ZyXEL P-661H-D1 User Guide - Page 223

Security > VPN > Setup > Edit, Table 58

Page 223 highlights

Chapter 16 VPN Table 58 Security > VPN > Setup > Edit LABEL DESCRIPTION Tunnel Name Type up to 32 characters to identify this VPN policy. You may use any character, including spaces, but the ZyXEL Device drops trailing spaces. Mode Select net-net or Roadwarrior from the drop-down list box. Multiple SAs connecting through a secure gateway must have the same negotiation mode. Local Specify the IP addresses of the devices behind the ZyXEL Device that can use the VPN tunnel. The local IP addresses must correspond to the remote IPSec router's configured remote IP addresses. Local Address Type IP Address Start End / Subnet Mask Remote Two active SAs cannot have the local and remote IP address(es) both the same. Two active SAs can have the same local or remote IP address, but not both. You can configure multiple SAs between the same local and remote IP addresses, as long as only one is active at any time. Use the drop-down menu to choose Single, or Subnet. Select Single for a single IP address. Select Subnet to specify IP addresses based on the subnet mask. When the Local Address Type field is configured to Single, enter a (static) IP address on the LAN behind your ZyXEL Device. When the Local Address Type field is configured to Subnet, enter an IP address on the LAN behind your ZyXEL Device. When the Local Address Type field is configured to Single, this field is N/A. When the Local Address Type field is configured to Subnet, enter the subnet of the LAN behind your ZyXEL Device. Specify the IP addresses of the devices behind the remote IPSec router that can use the VPN tunnel. The remote IP addresses must correspond to the remote IPSec router's configured local IP addresses. Remote Address Type IP Address Start End / Subnet Mask Address Information WAN Interface My IP Address Two active SAs cannot have the local and remote IP address(es) both the same. Two active SAs can have the same local or remote IP address, but not both. You can configure multiple SAs between the same local and remote IP addresses, as long as only one is active at any time. Use the drop-down menu to choose Single, or Subnet. Select Single for a single IP address. Select Subnet to specify IP addresses based on the subnet mask. When the Remote Address Type field is configured to Single, enter a (static) IP address on the network behind the remote IPSec router. When the Remote Address Type field is configured to Subnet, enter an IP Address on the LAN behind the IPSec router. When the Remote Address Type field is configured to Single, this field is N/A. When the Remote Address Type field is configured to Subnet, enter the subnet of the LAN behind the IPSec router. The interface used to connect to the internet My IP Address only shows the IP of the selected interface. There is no need to modify this information. P-661HNU-Fx User's Guide 223

  • 1
  • 2
  • 3
  • 4
  • 5
  • 6
  • 7
  • 8
  • 9
  • 10
  • 11
  • 12
  • 13
  • 14
  • 15
  • 16
  • 17
  • 18
  • 19
  • 20
  • 21
  • 22
  • 23
  • 24
  • 25
  • 26
  • 27
  • 28
  • 29
  • 30
  • 31
  • 32
  • 33
  • 34
  • 35
  • 36
  • 37
  • 38
  • 39
  • 40
  • 41
  • 42
  • 43
  • 44
  • 45
  • 46
  • 47
  • 48
  • 49
  • 50
  • 51
  • 52
  • 53
  • 54
  • 55
  • 56
  • 57
  • 58
  • 59
  • 60
  • 61
  • 62
  • 63
  • 64
  • 65
  • 66
  • 67
  • 68
  • 69
  • 70
  • 71
  • 72
  • 73
  • 74
  • 75
  • 76
  • 77
  • 78
  • 79
  • 80
  • 81
  • 82
  • 83
  • 84
  • 85
  • 86
  • 87
  • 88
  • 89
  • 90
  • 91
  • 92
  • 93
  • 94
  • 95
  • 96
  • 97
  • 98
  • 99
  • 100
  • 101
  • 102
  • 103
  • 104
  • 105
  • 106
  • 107
  • 108
  • 109
  • 110
  • 111
  • 112
  • 113
  • 114
  • 115
  • 116
  • 117
  • 118
  • 119
  • 120
  • 121
  • 122
  • 123
  • 124
  • 125
  • 126
  • 127
  • 128
  • 129
  • 130
  • 131
  • 132
  • 133
  • 134
  • 135
  • 136
  • 137
  • 138
  • 139
  • 140
  • 141
  • 142
  • 143
  • 144
  • 145
  • 146
  • 147
  • 148
  • 149
  • 150
  • 151
  • 152
  • 153
  • 154
  • 155
  • 156
  • 157
  • 158
  • 159
  • 160
  • 161
  • 162
  • 163
  • 164
  • 165
  • 166
  • 167
  • 168
  • 169
  • 170
  • 171
  • 172
  • 173
  • 174
  • 175
  • 176
  • 177
  • 178
  • 179
  • 180
  • 181
  • 182
  • 183
  • 184
  • 185
  • 186
  • 187
  • 188
  • 189
  • 190
  • 191
  • 192
  • 193
  • 194
  • 195
  • 196
  • 197
  • 198
  • 199
  • 200
  • 201
  • 202
  • 203
  • 204
  • 205
  • 206
  • 207
  • 208
  • 209
  • 210
  • 211
  • 212
  • 213
  • 214
  • 215
  • 216
  • 217
  • 218
  • 219
  • 220
  • 221
  • 222
  • 223
  • 224
  • 225
  • 226
  • 227
  • 228
  • 229
  • 230
  • 231
  • 232
  • 233
  • 234
  • 235
  • 236
  • 237
  • 238
  • 239
  • 240
  • 241
  • 242
  • 243
  • 244
  • 245
  • 246
  • 247
  • 248
  • 249
  • 250
  • 251
  • 252
  • 253
  • 254
  • 255
  • 256
  • 257
  • 258
  • 259
  • 260
  • 261
  • 262
  • 263
  • 264
  • 265
  • 266
  • 267
  • 268
  • 269
  • 270
  • 271
  • 272
  • 273
  • 274
  • 275
  • 276
  • 277
  • 278
  • 279
  • 280
  • 281
  • 282
  • 283
  • 284
  • 285
  • 286
  • 287
  • 288
  • 289
  • 290
  • 291
  • 292
  • 293
  • 294
  • 295
  • 296
  • 297
  • 298
  • 299
  • 300
  • 301
  • 302
  • 303
  • 304
  • 305
  • 306
  • 307
  • 308
  • 309
  • 310
  • 311
  • 312
  • 313
  • 314
  • 315
  • 316
  • 317
  • 318
  • 319
  • 320
  • 321
  • 322
  • 323
  • 324
  • 325
  • 326
  • 327
  • 328
  • 329
  • 330
  • 331
  • 332
  • 333
  • 334
  • 335
  • 336
  • 337
  • 338
  • 339
  • 340
  • 341
  • 342
  • 343
  • 344
  • 345
  • 346
  • 347
  • 348
  • 349
  • 350
  • 351
  • 352
  • 353
  • 354
  • 355
  • 356
  • 357
  • 358
  • 359
  • 360
  • 361
  • 362
  • 363
  • 364
  • 365
  • 366
  • 367
  • 368
  • 369
  • 370
  • 371
  • 372
  • 373
  • 374
  • 375
  • 376
  • 377
  • 378
  • 379
  • 380
  • 381
  • 382
  • 383
  • 384
  • 385
  • 386
  • 387
  • 388
  • 389
  • 390
  • 391
  • 392
  • 393
  • 394
  • 395
  • 396
  • 397
  • 398
  • 399
  • 400
  • 401
  • 402
  • 403
  • 404

