ZyXEL Communications P-334W User Manual
Page 231

Prestige 334W User’s Guide
VPN Screens
16-21
Table 16-8 VPN IKE: Advanced
LABEL DESCRIPTION
Local Port End
Enter a port number in this field to define a port range. This port number must be
greater than that specified in the previous field (or equal to it for configuring an
individual port).
Remote Address
Start
Remote IP addresses must be static and correspond to the remote IPSec
router's configured local IP addresses. The remote address fields do not apply
when the Secure Gateway Address field is configured to 0.0.0.0. In this case
only the remote IPSec router can initiate the VPN.
Two active SAs cannot have the local and remote IP address(es) both the same.
Two active SAs can have the same local or remote IP address, but not both. You
can configure multiple SAs between the same local and remote IP addresses, as
long as only one is active at any time.
Enter a (static) IP address on the network behind the remote IPSec router.
Remote Address
End/Mask
When the remote IP address is a single address, type it a second time here.
When the remote IP address is a range, enter the end (static) IP address, in a
range of computers on the network behind the remote IPSec router.
When the remote IP address is a subnet address, enter a subnet mask on the
network behind the remote IPSec router.
Remote Port Start
0 is the default and signifies any port. Type a port number from 0 to 65535.
Some of the most common IP ports are: 21, FTP; 53, DNS; 23, Telnet; 80,
HTTP; 25, SMTP; 110, POP3
Remote Port End
Enter a port number in this field to define a port range. This port number must be
greater than that specified in the previous field (or equal to it for configuring an
individual port).
DNS Server (for
IPSec VPN)
If there is a private DNS server that services the VPN, type its IP address here.
The Prestige assigns this additional DNS server to the Prestige’s DHCP clients
that have IP addresses in this IPSec rule's range of local addresses. A DNS
server allows clients on the VPN to find other computers and servers on the VPN
by their (private) domain names.
My IP Address
Enter the WAN IP address of your Prestige. The Prestige uses its current WAN
IP address (static or dynamic) in setting up the VPN tunnel if you leave this field
as 0.0.0.0. The VPN tunnel has to be rebuilt if this IP address changes.
Local ID Type
Select IP to identify this Prestige by its IP address.
Select DNS to identify this Prestige by a domain name.
Select E-mail to identify this Prestige by an e-mail address.