Figure 366 Menu 27.2: Sa Monitor; Table 212 Menu 27.2: Sa Monitor - ZyXEL Communications ZyWall 35 User Manual

Internet security appliance
Hide thumbs Also See for ZyWall 35:
Table of Contents

Advertisement

ZyWALL 35 User's Guide

Figure 366 Menu 27.2: SA Monitor

#
---
001
002
003
004
005
006
007
008
009
010
Press ENTER to Confirm or ESC to Cancel:
The following table describes the fields in this screen.

Table 212 Menu 27.2: SA Monitor

FIELD
#
Name
Encap.
IPSec
ALgorithm
Select
Command
574
Menu 27.2 - SA Monitor
Name
--------------------------------------- -----------------
Taiwan : 3.3.3.1 - 3.3.3.3.100 Tunnel
Select Command= Refresh
Select Connection= 1
DESCRIPTION
This is the security association index number.
This field displays the identification name for this VPN policy. This name is unique for
each connection where the secure gateway IP address is a public static IP address.
When the secure gateway IP address is 0.0.0.0 (as discussed in the last chapter),
there may be different connections using this same VPN rule. In this case, the name is
followed by the remote IP address as configured in Menu 27.1.1. – IPSec Setup.
Individual connections using the same VPN rule may be terminated without affecting
other connections using the same rule.
This field displays Tunnel mode or Transport mode. See previous for discussion.
This field displays the security protocols used for an SA. ESP provides confidentiality
and integrity of data by encrypting the data and encapsulating it into IP packets.
Encryption methods include 56-bit DES, 168-bit 3DES and 128-bit AES. NULL
denotes a tunnel without encryption.
An incoming SA may have an AH in addition to ESP. The Authentication Header
provides strong integrity and authentication by adding authentication information to IP
packets. This authentication information is calculated using header and payload data
in the IP packet. This provides an additional level of security. AH choices are MD5
(default - 128 bits) and SHA -1(160 bits).
Both AH and ESP increase ZyWALL processing requirements and communications
latency (delay).
Press [SPACE BAR] to choose from Refresh, Disconnect, None, Next Page, or
Previous Page and then press [ENTER]. You must select a connection in the next
field when you choose the Disconnect command. Refresh displays current active
VPN connections. None allows you to jump to the "Press ENTER to Confirm..."
prompt.
Select Next Page or Previous Page to view the next or previous page of rules
(respectively).
Encap.
IPSec ALgorithm
ESP DES MD5
Chapter 45 SA Monitor

Advertisement

Table of Contents
loading

This manual is also suitable for:

Zywall 70

Table of Contents