P-2608HWL Series Support Notes
When should I use FQDN?
If your VPN connection is Prestige-to-Prestige, and both of them have static IP addresses without a NAT
router in between, use IP as the Local/Peer ID type.
If either side of VPN tunneling end points uses a dynamic IP address, you may need to configure ID for
the VPN gateway with the dynamic IP address. In this case, use "Aggressive mode" for phase 1
negotiation .
Is my Prestige ready for IPSec VPN?
IPSec VPN is available on a Prestige using ZyNOS V3.50 firmware. It is a free upgrade and no
registration is required.
By upgrading the firmware and the configuration (romfile) to ZyNOS V3.50, your Prestige is IPSec VPN
capable. You can then configure VPN via the web configurator.
Download the firmware from our web site.
NOTE: To update firmware from ZyNOS V3.2x to V3.5x, use the console port or TFTP to perform the
firmware upgrade. This is due to the difference in the memory allocation between these two versions.
How do I configure VPN on the Prestige?
You can configure VPN settings on the Prestige using the SMT or Web configurator. Prestige 1 supports
Web only.
How many VPN connections does the Prestige support?
Prestige 1 supports 1 VPN connection. Prestige 10 supports 10 VPN connections. Prestige 50 supports 50
tunnels. Prestige 100 supports 100 tunnels.
What VPN protocols are supported on the Prestige?
All Prestige series support ESP (protocol number 50) and AH (protocol number 51).
What VPN encryption types are supported on the Prestige?
The Prestige supports 56-bit DES,168-bit 3DES and AES encryption.
172
All contents copyright (c) 2005 ZyXEL Communications Corporation.