ZyXEL Vantage CNM User Guide - Page 324
Table 129
View all ZyXEL Vantage CNM manuals
Add to My Manuals
Save this manual to your list of manuals |
Page 324 highlights
Chapter 11 IPSec VPN The VPN wizard automatically creates a corresponding policy route. If you create the VPN connection in the VPN > IPSec VPN screens, you need to manually create a corresponding policy route. Figure 144 Device Operation > Device Configuration > VPN > IPSec VPN > VPN Connection Each field is discussed in the following table. Table 129 Device Operation > Device Configuration > VPN > IPSec VPN > VPN Connection LABEL DESCRIPTION Global Setting Use Policy Route to control dynamic IPSec rules Leave this cleared to have the ZyWALL automatically obtain source and destination addresses for dynamic IPSec rules. When you leave this option's check box cleared, you do not need to configure policy routes for the dynamic IPSec tunnels. Only select this if you want to use policy routes to manually specify the destination addresses of dynamic IPSec rules. You must configure a policy route for each dynamic IPSec tunnel. Ignore ""Don't Fragment"" setting in packet header Select this to fragment packets larger than the MTU (Maximum Transmission Unit) that have the "don't" fragment" bit in the header turned on. When you clear this the ZyWALL drops packets larger than the MTU that have the "don't" fragment" bit in the header turned on. Apply Click Apply to save your changes back to the ZyWALL. Reset Click Reset to begin configuring this screen afresh. Configuration Page Size Select how many entries you want to display on each page. # This field is a sequential value, and it is not associated with a specific connection. Name This field displays the name of the IPSec SA. 324 Vantage CNM User's Guide