the Remote Network
Address Type
field in the VPN - Manual Key - Edit screen is configured to Single
Address
.
The beginning and ending (static) IP addresses, in a range of computers are
displayed when the Remote Network Address Type field in the VPN - Manual
Key - Edit
screen is configured to Range Address.
A (static) IP address and a subnet mask are displayed when the Remote Network
Address Type
field in the VPN - Manual Key - Edit screen is configured to Subnet
Address
.

Encap.

This field displays Tunnel or Transport mode (Tunnel is the default selection).

IPSec Algorithm

This field displays the security protocols used for an SA.
Both AH and ESP increase device processing requirements and communications
latency (delay).

Remote Gateway
Address

This is the static WAN IP address or domain name of the remote IPSec router.

Add

Click Add to add a new VPN policy.

Edit

Click Edit to modify an existing VPN policy.

Remove

Select a policy and click Remove to delete the VPN policy. A window displays
asking you to confirm that you want to delete the VPN rule. When a VPN policy is
deleted, subsequent policies move up in the page list.