Ipsec Vpn Background Information; Ike Sa Overview - ZyXEL Communications ZyWALL USG 300 User Manual

Unified security gateway
Hide thumbs Also See for ZyWALL USG 300:
Table of Contents

Advertisement

Chapter 21 IPSec VPN
Table 119 VPN > IPSec VPN > SA Monitor (continued)
LABEL
Up Time
Timeout
Inbound (Bytes)
Outbound
(Bytes)
Action
Refresh

21.6 IPSec VPN Background Information

Here is some more detailed IPSec VPN background information.

IKE SA Overview

The IKE SA provides a secure connection between the ZyWALL and remote IPSec
router.
It takes several steps to establish an IKE SA. The negotiation mode determines
how many. There are two negotiation modes--main mode and aggressive mode.
Main mode provides better security, while aggressive mode is faster.
Note: Both routers must use the same negotiation mode.
These modes are discussed in more detail in
mode is used in various examples in the rest of this section.
IP Addresses of the ZyWALL and Remote IPSec Router
To set up an IKE SA, you have to specify the IP addresses of the ZyWALL and
remote IPSec router. You can usually enter a static IP address or a domain name
for either or both IP addresses. Sometimes, your ZyWALL might offer another
alternative, such as using the IP address of a port or interface, as well.
382
DESCRIPTION
This field displays how many seconds the IPSec SA has been active.
This field displays N/A if the IPSec SA uses manual keys.
This field displays how many seconds remain in the SA life time, before
the ZyWALL automatically disconnects the IPSec SA. This field displays
N/A if the IPSec SA uses manual keys.
This field displays the amount of traffic that has gone through the
IPSec SA from the remote IPSec router to the ZyWALL since the IPSec
SA was established.
This field displays the amount of traffic that has gone through the
IPSec SA from the ZyWALL to the remote IPSec router since the IPSec
SA was established.
This field is displayed if the IPSec SA does not use manual keys.
Click the Disconnect icon next to an IPSec SA to disconnect it.
Click Refresh to update the information in the display.
Negotiation Mode on page
ZyWALL USG 300 User's Guide
386. Main

Hide quick links:

Advertisement

Table of Contents
loading

Table of Contents