ZyXEL Communications ZyWALL USG 200 Series User Manual page 473

Unified security gateway
Hide thumbs Also See for ZyWALL USG 200 Series:
Table of Contents

Advertisement

Application Scenarios
The ZyWALL's application scenarios make it easier to configure your VPN
connection settings.
Table 125 IPSec VPN Application Scenarios
SITE-TO-SITE
Choose this if the
remote IPSec router
has a static IP
address or a domain
name.
This ZyWALL can
initiate the VPN
tunnel.
The remote IPSec
router can also
initiate the VPN
tunnel if this ZyWALL
has a static IP
address or a domain
name.
Finding Out More
• See
Section 6.5.15 on page 107
ZyWALL USG 100/200 Series User's Guide
SITE-TO-SITE WITH
REMOTE ACCESS
DYNAMIC PEER
(SERVER ROLE)
Choose this if the
Choose this to allow
remote IPSec router
incoming
has a dynamic IP
connections from
address.
IPSec VPN clients.
You don't specify the
The clients have
remote IPSec
dynamic IP
router's address, but
addresses and are
you specify the
also known as dial-in
remote policy (the
users.
addresses of the
You don't specify the
devices behind the
addresses of the
remote IPSec
client IPSec routers
router).
or the remote policy.
This ZyWALL must
This creates a
have a static IP
dynamic IPSec VPN
address or a domain
rule that can let
name.
multiple clients
Only the remote
connect.
IPSec router can
Only the clients can
initiate the VPN
initiate the VPN
tunnel.
tunnel.
for related information on these screens.
Chapter 25 IPSec VPN
REMOTE ACCESS
(CLIENT ROLE)
Choose this to
connect to an IPSec
server.
This ZyWALL is the
client (dial-in user).
Client role ZyWALLs
initiate IPSec VPN
connections to a
server role ZyWALL.
This ZyWALL can
have a dynamic IP
address.
The IPSec server
doesn't configure
this ZyWALL's IP
address or the
addresses of the
devices behind it.
Only this ZyWALL
can initiate the VPN
tunnel.
473

Hide quick links:

Advertisement

Table of Contents
loading

This manual is also suitable for:

Zywall usg 100 series

Table of Contents