ZyXEL P-202H Plus User Guide - Page 134

P-202H Plus v2 User's Guide, VPN Screens, Rule Setup with Manual Key

Page 134 highlights

P-202H Plus v2 User's Guide Table 39 Rule Setup with Manual Key LABEL IP Address Start End/Subnet Mask Remote Address Type IP Address Start End/ Subnet Mask My IP Address Secure Gateway IP Address SPI Encapsulation Mode IPSec Protocol DESCRIPTION When the Local Address Type field is configured to Single, enter a (static) IP address on the LAN behind your ZyXEL Device. When the Local Address Type field is configured to Range, enter the beginning (static) IP address, in a range of computers on your LAN behind your ZyXEL Device. When the Local Address Type field is configured to Subnet, this is a (static) IP address on the LAN behind your ZyXEL Device. When the Local Address Type field is configured to Single, enter the IP address in the IP Address Start field again here. When the Local Address Type field is configured to Range, enter the end (static) IP address, in a range of computers on the LAN behind your ZyXEL Device. When the Local Address Type field is configured to Subnet, this is a subnet mask on the LAN behind your ZyXEL Device. Use the drop-down menu to choose Single, Range, or Subnet. Select Single with a single IP address. Select Range for a specific range of IP addresses. Select Subnet to specify IP addresses on a network by their subnet mask. When the Remote Address Type field is configured to Single, enter a (static) IP address on the network behind the remote IPSec router. When the Remote Address Type field is configured to Range, enter the beginning (static) IP address, in a range of computers on the network behind the remote IPSec router. When the Remote Address Type field is configured to Subnet, enter a (static) IP address on the network behind the remote IPSec router. When the Remote Address Type field is configured to Single, enter the IP address in the IP Address Start field again here. When the Remote Address Type field is configured to Range, enter the end (static) IP address, in a range of computers on the network behind the remote IPSec router. When the Remote Address Type field is configured to Subnet, enter a subnet mask on the network behind the remote IPSec router. Enter the WAN IP address of your ZyXEL Device. The ZyXEL Device uses its current WAN IP address (static or dynamic) in setting up the VPN tunnel if you leave this field as 0.0.0.0. The VPN tunnel has to be rebuilt if this IP address changes. Type the WAN IP address or the URL (up to 31 characters) of the IPSec router with which you're making the VPN connection. Type a number (base 10) from 1 to 999999 for the Security Parameter Index. Select Tunnel mode or Transport mode from the drop-down list box. Select ESP if you want to use ESP (Encapsulation Security Payload). The ESP protocol (RFC 2406) provides encryption as well as some of the services offered by AH. If you select ESP here, you must select options from the Encryption Algorithm and Authentication Algorithm fields (described next). Select AH if you want to use AH (Authentication Header Protocol). The AH protocol (RFC 2402) was designed for integrity, authentication, sequence integrity (replay resistance), and non-repudiation but not for confidentiality, for which the ESP was designed. If you select AH here, you must select options from the Authentication Algorithm field (described later). 133 Chapter 11 VPN Screens

  • 1
  • 2
  • 3
  • 4
  • 5
  • 6
  • 7
  • 8
  • 9
  • 10
  • 11
  • 12
  • 13
  • 14
  • 15
  • 16
  • 17
  • 18
  • 19
  • 20
  • 21
  • 22
  • 23
  • 24
  • 25
  • 26
  • 27
  • 28
  • 29
  • 30
  • 31
  • 32
  • 33
  • 34
  • 35
  • 36
  • 37
  • 38
  • 39
  • 40
  • 41
  • 42
  • 43
  • 44
  • 45
  • 46
  • 47
  • 48
  • 49
  • 50
  • 51
  • 52
  • 53
  • 54
  • 55
  • 56
  • 57
  • 58
  • 59
  • 60
  • 61
  • 62
  • 63
  • 64
  • 65
  • 66
  • 67
  • 68
  • 69
  • 70
  • 71
  • 72
  • 73
  • 74
  • 75
  • 76
  • 77
  • 78
  • 79
  • 80
  • 81
  • 82
  • 83
  • 84
  • 85
  • 86
  • 87
  • 88
  • 89
  • 90
  • 91
  • 92
  • 93
  • 94
  • 95
  • 96
  • 97
  • 98
  • 99
  • 100
  • 101
  • 102
  • 103
  • 104
  • 105
  • 106
  • 107
  • 108
  • 109
  • 110
  • 111
  • 112
  • 113
  • 114
  • 115
  • 116
  • 117
  • 118
  • 119
  • 120
  • 121
  • 122
  • 123
  • 124
  • 125
  • 126
  • 127
  • 128
  • 129
  • 130
  • 131
  • 132
  • 133
  • 134
  • 135
  • 136
  • 137
  • 138
  • 139
  • 140
  • 141
  • 142
  • 143
  • 144
  • 145
  • 146
  • 147
  • 148
  • 149
  • 150
  • 151
  • 152
  • 153
  • 154
  • 155
  • 156
  • 157
  • 158
  • 159
  • 160
  • 161
  • 162
  • 163
  • 164
  • 165
  • 166
  • 167
  • 168
  • 169
  • 170
  • 171
  • 172
  • 173
  • 174
  • 175
  • 176
  • 177
  • 178
  • 179
  • 180
  • 181
  • 182
  • 183
  • 184
  • 185
  • 186
  • 187
  • 188
  • 189
  • 190
  • 191
  • 192
  • 193
  • 194
  • 195
  • 196
  • 197
  • 198
  • 199
  • 200
  • 201
  • 202
  • 203
  • 204
  • 205
  • 206
  • 207
  • 208
  • 209
  • 210
  • 211
  • 212
  • 213
  • 214
  • 215
  • 216
  • 217
  • 218
  • 219
  • 220
  • 221
  • 222
  • 223
  • 224
  • 225
  • 226
  • 227
  • 228
  • 229
  • 230
  • 231
  • 232
  • 233
  • 234
  • 235
  • 236
  • 237
  • 238
  • 239
  • 240
  • 241
  • 242
  • 243
  • 244
  • 245
  • 246
  • 247
  • 248
  • 249
  • 250
  • 251
  • 252
  • 253
  • 254
  • 255
  • 256
  • 257
  • 258
  • 259
  • 260
  • 261
  • 262
  • 263
  • 264
  • 265
  • 266
  • 267
  • 268
  • 269
  • 270
  • 271
  • 272
  • 273
  • 274
  • 275
  • 276
  • 277
  • 278
  • 279
  • 280
  • 281
  • 282
  • 283
  • 284
  • 285
  • 286
  • 287
  • 288
  • 289
  • 290
  • 291
  • 292
  • 293
  • 294
  • 295
  • 296
  • 297
  • 298
  • 299
  • 300
  • 301
  • 302
  • 303
  • 304
  • 305
  • 306
  • 307
  • 308
  • 309
  • 310
  • 311
  • 312
  • 313
  • 314
  • 315
  • 316
  • 317
  • 318
  • 319
  • 320
  • 321
  • 322
  • 323
  • 324
  • 325
  • 326
  • 327
  • 328
  • 329
  • 330
  • 331
  • 332
  • 333
  • 334
  • 335
  • 336
  • 337
  • 338
  • 339
  • 340
  • 341
  • 342
  • 343
  • 344
  • 345
  • 346
  • 347
  • 348
  • 349
  • 350
  • 351
  • 352
  • 353
  • 354
  • 355
  • 356
  • 357
  • 358
  • 359
  • 360
  • 361
  • 362
  • 363
  • 364
  • 365
  • 366
  • 367
  • 368
  • 369
  • 370
  • 371
  • 372
  • 373
  • 374
  • 375

