ZyXEL Communications Vantage CNM 2.3 User Manual page 142

Centralized network management
Hide thumbs Also See for Vantage CNM 2.3:
Table of Contents

Advertisement

Chapter 6 Device Security Settings
Table 50 Device Operation > Device Configuration > Security > VPN > VPN Rules
(IKE) > Gateway Policy Add/Edit
LABEL
My DDNS Domain
Name
Remote Gateway
Address
Enable IPSec High
Availability
Redundant Remote
Gateway
Fail back to Primary
Remote Gateway
when possible
Fail Back Check
Interval*
Authentication Key
142
DESCRIPTION
This field is enabled if My ZyWALL Address Type is IP Address.
Select the DDNS domain name associated with the device in the
VPN tunnel. Use the DDNS screens to configure these domain
names.
Type the WAN IP address or the domain name (up to 31 characters)
of the IPSec router with which you're making the VPN connection.
Set this field to 0.0.0.0 if the remote IPSec router has a dynamic
WAN IP address.
In order to have more than one active rule with the Remote
Gateway Address field set to 0.0.0.0, the ranges of the local IP
addresses cannot overlap between rules.
If you configure an active rule with 0.0.0.0 in the Remote
Gateway Address field and the LAN's full IP address range as the
local IP address, then you cannot configure any other active rules
with the Remote Gateway Address field set to 0.0.0.0.
Turn on the high availability feature to use a redundant (backup)
VPN connection to another WAN interface on the remote IPSec
router if the primary (regular) VPN connection goes down. The
remote IPSec router must have a second WAN connection in order
for you to use this.
To use this, you must identify both the primary and the redundant
remote IPSec routers by WAN IP address or domain name (you
cannot set either to 0.0.0.0).
Type the WAN IP address or the domain name (up to 31 characters)
of the backup IPSec router to use when the device cannot not
connect to the primary remote gateway.
Select this to have the device change back to using the primary
remote gateway if the connection becomes available again.
Set how often the device should check the connection to the
primary remote gateway while connected to the redundant remote
gateway.
Each gateway policy uses one or more network policies. If the fall
back check interval is shorter than a network policy's SA life time,
the fall back check interval is used as the check interval and
network policy SA life time. If the fall back check interval is longer
than a network policy's SA life time, the SA lifetime is used as the
check interval and network policy SA life time.
Vantage CNM User's Guide

Advertisement

Table of Contents
loading

This manual is also suitable for:

Vantage cnm

Table of Contents