Chapter 16 VPN
P-661HNU-Fx User’s Guide
218
16.1.2 What You Need to Know About IPSec VPN
A VPN tunnel is usually established in two phases. Each phase establishes a
security association (SA), a contract indicating what security parameters the
ZyXEL Device and the remote IPSec router will use. The first phase establishes an
Internet Key Exchange (IKE) SA between the ZyXEL Device and remote IPSec
router. The second phase uses the IKE SA to securely establish an IPSec SA
through which the ZyXEL Device and remote IPSec router can send data between
computers on the local network and remote network. The following figure
illustrates this.
Figure 95
VPN: IKE SA and IPSec SA
In this example, a computer in network A is exchanging data with a computer in
network B. Inside networks A and B, the data is transmitted the same way data is
normally transmitted in the networks. Between routers X and Y, the data is
protected by tunneling, encryption, authentication, and other security features of
the IPSec SA. The IPSec SA is established securely using the IKE SA that routers X
and Y established first.
My IP Address
My IP Address is the WAN IP address of the ZyXEL Device. The ZyXEL Device has
to rebuild the VPN tunnel if My IP Address changes after setup.
The following applies if this field is configured as 0.0.0.0:
• The ZyXEL Device uses the current ZyXEL Device WAN IP address (static or
dynamic) to set up the VPN tunnel.
Secure Gateway Address
Secure Gateway Address is the WAN IP address or domain name of the remote
IPSec router (secure gateway).
A
X
Y
B
IPSec SA
IKE SA
Содержание P-661H-61
Страница 2: ......
Страница 8: ...Safety Warnings P 661HNU Fx User s Guide 8...
Страница 10: ...Contents Overview P 661HNU Fx User s Guide 10...
Страница 18: ...Table of Contents P 661HNU Fx User s Guide 18 Appendix G Legal Information 393 Index 1...
Страница 19: ...19 PART I User s Guide...
Страница 20: ...20...
Страница 28: ...Chapter 1 Introduction P 661HNU Fx User s Guide 28...
Страница 36: ...Chapter 2 Introducing the Web Configurator P 661HNU Fx User s Guide 36...
Страница 79: ...79 PART II Technical Reference...
Страница 80: ...80...
Страница 86: ...Chapter 4 Connection Status and System Info Screens P 661HNU Fx User s Guide 86...
Страница 140: ...Chapter 6 Wireless P 661HNU Fx User s Guide 140...
Страница 172: ...Chapter 8 Routing P 661HNU Fx User s Guide 172...
Страница 176: ...Chapter 9 DNS Route P 661HNU Fx User s Guide 176...
Страница 260: ...Chapter 24 Backup Restore P 661HNU Fx User s Guide 260...
Страница 281: ...Chapter 27 Product Specifications P 661HNU Fx User s Guide 281...
Страница 282: ...Chapter 27 Product Specifications P 661HNU Fx User s Guide 282...
Страница 334: ...Appendix C Pop up Windows Java Script and Java Permissions P 661HNU Fx User s Guide 334...
Страница 358: ...Appendix D Wireless LANs P 661HNU Fx User s Guide 358...
Страница 392: ...Appendix F Open Software Announcements P 661HNU Fx User s Guide 392...
Страница 403: ...Index P 661HNU Fx User s Guide 403...
Страница 404: ...Index P 661HNU Fx User s Guide 404...