P-202H Plus v2 User’s Guide
133
Chapter 11 VPN Screens
IP Address Start
When the
Local Address Type
field is configured to
Single
, enter a (static)
IP address on the LAN behind your ZyXEL Device. When the
Local Address
Type
field is configured to
Range
, enter the beginning (static) IP address, in a
range of computers on your LAN behind your ZyXEL Device. When the
Local
Address Type
field is configured to
Subnet
, this is a (static) IP address on
the LAN behind your ZyXEL Device.
End/Subnet Mask
When the
Local Address Type
field is configured to
Single
, enter the IP
address in the
IP Address Start
field again here. When the
Local Address
Type
field is configured to
Range
, enter the end (static) IP address, in a
range of computers on the LAN behind your ZyXEL Device. When the
Local
Address Type
field is configured to
Subnet
, this is a subnet mask on the
LAN behind your ZyXEL Device.
Remote Address Type
Use the drop-down menu to choose
Single
,
Range
, or
Subnet
. Select
Single
with a single IP address. Select
Range
for a specific range of IP
addresses. Select
Subnet
to specify IP addresses on a network by their
subnet mask.
IP Address Start
When the
Remote Address Type
field is configured to
Single
, enter a
(static) IP address on the network behind the remote IPSec router. When the
Remote Address Type
field is configured to
Range
, enter the beginning
(static) IP address, in a range of computers on the network behind the remote
IPSec router. When the
Remote Address Type
field is configured to
Subnet
,
enter a (static) IP address on the network behind the remote IPSec router.
End/ Subnet Mask
When the
Remote Address Type
field is configured to
Single
, enter the IP
address in the
IP Address Start
field again here. When the
Remote
Address Type
field is configured to
Range
, enter the end (static) IP address,
in a range of computers on the network behind the remote IPSec router.
When the
Remote Address Type
field is configured to
Subnet
, enter a
subnet mask on the network behind the remote IPSec router.
My IP Address
Enter the WAN IP address of your ZyXEL Device. The ZyXEL Device uses its
current WAN IP address (static or dynamic) in setting up the VPN tunnel if
you leave this field as
0.0.0.0
. The VPN tunnel has to be rebuilt if this IP
address changes.
Secure Gateway IP
Address
Type the WAN IP address or the URL (up to 31 characters) of the IPSec
router with which you're making the VPN connection.
SPI
Type a number (base 10) from 1 to 999999 for the Security Parameter Index.
Encapsulation Mode
Select
Tunnel
mode or
Transport
mode from the drop-down list box.
IPSec Protocol
Select
ESP
if you want to use ESP (Encapsulation Security Payload). The
ESP protocol (RFC 2406) provides encryption as well as some of the services
offered by AH. If you select
ESP
here, you must select options from the
Encryption Algorithm
and
Authentication Algorithm
fields (described
next).
Select
AH
if you want to use AH (Authentication Header Protocol). The AH
protocol (RFC 2402) was designed for integrity, authentication, sequence
integrity (replay resistance), and non-repudiation but not for confidentiality, for
which the ESP was designed. If you select
AH
here, you must select options
from the
Authentication Algorithm
field (described later).
Table 39
Rule Setup with Manual Key
LABEL
DESCRIPTION