Application Scenarios - ZyXEL Communications ZyWALL 1100 User Manual

Zywall/usg series
Hide thumbs Also See for ZyWALL 1100:
Table of Contents

Advertisement

Application Scenarios

The ZyWALL/USG's application scenarios make it easier to configure your VPN connection settings.
Table 145 IPSec VPN Application Scenarios
SITE-TO-SITE
Choose this if the remote
IPSec router has a static
IP address or a domain
name.
This ZyWALL/USG can
initiate the VPN tunnel.
The remote IPSec router
can also initiate the VPN
tunnel if this ZyWALL/
USG has a static IP
address or a domain
name.
Finding Out More
• See
Section 20.6 on page 370
• See the help in the IPSec VPN quick setup wizard screens.
Chapter 20 IPSec VPN
SITE-TO-SITE WITH
DYNAMIC PEER
Choose this if the remote
IPSec router has a
dynamic IP address.
You don't specify the
remote IPSec router's
address, but you specify
the remote policy (the
addresses of the devices
behind the remote IPSec
router).
This ZyWALL/USG must
have a static IP address
or a domain name.
Only the remote IPSec
router can initiate the
VPN tunnel.
for IPSec VPN background information.
ZyWALL/USG Series User's Guide
349
REMOTE ACCESS
(SERVER ROLE)
Choose this to allow
incoming connections
from IPSec VPN clients.
The clients have dynamic
IP addresses and are also
known as dial-in users.
You don't specify the
addresses of the client
IPSec routers or the
remote policy.
This creates a dynamic
IPSec VPN rule that can
let multiple clients
connect.
Only the clients can
initiate the VPN tunnel.
REMOTE ACCESS
(CLIENT ROLE)
Choose this to connect to
an IPSec server.
This ZyWALL/USG is the
client (dial-in user).
Client role ZyWALL/USGs
initiate IPSec VPN
connections to a server
role ZyWALL/USG.
This ZyWALL/USG can
have a dynamic IP
address.
The IPSec server doesn't
configure this ZyWALL/
USG's IP address or the
addresses of the devices
behind it.
Only this ZyWALL/USG
can initiate the VPN
tunnel.

Hide quick links:

Advertisement

Table of Contents
loading

Table of Contents