ZyXEL Communications P-334WT Support Notes page 38

Hide thumbs Also See for P-334WT:
Table of Contents

Advertisement

E-mail support@zyxel.com.tw
Please note that, in P-334WT, if "DNS" or "E-mail" type is chosen, you can still use a random string as the content, such as "this_is_P-
334WT". It's not necessary to follow the format exactly.
By default, P-334WT takes IP as phase 1 ID type for itself and it's remote peer. But if it's remote peer is using DNS or E-mail, you have to
adjust the settings to pass phase 1 ID checking.
15. When should I use FQDN?
If your VPN connection is P-334WT to P-334WT/ZyWALL, and both of them have static IP address, and there is no NAT router in
between, you can ignore this option. Just leave Local/Peer ID type as IP, then skip this option.
If either side of VPN tunneling end point is using dynamic IP address, you may need to configure ID for the one with dynamic IP address.
And in this case, "Aggressive mode" is recommended to be applied in phase 1 negotiation .
1. Does my P-334WT support IPSec VPN?
IPSec VPN is available for P-334WT since ZyNOS V3.60.
2. How do I configure P-334WT VPN?
You can configure P-334WT for VPN using SMT or Web configurator.
3. How many VPN connections does P-334WT support ?
P-334WT supports 2 tunnels.
4. What VPN protocols are supported by P-334WT ?
P-334WT supports ESP (protocol number 50) and AH (protocol number 51).
5. What types of encryption does P-334WT VPN support?
P-334WT supports 56-bit DES and 168-bit 3DES.
6. What types of authentication does P-334WT VPN support?
VPN vendors support a number of different authentication methods. P-334WT VPN supports both SHA1 and MD5.
AH provides authentication, integrity, and replay protection (but not confidentiality). Its main difference with ESP is that AH also secures
parts of the IP header of the packet (like the source/destination addresses), but ESP does not.
ESP can provide authentication, integrity, replay protection, and confidentiality of the data (it secures everything in the packet that follows
the header). Replay protection requires authentication and integrity (these two go always together). Confidentiality
(encryption) can be used with or without authentication/integrity. Similarly, one could use authentication/integrity with or without
confidentiality.
7. I am planning my P-334WT-to-ZyWALL VPN configuration. What do I need to know?
First of all, P-334WT is designed for Telecommutor and it works as a client side of the VPN.
If your P-334WT and ZyWALL support VPN, you can find the VPN options in Advanced>VPN tab.
For configuring a 'box-to-box VPN', there are some tips:

Advertisement

Table of Contents
loading

Table of Contents