
Chapter 20 IPSec VPN
ZyWALL 110/310/1100 Series User’s Guide
286
Each field is discussed in the following table. See
and
for more information.
20.2.1 The VPN Connection Add/Edit (IKE) Screen
The VPN Connection Add/Edit Gateway screen allows you to create a new VPN connection
policy or edit an existing one. To access this screen, go to the Configuration > VPN Connection
screen (see
), and click either the Add icon or an Edit icon.
Table 106
Configuration > VPN > IPSec VPN > VPN Connection
LABEL
DESCRIPTION
Use Policy
Route to control
dynamic IPSec
rules
Select this to be able to use policy routes to manually specify the destination addresses of
dynamic IPSec rules. You must manually create these policy routes. The ZyWALL
automatically obtains source and destination addresses for dynamic IPSec rules that do not
match any of the policy routes.
Clear this to have the ZyWALL automatically obtain source and destination addresses for all
dynamic IPSec rules.
Ignore "Don't
Fragment"
setting in
packet header
Select this to fragment packets larger than the MTU (Maximum Transmission Unit) that have
the “don’t” fragment” bit in the IP header turned on. When you clear this the ZyWALL drops
packets larger than the MTU that have the “don’t” fragment” bit in the header turned on.
Add
Click this to create a new entry.
Edit
Double-click an entry or select it and click Edit to open a screen where you can modify the
entry’s settings.
Remove
To remove an entry, select it and click Remove. The ZyWALL confirms you want to remove
it before doing so.
Activate
To turn on an entry, select it and click Activate.
Inactivate
To turn off an entry, select it and click Inactivate.
Connect
To connect an IPSec SA, select it and click Connect.
Disconnect
To disconnect an IPSec SA, select it and click Disconnect.
Object
Reference
Select an entry and click Object Reference to open a screen that shows which settings use
the entry. See
for an example.
#
This field is a sequential value, and it is not associated with a specific connection.
Status
The activate (light bulb) icon is lit when the entry is active and dimmed when the entry is
inactive.
The connect icon is lit when the interface is connected and dimmed when it is disconnected.
Name
This field displays the name of the IPSec SA.
VPN Gateway
This field displays the associated VPN gateway(s). If there is no VPN gateway, this field
displays “manual key”.
Encapsulation
This field displays what encapsulation the IPSec SA uses.
Algorithm
This field displays what encryption and authentication methods, respectively, the IPSec SA
uses.
Policy
This field displays the local policy and the remote policy, respectively.
Apply
Click Apply to save your changes back to the ZyWALL.
Reset
Click Reset to return the screen to its last-saved settings.
Содержание ZyWALL 110 Series
Страница 16: ...ZyWALL 110 310 1100 Series User s Guide 16...
Страница 32: ...Chapter 1 Introduction ZyWALL 110 310 1100 Series User s Guide 32...
Страница 42: ...Chapter 3 Hardware Introduction ZyWALL 110 310 1100 Series User s Guide 42...
Страница 68: ...Chapter 4 Quick Setup Wizards ZyWALL 110 310 1100 Series User s Guide 68...
Страница 83: ...Chapter 6 Monitor ZyWALL 110 310 1100 Series User s Guide 83 Figure 60 Monitor System Status Interface Status...
Страница 128: ...Chapter 7 Interfaces ZyWALL 110 310 1100 Series User s Guide 128 Figure 83 Configuration Network Interface PPP Add...
Страница 135: ...Chapter 7 Interfaces ZyWALL 110 310 1100 Series User s Guide 135 Figure 85 Configuration Network Interface Cellular Add...
Страница 176: ...Chapter 7 Interfaces ZyWALL 110 310 1100 Series User s Guide 176...
Страница 186: ...Chapter 8 Trunk ZyWALL 110 310 1100 Series User s Guide 186...
Страница 210: ...Chapter 10 Routing Protocols ZyWALL 110 310 1100 Series User s Guide 210...
Страница 220: ...Chapter 12 DDNS ZyWALL 110 310 1100 Series User s Guide 220...
Страница 228: ...Chapter 13 NAT ZyWALL 110 310 1100 Series User s Guide 228...
Страница 240: ...Chapter 15 ALG ZyWALL 110 310 1100 Series User s Guide 240...
Страница 246: ...Chapter 16 IP MAC Binding ZyWALL 110 310 1100 Series User s Guide 246...
Страница 263: ...Chapter 18 Authentication Policy ZyWALL 110 310 1100 Series User s Guide 263...
Страница 264: ...Chapter 18 Authentication Policy ZyWALL 110 310 1100 Series User s Guide 264...
Страница 270: ...Chapter 19 Firewall ZyWALL 110 310 1100 Series User s Guide 270 Figure 163 Configuration Firewall...
Страница 296: ...Chapter 20 IPSec VPN ZyWALL 110 310 1100 Series User s Guide 296 Figure 182 Configuration VPN IPSec VPN VPN Gateway Edit...
Страница 316: ...Chapter 20 IPSec VPN ZyWALL 110 310 1100 Series User s Guide 316...
Страница 340: ...Chapter 22 SSL User Screens ZyWALL 110 310 1100 Series User s Guide 340...
Страница 442: ...Chapter 36 DHCPv6 ZyWALL 110 310 1100 Series User s Guide 442...
Страница 540: ...Appendix A Legal Information ZyWALL 110 310 1100 Series User s Guide 540...
Страница 558: ...Index ZyWALL 110 310 1100 Series User s Guide 558...
Страница 559: ...Index ZyWALL 110 310 1100 Series User s Guide 559...
Страница 560: ...Index ZyWALL 110 310 1100 Series User s Guide 560...
Страница 561: ...Index ZyWALL 110 310 1100 Series User s Guide 561...
Страница 562: ...Index ZyWALL 110 310 1100 Series User s Guide 562...