Chapter 16 VPN
P-661HNU-Fx User’s Guide
223
Tunnel Name
Type up to 32 characters to identify this VPN policy. You may use any
character, including spaces, but the ZyXEL Device drops trailing spaces.
Mode
Select
net-net
or
Roadwarrior
from the drop-down list box. Multiple
SAs connecting through a secure gateway must have the same
negotiation mode.
Local
Specify the IP addresses of the devices behind the ZyXEL Device that
can use the VPN tunnel. The local IP addresses must correspond to the
remote IPSec router's configured remote IP addresses.
Two active SAs cannot have the local and remote IP address(es) both
the same. Two active SAs can have the same local or remote IP
address, but not both. You can configure multiple SAs between the
same local and remote IP addresses, as long as only one is active at
any time.
Local Address
Type
Use the drop-down menu to choose
Single
, or
Subnet
. Select
Single
for a single IP address. Select
Subnet
to specify IP addresses based on
the subnet mask.
IP Address Start
When the
Local Address Type
field is configured to
Single
, enter a
(static) IP address on the LAN behind your ZyXEL Device. When the
Local Address Type
field is configured to
Subnet
, enter an IP
address on the LAN behind your ZyXEL Device.
End / Subnet
Mask
When the
Local Address Type
field is configured to
Single
, this field
is N/A. When the
Local Address Type
field is configured to
Subnet
,
enter the subnet of the LAN behind your ZyXEL Device.
Remote
Specify the IP addresses of the devices behind the remote IPSec router
that can use the VPN tunnel. The remote IP addresses must correspond
to the remote IPSec router's configured local IP addresses.
Two active SAs cannot have the local and remote IP address(es) both
the same. Two active SAs can have the same local or remote IP
address, but not both. You can configure multiple SAs between the
same local and remote IP addresses, as long as only one is active at
any time.
Remote Address
Type
Use the drop-down menu to choose
Single
, or
Subnet
. Select
Single
for a single IP address. Select
Subnet
to specify IP addresses based on
the subnet mask.
IP Address Start
When the
Remote Address Type
field is configured to
Single
, enter a
(static) IP address on the network behind the remote IPSec router.
When the
Remote Address Type
field is configured to
Subnet
, enter
an IP Address on the LAN behind the IPSec router.
End / Subnet
Mask
When the
Remote Address Type
field is configured to
Single
, this
field is N/A. When the
Remote Address Type
field is configured to
Subnet
, enter the subnet of the LAN behind the IPSec router.
Address
Information
WAN Interface
The interface used to connect to the internet
My IP Address
My IP Address only shows the IP of the selected interface. There is no
need to modify this information.
Table 58
Security > VPN > Setup > Edit
LABEL
DESCRIPTION