ZyXEL SBG3300-N Series User Guide - Page 206
What You Need To Know, The Setup Screen
![]() |
View all ZyXEL SBG3300-N Series manuals
Add to My Manuals
Save this manual to your list of manuals |
Page 206 highlights
Chapter 19 IPSec VPN 19.3 What You Need To Know A VPN tunnel is usually established in two phases. Each phase establishes a security association (SA), a contract indicating what security parameters the Device and the remote IPSec router will use. The first phase establishes an Internet Key Exchange (IKE) SA between the Device and remote IPSec router. The second phase uses the IKE SA to securely establish an IPSec SA through which the Device and remote IPSec router can send data between computers on the local network and remote network. The following figure illustrates this. Figure 118 VPN: IKE SA and IPSec SA NetNwEToWrOkRAK Network B IPSec SA X Y IKE SA In this example, a computer in network A is exchanging data with a computer in network B. Inside networks A and B, the data is transmitted the same way data is normally transmitted in the networks. Between routers X and Y, the data is protected by tunneling, encryption, authentication, and other security features of the IPSec SA. The IPSec SA is established securely using the IKE SA that routers X and Y established first. 19.4 The Setup Screen The following figure helps explain the main fields in the web configurator. Figure 119 IPSec Fields Summary Local Network Remote Network Remote IPSec Router Local IP Address VPN Tunnel Local and remote IP addresses must be static. Remote IP Address 206 SBG3300-N Series User's Guide
![](/manual_guide/products/zyxel-sbg3300n-series-user-guide-222663b/206.png)