beautypg.com

ZyXEL Communications ZyXEL ZyAIR 100 User Manual

Page 211

background image

ZyWALL 10~100 Series Internet Security Gateway

VPN Screens

15-5

Table 15-2 Summary

LABEL DESCRIPTION

Local Address

This is the IP address(es) of computer(s) on your local network behind your ZyWALL.

The same (static) IP address is displayed twice when the Local Address Type field
in the Configure-IKE (or Manual) screen is configured to Single Address.

The beginning and ending (static) IP addresses, in a range of computers are
displayed when the Local Address Type field in the Configure-IKE (or Manual)
screen is configured to Range Address.

A (static) IP address and a subnet mask are displayed when the Local Address
Type
field in the Configure-IKE (or Manual) screen is configured to Subnet
Address
.

Remote Address

This is the IP address(es) of computer(s) on the remote network behind the remote
IPSec router.

This field displays N/A when the Secure Gateway Addr field displays 0.0.0.0. In this
case only the remote IPSec router can initiate the VPN.

The same (static) IP address is displayed twice when the Remote Address Type
field in the Configure-IKE (or Manual) screen is configured to Single Address.

The beginning and ending (static) IP addresses, in a range of computers are
displayed when the Remote Address Type field in the Configure-IKE (or Manual)
screen is configured to Range Address.

A (static) IP address and a subnet mask are displayed when the Remote Address
Type
field in the Configure-IKE (or Manual) screen is configured to Subnet
Address
.

Encap

This field displays Tunnel or Transport mode (Tunnel is the default selection).

IPSec Algorithm

This field displays the security protocols used for an SA.

Both AH and ESP increase ZyWALL processing requirements and communications
latency (delay).

Secure Gateway
Addr

This is the static WAN IP address or URL of the remote IPSec router. This field
displays 0.0.0.0 when you configure the Secure Gateway Addr field in the
Configure-IKE screen to 0.0.0.0.

Select the radio button next to a VPN index number and then click Edit to edit a specific VPN policy.
Click the radio button next to an empty VPN policy index number and then Edit to add a new VPN policy.

Select the radio button next to a VPN policy number you want to delete and then click Delete. When a
VPN policy is deleted, subsequent policies do not move up in the page list.