Figure 321 Backup Gateway - ZyXEL Communications ZYWALL P1 User Manual

Internet security appliance
Hide thumbs Also See for ZYWALL P1:
Table of Contents

Advertisement

Figure 321 Backup Gateway

Updating the ARP entries could increase the danger of spoofing attacks. It is only
recommended that you turn on ackGratuitous and force update if you need it like in the
previous backup gateway example. Turning on the force updates option is more dangerous
than leaving it off because the ZyWALL updates the ARP table even when there is an existing
entry.
Setting the Key Length for Phase 2 IPSec AES Encryption
Syntax:
ipsec ipsecConfig encryKeyLen <0:128 | 1:192 | 2:256>
By default the ZyWALL uses a 128 bit AES encryption key for phase 2 IPSec tunnels. Use
this command to edit an existing VPN rule to use a longer AES encryption key.
See the following example. Say you have a VPN rule one that uses AES for the phase 2
encryption and you want it to use 192 bit encryption.
• Use the first line to start editing the VPN rule.
• The second line sets VPN rule one to use 192 bit AES for the phase 2 encryption.
• The third line displays the results.
ZyWALL P1 User's Guide
Appendix H Command Interpreter
471

Hide quick links:

Advertisement

Table of Contents
loading

Table of Contents